SCCM – Exclude updates

Sometimes (not often i hope) you want to exclude updates for somehow that you are deploying to all your computers with System Center Configuration Manager 2012.
The excluding of Windows updates can be done with some few steps.

So this is how you do it:

1. Start with creating av “excluded updates” folder under “Software Library -> Software Updates -> All Software Updates”

2. Move updates that you want to exclude into this folder (right click and “move”)

3. Navigate to your moved updated and right click it then go to “Properties” and in the pane “Custom Severity” choose “Low”

4. Navigate to your “Automatic Deployment Rule” and edit your rule so that you only distribute updates that are marked as “None” in Custom Severity


With this the next time the ADR is running it will distribute only the updates that does not have any “Custom Severity” defined on them, all updates that are to be distributed every month comes with none custom severity and therefore you will not send out the one that you change severity of.



Delete and repair a wsus client

This procedure is for fixing problems with installing updates or reporting to a wsus server. It will

– stop the related services
– delete all downloaded updates
– start the related services again
– re-register at the wsus server it is configured to use

1.Log on to the computer as an administrator

2.Run the following set of commands from the commando prompt

net stop bits
net stop wuauserv
del /f /s /q %windir%SoftwareDistribution*.*
%windir%system32regsvr32.exe /s %windir%system32atl.dll
%windir%system32regsvr32.exe /s %windir%system32jscript.dll
%windir%system32regsvr32.exe /s %windir%system32msxml3.dll
%windir%system32regsvr32.exe /s %windir%system32softpub.dll
%windir%system32regsvr32.exe /s %windir%system32wuapi.dll
%windir%system32regsvr32.exe /s %windir%system32wuaueng.dll
%windir%system32regsvr32.exe /s %windir%system32wuaueng1.dll
%windir%system32regsvr32.exe /s %windir%system32wucltui.dll
%windir%system32regsvr32.exe /s %windir%system32wups.dll
%windir%system32regsvr32.exe /s %windir%system32wuweb.dll
net start bits
net start wuauserv
wuauclt /resetauthorization /detectnow


Thnx PTS 🙂