WSUS on a completely isolated network from the internet

p1np0ng Posted messages 4 Status Membre -  
choubaka Posted messages 5529 Registration date   Status Modérateur Last intervention   -

Hello,

I manage a completely isolated local network from the internet. The server is a Windows Server 2019 and my clients run on Windows 10.

I have installed the WSUS server role on my server, so that my clients connect to it to carry out their updates.

The only problem, as mentioned in the title, is that my network is completely isolated. I cannot connect it to the internet to fetch updates.

Is there a method to "import" the updates via external media (a USB stick for example) and make them available to clients? If so, how can I configure my server (I have no other choice but to point it to Windows Update or another upstream server)?

I am well aware that there is the WSUS offline method, but I would like to avoid having to perform the operation on my approximately 50 machines.

Thank you in advance for your advice.


2 réponses

Profile blocked
 

Hello(*)

WSUS can be used on a completely isolated network from the Internet, but there will be certain limitations. You will not be able to download updates, as they must be downloaded from Microsoft Update. However, you can use WSUS to deploy updates to computers on the network by downloading them on another computer connected to the Internet and transferring them to the isolated network. You can also configure WSUS to synchronize updates with another WSUS server connected to the Internet.

(*) Basic element of politeness added by CCM moderation!...................................


1
p1np0ng Posted messages 4 Status Membre 1
 

Hello,

thank you for your response, that's exactly what I'm trying to do. But I don't know where to place the updates that I transfer via USB on my server, nor how to configure it.

0
choubaka Posted messages 5529 Registration date   Status Modérateur Last intervention   2 113 > p1np0ng Posted messages 4 Status Membre
 
0
choubaka Posted messages 5529 Registration date   Status Modérateur Last intervention   2 113
 

Hello

Aside from WSUS offline ... I don't see any other solution.

Putting the server or another WSUS server temporarily online and then distributing to the clients after importing and selecting the updates.


0