Should I disable Windows Updates if I have a k1000?
Real newbie question but there ya are.
The problem I'm having is that I set up Detect & Deploy to only run on servers during the weekend...yet they're getting updates and rebooting during the week. It's quite possible I didn't set up the D&D correctly, but the servers are following the rules of my old MS SUS (no longer in service) GPOs (some updating during the night, some during the day).
When I set up the whole k1000 patching thing, was I supposed to set the GPO to turn off auto-updates?
Answers (4)
You can but there is nothing wrong with running SUS along side the kbox. You just want to do it on different days. Some people keep both running until they feel comfortable with the KBOX patching and then turn off SUS completely. Others turn it off right away. Just depends on how comfortable and confident the KBOX will work in your environment.
The guidance I got from the K1000 trainers at Konference 2012 is that it's just fine to run both. In the end whichever method detects a deficiency first will do the patching. Something to keep in mind is that when you run a patching D&D it will keep going until all patches in your scope are applied. So if there are multiple dependencies you're looking at multiple reboots until the machine is current. This was a gotcha that wasn't fully explained until I was speaking with a trainer. I hope this helps!
Comments:
-
I will also attest that patching with the K1 is not completely seamless without multiple reboots. We have a lot of machines running Deep Freeze and we did not realize it took more than one reboot at times to finish the updates. Be careful with the "Force Reboot" option... - nheyne 11 years ago
-
How do you like using Deep Freeze? - GeekSoldier 11 years ago