How can I make sure that WSUS-managed clients scanned with MBSA are not allowed to visit the Microsoft Update site and install updates that have not been approved?
MBSA will detect a WSUS-managed client and correctly offer only the updates that have been approved by the WSUS administrator. MBSA also allows an administrator to configure MBSA so that the Microsoft Update site is not used for security update evaluation in either the graphical and command-line versions. .The completed MBSA scan report will include which sources were used to assess the security state – WSUS Server, Microsoft Update live site, or Microsoft Update (offline) using the wsusscn2.cab file – and will also provide the download location for each update as appropriate.
Related Questions
- How can I make sure that WSUS-managed clients scanned with MBSA are not allowed to visit the Microsoft Update site and install updates that have not been approved?
- Do Insurance agents monitor the life insurance portfolios of their clients to make sure policies are not allowed to lapse?
- Can I use Microsoft Internet Explorer with the Neowares thin clients?