[SOLVED] Using Wapt for MS server updates

Share your experience and thoughts about WAPT here / Come here and talk about your experience with Wapt, your opinion and your wishes
Forum Rules
Community Forum Rules
* English support on www.reddit.com/r/wapt
* French community support is provided on this forum
* Please prefix the topic title with [RESOLVED] if it is resolved.
* Please do not edit a topic that is tagged [RESOLVED]. Open a new topic referencing the old one.
* Specify the installed WAPT version (1.8.2 / 2.0 / 2.1 / 2.2 / etc.) AS WELL AS the Enterprise / Discovery edition.
* Specify the server OS (Linux / Windows) and version (Debian Stretch/Buster - CentOS 7 - Windows Server 2012/2016/2019).
* Specify the OS of the administration/package creation machine (Windows 7 / 10)
. * As with any community forum, support is provided voluntarily by members. If you require sales support, you can contact the Tranquil IT sales department at 02.40.97.57.55
Locked
davidbkk
Messages: 24
Registration: May 15, 2020 - 08:29

October 12, 2022 - 4:49 AM

Hello,

I have a practical question: is it advisable to use WUA for updating our MS 2022 servers?
In other words, in terms of best practices, can we safely delegate the deployment of updates to our servers to Wapt rather than using a more conventional solution (manual update, WSUS)?

What risks and security aspects should we consider?

Thank you for your time.

Best regards.
User avatar
sfonteneau
WAPT Expert
Messages: 2318
Registered: July 10, 2014 - 11:52 PM
Contact :

December 29, 2022 - 1:52 PM

Hello,

there are no particular problems using Waptwua on Windows Server. We've always done it internally.

Waptwua is based on an official Microsoft method: https://learn.microsoft.com/fr-fr/windo ... es-offline.

No particular problems.
User avatar
dcardon
WAPT Expert
Messages: 1929
Registration: June 18, 2014 - 09:58
Location: Saint Sébastien sur Loire
Contact :

January 2, 2023 - 4:35 PM

Hello,

I would add that if the same team doesn't manage the servers and workstations, you must create a certificate for both teams (or even better, a certificate for each person) and only push the certificates that have the right to perform maintenance on the machines (i.e., the server admin certificate on the servers and the workstation admin certificate on the workstations).

Regards,

Denis
Denis Cardon - Tranquil IT
Share your experiences on WAPT! Send us your blog and article URLs in the "Your Opinion of the forum, and we'll feature them on the WAPT
Locked