Add Windows Update Group Policy Feature to allow clients to download approved updates directly from Microsoft
I have a local WSUS server, it stores all my updates for my local users, I approve the updates and everything is great. At the same time I have bunch of remote offices that have faster WAN connections than VPN/MPLS.
I can setup a second WSUS server, point it at my upstream server at HQ and tell it to not store the updates. All clients connecting to this server will fetch updates from Microsoft.
Why not make this a simple binary GPO overwrite instead of adding the complexity?
Force client to fetch windows update binaries from Microsoft
Karl Wester-Ebbinghaus (@tweet_alqamar) commented
this feature has been implemented in recent ADMX files. Thanks for that.