PC Review


Reply
Thread Tools Rate Thread

determining ms updates to install for non-internet connected servers

 
 
zn
Guest
Posts: n/a
 
      27th Dec 2004
I have inherited several servers that do not have access to the Internet
due to network security that prevents incoming and outgoing connections to
the Internet. Because of that, I can't run Windows Update. How can I
determine for 2000 Server and NT Server which updates need to be installed?

Thanks.
 
Reply With Quote
 
 
 
 
=?Utf-8?B?RGVuaXMgV29uZyBAIEhvbmcgS29uZw==?=
Guest
Posts: n/a
 
      2nd Jan 2005
You can install your own SUS SP1 server.

http://www.microsoft.com/windowsserv...s/default.mspx

br,
Denis

"zn" wrote:

> I have inherited several servers that do not have access to the Internet
> due to network security that prevents incoming and outgoing connections to
> the Internet. Because of that, I can't run Windows Update. How can I
> determine for 2000 Server and NT Server which updates need to be installed?
>
> Thanks.
>

 
Reply With Quote
 
Bill James
Guest
Posts: n/a
 
      2nd Jan 2005
Another alternative, and perhaps more practical for a small set of machines, is hfnetchk. I also have several machines that are firewalled for local use only and I cannot patch them from Windows Update.

Get hfnetchk here: http://www.shavlik.com/hfn_exe.aspx. You can run it against those remote machines using hostname or IP if you have IPC$ connection, but I find that to be very slow. As an alternative you can just extract hfnetchk.exe and copy it to each of the non-connected boxes and run locally. If you do that, each time before you want to scan those boxes you need to run hfnetchk on a box that is Internet capable in order to download the newest mssecure.cab file, then move that to the servers you want to check. It's all command line with lot's of switches/parameters, so I just use a batch file to avoid having to figure it out each time. Once I get the list I just download the required patches from MS, move them to that box and install.

Not practical on a large scale, but for a few machines it's a fairly simple free solution. I also use hfnetchk occasionally to audit other boxes that do use Windows Update, redirecting the output to a file for documenting the patch status.

--

Bill James
Microsoft MVP - Shell/User

Windows VBScript Utilities » www.billsway.com/vbspage/
Windows Tweaks & Tips » www.billsway.com/notes_public/

"Denis Wong @ Hong Kong" <(E-Mail Removed)> wrote in message news:33519817-ED7D-405E-B82D-(E-Mail Removed)...
> You can install your own SUS SP1 server.
>
> http://www.microsoft.com/windowsserv...s/default.mspx
>
> br,
> Denis
>
> "zn" wrote:
>
>> I have inherited several servers that do not have access to the Internet
>> due to network security that prevents incoming and outgoing connections to
>> the Internet. Because of that, I can't run Windows Update. How can I
>> determine for 2000 Server and NT Server which updates need to be installed?
>>
>> Thanks.
>>

 
Reply With Quote
 
 
 
Reply

Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Installing Updates on a PC not connected to the internet pc nerd Windows Vista General Discussion 4 9th Jan 2008 01:33 AM
How do I get updates for my computer not connected to the internet =?Utf-8?B?Ym9naWUx?= Microsoft Access 2 31st Jan 2006 03:37 AM
Getting Updates for Non Internet Connected Machines Don Microsoft Windows 2000 4 7th Dec 2005 05:00 PM
Determining the patch level of a group of servers. =?Utf-8?B?RG90c29uMTE=?= Microsoft Windows 2000 2 4th Nov 2004 09:59 PM
Automatic Updates/servers not rebooting after install Sean Liddell Microsoft Windows 2000 Security 1 11th Sep 2003 10:48 PM


Features
 

Advertising
 

Newsgroups
 


All times are GMT +1. The time now is 03:55 AM.