Patching Best Practices with Windows Update Service
I'm looking for advice from KACE and/or ITNinja's on how to keep Windows Update Service enabled on devices so my end users can install applications from the Windows Store for Business but not have updates installed from Windows Update. I only want my devices patched from KACE on my schedules and only from my internal network, no internet downloads. Currently we disable Windows Update Service via GPO but that is blocking Windows Store installs. I do not have SCCM or WSUS at the moment, but if needed I could build a WSUS if that is needed I guess. Also we only run Windows 10 Pro, not Enterprise. Thanks in advance.
Be the first to answer this question