Azure Update Manager & WSUS (patching 3rd party apps on Arc-enabled servers)

Bojan Zivkovic 526 Reputation points
2025-01-29T07:18:23.24+00:00

Hi, I'd like to get this clarified - to patch 3rd party apps on Arc-enabled servers with AUM I need local instance of WSUS so I have 2 questions:

  1. Does WSUS have to be standalone, or it can be WSUS managed by Configuration Manager (SUP role)?
  2. If Arc-enabled servers are in other forest than WSUS' one, does that matter since I found this:

User's image

I have a line of sight from Arc-enabled servers to WSUS (tcp/8530, 8531) managed by Configuration Manager and deployed WSUS CA chain to TRCA store on all Arc-enabled servers with GPO but having completed assessment on one of the Arc-enabled servers I do not see updates for WireShark.

Azure Update Manager
Azure Update Manager
An Azure service to centrally manages updates and compliance at scale.
342 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Stanislav Zhelyazkov 25,856 Reputation points MVP
    2025-01-29T09:01:29.8233333+00:00

    Hi,

    Azure Update Manager does not support patching third party apps. Can you specify where you got that statement from? Additionally I believe WSUS also cannot patch third party apps so your only option is SCCM. As you you have opened this question with Azure Update Manager tag if you have questions for WSUS or SCCM to open new ones with the corresponding tags.

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.