Manage Workgroup Computers with WSUS Server

I was recently required to manage a number of clients in a workgroup with the WSUS server within my domain. In order to so, this is as simple as modifying the clients registry settings to replicate those of the clients within your domain, so basically you will be required to create/import the following registry key, HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate:

"TargetGroup"="Managed Workgroup" 

The above registry settings will configure your WSUS client to use a managed computer group on your WSUS Server with the name ‘Managed Workgroup’, where only the administrator can install updates and the Windows Update and Status Server is configured to be

The additional automatic update options of the workgroup client can be created/imported to the following registry key, HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU:


These settings will enable automatic updates to automatically download and notify for install (I choose to install my approved updates on demand using WUInstall) every day at 17:00 and to use the Windows Update Server.

A full list of settings can be found at




Leave a Reply

Fill in your details below or click an icon to log in: Logo

You are commenting using your account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s