sonuteklists
Technical User
Dear all,
I am looking for patch management solutions, went briefly through a lot of whitepapers in the MS site. I came across a lot of terms most of which I was familiar and had played with to some extent. MBSA, SUS, WUS, WSUS, SMS.
I really would appreciate some help here. Firstly to understand what is relevant to what kind of organizations and operations. The white papers do talk about them in detail and some links does describe the differences between them, but they dont answer some questions comprehensively.
- Will I able to use MBSA/SUS on workgroup computers. It mentions somewhere that it is possible, but doesnt say how. When I tried to scan using graphical MBSA on a workgroup computer, I get a "User is not an administrator on the scanned machine". There isnt a option either to enter local credentials. Should I be using the command line option ?? Examples ??
- Whats the difference between WUS and WSUS. Is the evolution SUS -> WUS -> WSUS -> maybe SMS.
- Apart from the additional capabilities like reporting and the fact that I require SQL Server, IIS for WSUS, is there any added benefit in using/prefring WSUS over MBSA/SUS ??
- Which of the following does require domain functionality and wont operate outside it, MBSA/SUS, WUS, WSUS, SMS.
- I know SMS is huge and not just for patch management, but if all I want to do is patch management including updates to SQL and Office applications, would MBSA/SUS be sufficient ?? I was also looking into the future where I might extend SMS for other things.
- Any takes on Patchlink, How does it compare interms of functionality, advantages, pricing over the MS options. I guess Patchlink works irrespective of Domain/Workgroup environment as clients have to be installed and that controls the updates.
Kindly answer these question while I think of more
Thanks a bunch.
I am looking for patch management solutions, went briefly through a lot of whitepapers in the MS site. I came across a lot of terms most of which I was familiar and had played with to some extent. MBSA, SUS, WUS, WSUS, SMS.
I really would appreciate some help here. Firstly to understand what is relevant to what kind of organizations and operations. The white papers do talk about them in detail and some links does describe the differences between them, but they dont answer some questions comprehensively.
- Will I able to use MBSA/SUS on workgroup computers. It mentions somewhere that it is possible, but doesnt say how. When I tried to scan using graphical MBSA on a workgroup computer, I get a "User is not an administrator on the scanned machine". There isnt a option either to enter local credentials. Should I be using the command line option ?? Examples ??
- Whats the difference between WUS and WSUS. Is the evolution SUS -> WUS -> WSUS -> maybe SMS.
- Apart from the additional capabilities like reporting and the fact that I require SQL Server, IIS for WSUS, is there any added benefit in using/prefring WSUS over MBSA/SUS ??
- Which of the following does require domain functionality and wont operate outside it, MBSA/SUS, WUS, WSUS, SMS.
- I know SMS is huge and not just for patch management, but if all I want to do is patch management including updates to SQL and Office applications, would MBSA/SUS be sufficient ?? I was also looking into the future where I might extend SMS for other things.
- Any takes on Patchlink, How does it compare interms of functionality, advantages, pricing over the MS options. I guess Patchlink works irrespective of Domain/Workgroup environment as clients have to be installed and that controls the updates.
Kindly answer these question while I think of more

Thanks a bunch.