Securing Windows Server 2016 — Question 14
Your network contains an Active Directory domain named contoso.com. The domain contains 1,000 client computers that run Windows 8.1 and 1,000 client computers that run Windows 10.
You deploy a Windows Server Update Services (WSUS) server. You create a computer group for each organizational unit (OU) that contains client computers.
You configure all of the client computers to receive updates from WSUS.
You discover that all of the client computers appear in the Unassigned Computers computer group in the Update Services console.
You need to ensure that the client computers are added automatically to the computer group that corresponds to the location of the computer account in Active
Directory.
Which two actions should you perform? Each correct answer presents part of the solution.
Answer options
- A. From Group Policy objects (GPOs), configure the Enable client-side targeting setting.
- B. From the Update Services console, configure the Computers option.
- C. From Active Directory Users and Computers, create a domain local distribution group for each WSUS computer group.
- D. From Active Directory Users and Computers, modify the flags attribute of each OU.
Correct answer: A, B
Explanation
The correct actions are A and B because enabling client-side targeting in Group Policy allows client computers to be assigned to the proper WSUS group based on their location in Active Directory. Additionally, configuring the Computers option in the Update Services console allows the WSUS server to recognize and utilize the client-side targeting feature effectively. Options C and D are not relevant to the automatic grouping process in WSUS.