nerdexam
CompTIA

SY0-501 · Question #520

A security analyst is reviewing patches on servers. One of the servers is reporting the following error message in the WSUS management console: The computer has not reported status in 30 days. Given…

The correct answer is D. The computer in question has not pulled the latest application software updates. WSUS (Windows Server Update Services) is Microsoft's patch management solution for deploying software updates. The error indicates the client has not communicated with the WSUS server to retrieve or report on software updates in 30 days.

Submitted by ahmad_uae· Mar 4, 2026Security operations

Question

A security analyst is reviewing patches on servers. One of the servers is reporting the following error message in the WSUS management console:

The computer has not reported status in 30 days. Given this scenario, which of the following statements BEST represents the issue with the output above?

Options

  • AThe computer in question has not pulled the latest ACL policies for the firewall.
  • BThe computer in question has not pulled the latest GPO policies from the management server.
  • CThe computer in question has not pulled the latest antivirus definitions from the antivirus program.
  • DThe computer in question has not pulled the latest application software updates.

How the community answered

(25 responses)
  • A
    4% (1)
  • B
    16% (4)
  • C
    8% (2)
  • D
    72% (18)

Why each option

WSUS (Windows Server Update Services) is Microsoft's patch management solution for deploying software updates. The error indicates the client has not communicated with the WSUS server to retrieve or report on software updates in 30 days.

AThe computer in question has not pulled the latest ACL policies for the firewall.

ACL (Access Control List) policies for firewalls are managed through network device management tools or security platforms, not WSUS, which has no role in firewall policy distribution.

BThe computer in question has not pulled the latest GPO policies from the management server.

GPO (Group Policy Object) policies are distributed and managed through Active Directory and Group Policy infrastructure, not through WSUS, which is solely a patch/update management service.

CThe computer in question has not pulled the latest antivirus definitions from the antivirus program.

Antivirus definition updates are typically managed by the antivirus software's own update mechanism or an endpoint protection management console (e.g., SCCM with Endpoint Protection), not by WSUS.

DThe computer in question has not pulled the latest application software updates.Correct

WSUS is specifically designed to manage and distribute Microsoft software/application updates (patches) to client computers. When a computer has not reported status in 30 days in the WSUS console, it means the WSUS client agent on that machine has not contacted the WSUS server to pull or report on the latest software updates, which is the sole function of WSUS.

Concept tested: WSUS patch management and client reporting status

Source: https://learn.microsoft.com/en-us/windows-server/administration/windows-server-update-services/manage/managing-wsus-client-computers-and-wsus-computer-groups

Topics

#WSUS#patch management#software updates#Windows Update

Community Discussion

No community discussion yet for this question.

Full SY0-501 Practice