SY0-501 · Question #520
A security analyst is reviewing patches on servers. One of the servers is reporting the following error message in the WSUS management console: The computer has not reported status in 30 days. Given…
The correct answer is D. The computer in question has not pulled the latest application software updates. WSUS (Windows Server Update Services) is Microsoft's patch management solution for deploying software updates. The error indicates the client has not communicated with the WSUS server to retrieve or report on software updates in 30 days.
Question
A security analyst is reviewing patches on servers. One of the servers is reporting the following error message in the WSUS management console:
The computer has not reported status in 30 days. Given this scenario, which of the following statements BEST represents the issue with the output above?
Options
- AThe computer in question has not pulled the latest ACL policies for the firewall.
- BThe computer in question has not pulled the latest GPO policies from the management server.
- CThe computer in question has not pulled the latest antivirus definitions from the antivirus program.
- DThe computer in question has not pulled the latest application software updates.
How the community answered
(25 responses)- A4% (1)
- B16% (4)
- C8% (2)
- D72% (18)
Why each option
WSUS (Windows Server Update Services) is Microsoft's patch management solution for deploying software updates. The error indicates the client has not communicated with the WSUS server to retrieve or report on software updates in 30 days.
ACL (Access Control List) policies for firewalls are managed through network device management tools or security platforms, not WSUS, which has no role in firewall policy distribution.
GPO (Group Policy Object) policies are distributed and managed through Active Directory and Group Policy infrastructure, not through WSUS, which is solely a patch/update management service.
Antivirus definition updates are typically managed by the antivirus software's own update mechanism or an endpoint protection management console (e.g., SCCM with Endpoint Protection), not by WSUS.
WSUS is specifically designed to manage and distribute Microsoft software/application updates (patches) to client computers. When a computer has not reported status in 30 days in the WSUS console, it means the WSUS client agent on that machine has not contacted the WSUS server to pull or report on the latest software updates, which is the sole function of WSUS.
Concept tested: WSUS patch management and client reporting status
Source: https://learn.microsoft.com/en-us/windows-server/administration/windows-server-update-services/manage/managing-wsus-client-computers-and-wsus-computer-groups
Topics
Community Discussion
No community discussion yet for this question.