0/1 Lessons

Getting Started with this Course

• 26min

0 / 3 lessons complete

System Center Configuration Manager - Features and Capibilities

• 31min

0 / 5 lessons complete

SCCM 1902 Lab Setup

• 51min

0 / 12 lessons complete

Installing SCCM 1902 Installation

• 1hr 32min

0 / 11 lessons complete

Configuration Manager Basics

• 1hr 58min

0 / 8 lessons complete

Updating SCCM

• 30min

0 / 7 lessons complete

SCCM Client Installation

• 46min

0 / 4 lessons complete

User and Device Collections

• 1hr 6min

0 / 13 lessons complete

Application Management

• 2hr 34min

0 / 12 lessons complete

Operating System Deployment

• 23min

0 / 7 lessons complete

Endpoint Protection

• 1hr 11min

0 / 10 lessons complete


• 37min

0 / 4 lessons complete

Problems and Solutions from the Message Board

• 14min

0 / 5 lessons complete

Endpoint Protection Server Configuration and Installation


Q&A (0)

Notes (0)

Resources (0)

Saving Progress...


There are no resources for this lesson.

Notes can be saved and accessed anywhere in the course. They also double as bookmarks so you can quickly review important lesson material.

Create note

Ok, we have planned our installation and now we should have a better understanding of how all these components integrate together. It’s time to put all that we have learned to work, and install and configure Endpoint Protection

WSUS Server Role Installation 

  • For this lecture, we will be installing WSUS on the ITFSCCM01 server. Open Server Manager, click Add Roles and Features, click next, click next again. From Server Selection, verify that the installation server is correct, then click next.  
  • From the Server Roles screen scroll down and check the box next to Windows Server Update Services, click add features, click next, then click next again.
  • From the WSUS screen, click next, then next again
  • From Content Location Selection screen choose a valid local or remote path for storing updates, in this case I type C:\EndPUpdates, then click next.
  • From the Confirmation screen, click Install 
  • From the Results screen, confirm a successful installation 
  • At this point, there is no need for further WSUS configuration. You do not need to Launch Post-Installation tasks, only click close.

Configuration manager will be used to download, synchronize and deploy our updates, so there is no further WSUS configuration necessary.

For verification, the WSUSCtrl.log file provides information about the configuration, database connectivity, and health of the WSUS server for the site. Open this log file using CMtrace.exe. CMtrace.exe is a real time logfile viewer for System Center Configuration Manager. It can be found on the SCCM server installation folder in this case on ITFSCCM


For this lecture, here is location of the log file – C:\Program Files\Microsoft Configuration Manager\Logs\WSUSCtrl.log  

The Software Update Point Installation 

  • From ITFSCCM01 open the Configuration Manager Console
  • From the Workspace, open Administration, from the Navigation Pane click Site Configuration, then click Server and Site System Roles. 
  • From the List View Right click the ITFSCCM01 Primary Site, then click Add Site System Roles, On the General tab, click next. 
  • On the Proxy tab click next 
  • From System Role Selection, click Software Update Point, then click next 
  • From the Software Update Point Select WSUS is configured to use ports 8530 and 8531, then click next. 
  • On the Proxy and Account Settings page, if necessary, type in your credentials to connect to the WSUS server. 
  • From the Synchronization Source tabselect Synchronize from Microsoft Update, click next. 
  • On the Synchronization Schedule tab, check enable synchronization on a schedule, 

Change the Run every to 1 day, click next.

  • From the Supersedence Rules tabSupersedence Behavior, select Immediately expire a superseded update, click next.
  • From the Updates Files tab, click next.
  • From Classifications, in this case I selected Definition Updates. This selection is for security updates. You may choose additional selections, click next.
  • From Products, then All Products, click the +, from Microsoft click the +. Scroll down and click the + next to windows, then click the box next to Windows Defender. You may choose additional options, then click next.
  • From the Languages tab, click EnglishUncheck, the languages you don’t need, then click next.
  • From the Summary tab review your settings then click next. After the installation completes click close.

Server Academy Members Only

Sorry, this lesson is only available to Server Academy Full Access members. Become a Full-Access Member now and you’ll get instant access to all of our courses.

0 0 votes
Lesson Rating
Notify of
profile avatar
Inline Feedbacks
View all comments