Software Updates - Need an Option to Control the Auto deployment of Revised updates
WSUS has an inbuilt option to control the approval /Auto Approval of revised updates.
However ConfigMgr is missing this feature. This is causing the revised updates to get auto installed on the clients if the deployment is active.
The latest example for this issue was KB3172605. This was revised by MS and caused auto install with reboot on clients
Prajuk Nusbaum commented
SR # 116091314663306
This issue caused our Windows Clients to download the new revision before it had a chance to be tested. We sync our WSUS on Patch Tuesday and because an active deployment for this KB was already active, ConfigMgr deployed this to be installed because it was past mandatory install date. Unfortunately we not have the source nor did we test it and consequently every client that got this went to Microsoft which crashed our network for several hours during our maximum peek time. ConfigMgr needs to filter any new revision that CHANGES any files! Especially DLLs. Regards, -Prajuk Nusbaum