Install and Configure WSUS As Part of SUP Role Creation
WSUS is a well-known pre-requisite for the Software Update Point role yet the user is entirely left to their own devices to install and configure it. The default WSUS installation options are widely regarded as non-optimal. Further, there is plenty of precedent for ConfigMgr installing OS roles.
I would like to see the WSUS OS role be installed and configured as part of the SUP role installation. Where necessary, the wizard can suggest better configuration options than WSUS’s defaults. I’m certain the community will come up with more ideas than this but here’s a few I can think of, some of which already have dedicated UserVoice items:
-Install on the ConfigMgr SQL instance, not WID
-Set a sane IIS private memory limit (8GB?)
-Optionally configure shared database and shared content for multiple SUPs (Default to true)
-Disable Rapid Fail
-Set a sane IIS queue length limit based on the number of clients
-Increase ASP.NET’s ExecutionTimeout timeout (360 seconds?)
With these settings part of the role installation they should also become part of the SUP properties that you can change post-install and configurable via the PoSH cmdlets. That being the case, they now become a really great use case for Management Insights. For example: I see WSUS’s app-pool is constantly running out of memory and recycling … you should increase the private memory pool.
Business Rationalization: I think this one is dead-simple. Forget your customers for a second. They’re whiny and need a good smiting anyways. Do this for you. Treat-yo-self! Are you tired of customers complaining about how awful WSUS is and how it just needs to die? Is your support department inundated with calls that have nothing to do with your product but your dependency on WSUS? Then this is the User Voice Item you’ve been waiting for!
Seriously, I think there is immediate ROI to Microsoft’s bottom line if you helped your customers set up WSUS correctly.