HELP! SUS In multi domain AD Tree

  • Thread starter Thread starter Mike Phetteplace
  • Start date Start date
M

Mike Phetteplace

I am having a strange situation with Software Update
Services. I have a large ennterprise environment with
one partne domaina and 35 child domains.

The SUS SP1 Service is on a Member Server in the parent
(call it server1.parent.local). Auto Update is configure
with the .adm in Group Policy. All of the AU clients in
the parent Domain update successfully.

However, the AU clients in the child Domains log an error
simialr to "failed to contact the update server" in the
event log and do not receive the updates. I have tested
name resolution, OK. I have manually opened
the /SUSAdmin site from the child. When I do, I get
Access Denied. Logging in as the parent Admin account,
it works. So, it must be security related.

I have tried changeing to Anonymous access, fails.
Tried granting rights, SUS AU Client runs as Local System
Acount. So, tried ading a Service Account, no go.

Has anyone deployed this in a Multi Domain environment?
If so, how?

Thanks!
 
I'm going to post my own reply. I figured it out.

Configuring the Automatic Update Service on the servers in
the Child Domains to log in as a member of the
Administrators Group in the Parent Domain does in fact
work.
 
Back
Top