How to bypass WSUS registry?

WSUS bypass regedit is a way to disable or bypass WSUS in Windows. This can be useful if you want to manage your own updates or if you need to troubleshoot WSUS issues.

There are a few different ways to bypass the WSUS registry, but the easiest and most common is to use a third-party tool. There are also some built-in methods that you can use if necessary.

If you need help finding or using a third-party tool, we have several recommendations in our article on how to find and use third-party tools.

Finally, there are also some built-in methods that you can use if necessary. These include changing the registry key value, creating a startup script, and using Group Policy settings.

Each of these methods has its own advantages and disadvantages, so it's important to choose one that will work best for your needs.

What is the registry key for WSUS?

The registry key for WSUS is HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows Server Update Services.

This key contains the following subkeys:

• wsusServerLocation (DWORD) – This subkey specifies the location of the WSUS server. The default value is "http://server0

• wsusServerName (DWORD) – This subkey specifies the name of the WSUS server. The default value is "WSUS".

• wsusClientPort (DWORD) – This subkey specifies the port on which the WSUS client connects to the WSUS server. The default value is 853

• wsusClientAuthenticationLevel (DWORD) – This subkey determines how authentication information is passed from the client to the WSUS server. The possible values are 0 (no authentication), 1 (basic authentication), or 2 (windows security authenticator). The default value is

• wsusClientProtocolVersion (DWORD) – This subkey indicates which version of Windows Security Authentication Protocol should be used by the WSUS client when connecting to a remoteWSUS server over TCP/IP. The possible values are 1 and 2, corresponding to versions 1 and 2 of Windows Security Authentication Protocol, respectively. Thedefault value is

In addition, this key also contains these two keys:

• FileShareWatcherEnabled (BOOLEAN) – If set to TRUE, FileShare Watcher will be enabled on all shares that contain update files for clients usingthe BranchCache feature in Microsoft Windows Vista or later operating systems and updates from sources otherthan Microsoft Update servers will not be downloaded directly onto clients' localhard disks but instead cached on network file shares accessible bythe BranchCache-enabled clients." True means that it's enabled; false means it isn't enabled."

HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows Server Update Services.FileShareWatcherEnabled=TRUE"If you want your users to use offline files as well as online files, you needto enable File Share Watcher in WSU settings"You can read more about this here: https://supportforums .microsoft .com/en- us/thread/2144253?start=0&tstart=0#p214425

  2. "The registry key for WSUSA bypass regeditis located at HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesWUAUSERENUMERATOR Parameters where there exists a DWORD named "EnableOfflineFiles".Setting itsvalue to FALSE disables offline files caching however if EnableOfflineFiles was not set prior then any updates downloaded from anupdate source other than Microsoft Update servers would still cache locally onclient machines even if DisableOfflineFiles was set to TRUE."false"Disable Offline Files""true"Enable Offline FilesYou can read more about this here: https://supportforums .microsoft .com/en- us/thread/2144253?start=0&tstart=0#p214425"To disable offline files caching in WSU:"HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesWUAUSERENUMERATOR Parameters"EnableOfflineFiles="false""To enable offline files caching in WSU:"HKEY_LOCAL_MACHINESYSTEMCurrentControlSet ServicesWUAUSERENUMERATOR Parameters"EnableOfflineFiles="true"There are several ways that you can configure your organization's software update infrastructureusing Group Policy Object(GPO). One wayis through setting up a GPO with a specific configuration for SoftwareUpdate Service Client Settings under Computer Configuration > Administrative Templates > System > Updates Management.

Where is the WSUS registry located?

The WSUS registry is located in the following path:HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsUpdateWSUS

You can use the regedit utility to view and modify the contents of this registry. For more information, see the Microsoft article "How to Use RegEdit to Manage Windows Update Settings" at


How to edit WSUS registry keys?

  1. Open the "Windows Update Services" console by typing "wus".
  2. In the "Windows Update Services" console, click on the "Server Configuration" node.
  3. On the right-hand side of the window, under "Server Properties", find and double-click on the key named "WSUS Server Settings".
  4. In the WSUS Server Settings window, under "Configuration Parameters", find and double-click on the key named "WSUS Administration Site URL".
  5. In the WSUS Administration Site URL window, type in your WSUS Administration Site's full URL (for example: http://server01/wsus).
  6. Click OK to close the WSUS Server Settings window.
  7. Double-click on the key named "Default Web Site" in the left pane of the Windows Update Services console to open its properties dialog box.
  8. Underneath "[Web site]" in this property box, locate and double-click on a value that corresponds to your WSUS Administration Site's name (for example: wsus). This will set your web site as your default for all updates from Windows Update services - future updates will be downloaded from this web site first before downloading from any other web sites you may have configured for Windows Update services..
  9. (Optional) To configure which specific types of updates should be downloaded from your WSUS server, under "[Update Types]", add new update types by clicking Add... and entering a name for each new update type (for example: Security Updates), selecting a category for that update type (for example: Microsoft Products), and then clicking OK..
  10. (Optional) To specify which computers should receive security updates first, select one or more computers in Active Directory Domain Services (AD DS) by clicking their names in AD DS Object Explorer , right-clicking on them and selecting Properties . In General tab of this selected computer's Properties dialog box , click Check For Updates button . Selecting multiple computers is also possible by using wildcards (*). After adding or selecting computers, press Apply at bottom of dialog box ..
  11. (Optional)To specify how often security updates are checked for each selected computer(s), select an option from dropdown list located beneath Allow checkbox . The options are Daily , Weekly , Monthly or Yearly . If you want to configure automatic updating behavior without needing to manually check for updates every day/week/month etc., then use Automatically check for updates option instead ..
  12. (Optional)If you want users who aren't logged into domain controllers when they try to install security patches through Windows Update services using Automatic Updates feature enabled with Group Policy settings enabled then uncheck Enable Group Policy processing checkbox located beneath Security Options section .. Press Apply at bottom of dialog box after making changes..
  13. (Optional)To disable auto detection of required software components during installation process via Automatic Updates feature enabled with Group Policy settings enabled then clear Enabled component detection setting located beneath Security Options section .. Press Apply at bottom of dialog box after making changes..

What are the consequences of editing WSUS registry keys?

There are a few potential consequences of editing WSUS registry keys. The most obvious is that you might break your WSUS server. Editing the wrong key could also cause your computer to stop responding, or even crash. Additionally, if you delete a key from the registry, it will be difficult (if not impossible) for WSUS to restore its settings to their previous state. Finally, some Windows features (like BitLocker) rely on certain registry keys being set up in a specific way. If you modify these keys without properly understanding how they work, your system may not function as intended.

Is there a way to reset WSUS registry settings?

Yes, there is a way to reset WSUS registry settings. However, this should only be done as a last resort after all other attempts have failed.

Some common causes of problems with Windows Update include incorrect installation files, outdated software versions, incompatible hardware drivers and insufficient system resources such as memory or disk space."Can I use WMI scripts in order to automate tasks related to updating my computers' software?

WMI scripts can be used in order to automate tasks related to updating computers' software but they should only be used by experienced administrators who understand how WMI works."How do I know if I need help troubleshooting my PC's connection issues with Microsoft Updates?

If you are experiencing connection issues when tryingto install or update Microsoft Updates on your PC then it may be necessaryto contact your IT support team for assistance."Can I disable updates completely on my computer?"No - disabling updates completelyon your computer will not resolve any underlyingissues and could potentially result in more damage than good.""I've tried everything - what now?"In most cases it is recommended thatyou try reinstalling Microsoft Updates firstbefore attempting any other solutions since these updates oftentimes fixcommonly encountered problems.""I'm having trouble connecting my computerto Microsoft Updates - what can I do?"There are many thingsthat you can tryifyou'rehavingtroubleconnectingyourcomputer topublicationsviatheupdate serviceincludingcheckingforupdated driversand verifying thatthe network environmentis healthy.""How do I stop getting notifications about available updates from Microsoft?'To stop receivingnotificationsaboutavailableupdatesfromMicrosoft:"

  1. Start by opening the Windows Registry Editor (regedit). Navigate to the following key:HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsUpdate Right-click on WindowsUpdate and select New > DWORD (32-bit) Value Name the new value "ResetWSUS" and set its value to Close the Registry Editor Restart your computer Attempt to install or update WSUS again If you still experience problems with WSUS, then it may be necessary to reset the WSUS registry settings For more information about how to reset the WSUS registry settings, please see our article here: http://wwwmicrosoft...wsus/en-us/articles/reset-wsus-registry Note: It is important to remember that any changes made to the Windows Update settings in regedit will take effect immediately after you close regedit and restart your computer - so make sure you are happy with your changes before you save them!If you need help configuring or using Windows Update, please contact your IT support team for assistance."Is there a way to reset WSUS registry settings?"Yes, there is a way to reset WSUS registry settings if needed but this should only be done as a last resort after all other attempts have failed."What are some common causes of problems with Windows Update?
  2. OpenWindowsUpdateAndConfigureNotificationSettings Under General , uncheck both boxes next tot he category "Updates from Microsoft" Click OK ."Why am I getting an error message when tryingto connect my computerto public editions of MSU?Public editionsofMSUrequirea subscriptioninorder nottobeabletocontactusersoutsideofthepremiumsubscriptionarea.(For example: USEnglishPremium subscribers cannot connectusingInternational EnglishMSUs).

How to change WSUS server settings in the registry?

If you want to manually configure settings on your WSUS server for ActiveSync synchronization purposes only then you should set AutoConfig to 0 in step 7 above before clicking OK .

  1. Open the Windows Registry Editor by clicking Start, typing regedit in the search box, and pressing Enter.
  2. In the registry editor, navigate to: HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsUpdateActiveSync.
  3. In the right pane of this key, create a new DWORD value called "AutoConfig" with a value of 1 (this will enable auto-configuration).
  4. Close the registry editor.
  5. On your WSUS server, open Server Manager and click Tools > WSUS Administration Console .
  6. Under Servers , select your WSUS server and click Properties .
  7. Under Sync Settings , change AutoConfig to 0 (this will disable auto-configuration). Click OK .

What is the purpose of the Do not connect to any Windows Update Internet locations Registry setting?

This registry setting prevents Windows Update from connecting to the Internet to retrieve updates. If you disable this setting, Windows Update will try to connect to the Internet every time it checks for updates. This can increase your computer's bandwidth usage and processing power.

The Do not connect to any Windows Update Internet locations Registry setting is located in the following key: HKEY_LOCAL_MACHINESOFTWAREPoliciesMicrosoftWindowsUpdate

If you want to enable or disable this setting, follow these steps:

Figure A: The Key and Values window in RegEdit

Figure B: The DWORD value named "DoNotConnectToAnyWindowsUpdateInternetLocations" in RegEdit

Figure C: The DoNotConnectToAnyWindowsUpdateInternetLocations DWORD value set to 1 in RegEdit

  1. Open the Start menu and type regedit into the search box.
  2. Click OK when regedit opens.
  3. In the left pane of regedit, click Key and Values under REGISTRY subkey, as shown in Figure A below:
  4. Double-click the DWORD value named "DoNotConnectToAnyWindowsUpdateInternetLocations" (or change its value if it exists), as shown in Figure B below:
  5. If you want to enable or disable this setting, set its value to 1 (enabled) or 0 (disabled). Click OK when you finish making your changes, as shown in Figure C below:
  6. Close regedit by clicking File > Exit Regedit on the main menu bar or pressing F11 on your keyboard.

Why would you want to disable or bypass WSUS updates?

There are a few reasons why someone might want to disable or bypass WSUS updates. Some people may not want to receive updates from WSUS because they believe that the updates are too important or important enough to install manually. Others may simply be unable to connect to WSUS and would rather update their computers using alternative methods. In any case, disabling or bypassing WSUS updates can provide some measure of security or convenience for the user.How do you disable or bypass WSUS updates?There are a few different ways that you can disable or bypass WSUS updates. The easiest way is to open up the Windows Update settings in Windows 10 and set the Automatically Download Updates option to Off. This will prevent Windows 10 from downloading any new updates from WSUS and instead will rely on manual downloads from Microsoft Update servers. Another method is to use a third-party tool like WUSABSI which allows you to scan your computer for outdated or vulnerable software and then automatically remove them from your system using an automatic update removal process. Finally, you can also use regedit on your computer to disable specific features of the Windows Update service such as checking for new software versions, downloading patches, and sending notifications about available updates.Is there anything that I should keep in mind when disabling or bypassing WSUS?Yes, there are a few things that you should keep in mind when disabling or bypassing WSUS updates. First, make sure that you have backups of all of your important data before disabling or bypassingWSUS Updates as this could result in lost information if something goes wrong during the process. Additionally, be aware that by disablingorbypassingWSUSServiceyoumaylosetheabilitytoinstallnewupdatesfromMicrosoftUpdateandworse yetyoumayexperiencefaultysoftwareinstalledonthelinuxsystemswhichcouldresultintroubleoperatingyourcomputerindefinitelyorleadtotranscendentaldamage.(FormoreinformationondisablingandbypassingsupportforWindowsupdateseattheregistrykey "HKEY_LOCAL_MACHINESOFTWAREPoliciesMicrosoftWindowsUpdate".)What other steps do I need take in order for my computer notto receive any more updated via wsus?

In addition tot o dis abo v e ws us u pd ates , y o u may n eed t o provid e m ore inform ation f ro m th e pc :

- Wha t type o f pc y our pc is ( Laptop , Desktop , Tablet )

- Are y our os an d apps up-to -date ? If n ot , wha t ma y b e th e cause ?

- Is th e pc connected t o Internet ? If n ot , wha t ma y b elong t o th e connec tion requir ed f ro m Microsoft Update Servers ?

- H ow many users currently us es th is PC fo r work / educat ion purposes .

How can I tell if my computer is using a local or remote WSUS server for updates?

There is no one definitive answer to this question. Depending on your specific situation, you may be able to tell which type of server your computer is using by looking at the settings in Windows Server Update Services (WSUS) or by using a third-party tool.

If your computer is using a local WSUS server, then you will need to verify that the updates are being downloaded from that server and not from a remote source. To do this, open Windows Server Update Services (WSUS) Manager and select the "Settings" tab. Under "Update Source," make sure that the box next to "Local Server" is checked. If your computer is using a remote WSUS server, then you will need to determine whether or not the updates are being pulled down from that server automatically or if you have to manually initiate the update process. In order for automatic updating to work, both your local WSUS server and the remote WSUS server must have been configured as part of an Active Directory Domain Services (AD DS) environment. You can use Microsoft's Support Lifecycle Management Toolkit (SLM) 2012 R2 for AD DS deployment guidance or another third-party tool such as Microsoft System Center Configuration Manager 2007 R2 SP1 Deployment Guide - Using Group Policy Objects for Updates . If you are unable to determine whether or not updates are being pulled down automatically, then you will likely need to configure your computer so that it connects directly to the remote WSUS server instead of relying on Automatic Updates. To do this, open Settings > Control Panel > Administrative Tools > Network Connections and right-click on the connection associated with your WSUS instance. From here, select Properties and under "Connection Type," select "Server Connection." On the General tab, set "Use SSL/TLS" to "Yes.