Menu
CCMEXEC.COM – Enterprise Mobility
  • General
  • Configuration Manager
  • Windows 10
  • Windows 11
  • Intune
  • GitHub
  • About
CCMEXEC.COM – Enterprise Mobility

Software Updates OS deployment and Unknown Computers

Posted on April 17, 2014 by Jörgen Nilsson

This topic is not new but it has been asked a lot lately on the forums so a post is in order.

To use the “Install Software updates” step in a Task Sequence to install Software updates requires that the computer that is being deployed/reimaged is a member of one or more collections with the updates that should be installed deployed to it.

There are two options for the “Install Software Updates Step”:

Mandatory Software Updates = This naming is perhaps not really clear as in Configuration Manager 2012 Software Updates are deployed as “Required”. This option will install all updates deployed to the computer as required.

All Software Updates = this option will install all Software Updates that are deployed to the computer as “Available”

What if I am using Unknown Computer support to install my clients? In that scenario you have two options:

  • Deploy all the “Software Update Groups” to the “Unknown Computers” collection. This option will require you to deploy all updates multiple times which is not fun.
  • Include the two “Unknown Computer”(one for x86 and one for x64) objects in your normal Collection that you use to deploy Software Updates.
    Capture1This is a much better option which doesn’t require multiple deployments of all Software Update Groups

Also check out this KB article, http://support.microsoft.com/kb/2894518 for an issue with deploying Software Updates during a Task Sequence that requires multiple reboots.

10 thoughts on “Software Updates OS deployment and Unknown Computers”

  1. Chris says:
    April 18, 2014 at 7:23 pm

    Thanks for the clarification on the mandatory and all software updates.

    Reply
  2. Mikey C says:
    May 28, 2014 at 4:24 pm

    Hi Jörgen

    It is worth adding I think, that there is a limit to the number of updates that can be deployed to a collection, if you exceed that number then you will get a TS error that prevents any updates installing. Therefore, simply deploying all updates to the unknown computers collection can eventually lead to problems, especially (in our case) if you do not expire updates straight away.

    http://social.technet.microsoft.com/Forums/en-US/28e6ba92-db10-4f76-bd3b-9535ef1f93a0/osd-capture-prepare-configuration-manager-client-step-fails?forum=configmanagerosd

    Reply
    1. Jörgen Nilsson says:
      June 13, 2014 at 12:00 pm

      Hi,
      Thanks for the feedback, will add that to the post.
      /jörgen

      Reply
  3. Garry says:
    December 3, 2014 at 10:54 am

    That would be much better way to to install software. Thanks for these tips! Very helpful.

    Reply
  4. Garry says:
    December 3, 2014 at 12:03 pm

    That would be a much better way to install software updates. Thanks for these tips! Very helpful.

    Reply
  5. Josh says:
    August 25, 2017 at 2:36 pm

    Hey Jörgen,
    Thanks for this! I tried the lazier method but it didn’t work.
    I was however able to get it working by deploying directly to the All Unknown Computers collection.

    https://social.technet.microsoft.com/Forums/en-US/ea69cbe2-dbe2-42d7-b2e1-081e280753d8/osd-deploy-capture-not-installing-software-updates?forum=ConfigMgrCBOSD

    Reply
    1. Mikey F. says:
      November 17, 2017 at 8:19 pm

      @Josh, can you please be more specific? Although I like the Jorgen’s idea, I don’t want to implement something that won’t work. Just wondering if it is something in your environment, or perhaps the number of updates deployed (as mentioned by @Mikey C). Thanks for any detail.

      Reply
  6. Hasan Ördek says:
    October 23, 2018 at 10:25 pm

    I have another question about Install Software Updates with OSD. When you build your image, should your computer be joined to the domain in order for this task to work? I’d rather not join it to the domain, in order to not receiving any GPO’s on my image.

    Reply
    1. Jörgen Nilsson says:
      November 5, 2018 at 11:15 am

      Hi,
      It should not be joined to the domain for many reason where GPO’s are one of them.
      Regards,
      Jörgen

      Reply
  7. JMartinez says:
    October 30, 2019 at 10:20 pm

    Thanks Jörgen, great info. Is this still needed for the computers joining the domain during OSD after OS applied? Aren’t they become known device after installing the agent? Won’t they get the patches? I experienced device collections members update slowness so badly when I have the “x64 Unknown Computer” and “x86 Unknown Computer” objects in a collection. Taking them out fix the collections update slowness issue. Please advise. Thanks!!

    Reply

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

My name is Jörgen Nilsson and I work as a Senior Consultant at Onevinn in Malmö, Sweden. This is my blog where I will share tips and stuff for my own and everyone elses use on Enterprise Mobility and Windows related topics.
All code is provided "AS-IS" with no warranties.

Recent Posts

  • Application Control for Business and the story of the unsigned WIX dll’s
  • MMUGSE – Meetup October 24 2026
  • Windows 365 Link – a week and some
  • Prevent software installations disguised as drivers
  • Tip when troubleshooting unexpected reboots during Autopilot – event ID 2800
©2025 CCMEXEC.COM – Enterprise Mobility | WordPress Theme by Superb Themes
This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish.Accept Reject Read More
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT