cancel
Showing results for 
Search instead for 
Did you mean: 

Windows Updates with Application Control without entering update mode

Jump to solution

I am running Application Control (currently trial version) on my Windows 10 LTSB system and am wondering if there is away to allow for Windows updates on the system without the user entering update mode. I am looking for something similar to certificate based updates for applications where you can just add a trusted certificate. Is there anything like that for Windows OS updates? Thanks!

1 Solution

Accepted Solutions
wouterr
Level 11
Report Inappropriate Content
Message 4 of 6

Re: Windows Updates with Application Control without entering update mode

Jump to solution

for standalone solidcore use the finetune.bat tool and run following command:

finetune.bat ADD u-WindowsUpdate 

which you can find here: "C:\Program Files\McAfee\Solidcore\finetune.bat"

 

for epo managed click "Add" in you application control rule" policy

5 Replies
wouterr
Level 11
Report Inappropriate Content
Message 2 of 6

Re: Windows Updates with Application Control without entering update mode

Jump to solution

Hi,

 

there is a predefined rule group called "windows Update" which you can add to your Appcontrol policy which will allow you to install windows updates in enabled mode. 

Highlighted

Re: Windows Updates with Application Control without entering update mode

Jump to solution

Thank you! Do you know how I can add this rule group to my whitelist? I am searching the documentation for it now.

wouterr
Level 11
Report Inappropriate Content
Message 4 of 6

Re: Windows Updates with Application Control without entering update mode

Jump to solution

for standalone solidcore use the finetune.bat tool and run following command:

finetune.bat ADD u-WindowsUpdate 

which you can find here: "C:\Program Files\McAfee\Solidcore\finetune.bat"

 

for epo managed click "Add" in you application control rule" policy

Re: Windows Updates with Application Control without entering update mode

Jump to solution

Hmm sadly this did not work 😞 the command seemed to run successfully and after a reboot and even resolidify-ing the drive, my Windows updates are still unable to install. Looking in the Windows event logs it looks like McAfee is still blocking the update. Is there any other step I need to take?

Re: Windows Updates with Application Control without entering update mode

Jump to solution

Looks like it did work after all! I just needed to change some firewall settings.

More McAfee Tools to Help You
  • Subscription Service Notification (SNS)
  • How-to: Endpoint Removal Tool
  • Support: Endpoint Security
  • eSupport: Policy Orchestrator
  • Community Help Hub

      New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.

    • Find Forum FAQs
    • Learn How to Earn Badges
    • Ask for Help
    Go to Community Help

    Join the Community

      Thousands of customers use the McAfee Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership:

    • Get helpful solutions from McAfee experts.
    • Stay connected to product conversations that matter to you.
    • Participate in product groups led by McAfee employees.
    Join the Community
    Join the Community