Security Compliance

Error when deploying third-party updates to client systems

This article addresses an error that may display in the Patch Manager Admin Console when deploying third-party updates to client systems.

First published date

10/9/2018 9:54 PM

Last published date

10/9/2018 9:54 PM

Overview

When you deploy third-party updates to client systems, the following error message displays: 

Download failed. A certificate chain processed but terminated in a root certificate which is not trusted by the trust provider Error Code: 0x800B0109

Product section

Patch Manager

Cause

This error can occur when:

  • The WSUS Publishers Self-Signed Certificate is not installed on the client system.
  • The Allow signed content from intranet Microsoft update service location Group Policy setting is not enabled for the system.

Resolution

  1. Complete the Client Publishing Setup Wizard to install the WSUS publishers self-signed certificate on client systems. See the Patch Manager Administrator Guide  for details. 

Note: The Client Publishing Setup Wizard requires WMI connectivity to the client systems. If you cannot manage client systems using WMI, you can deploy the WSUS Publishers Self-Signed Certificate using Group Policy. See the Deploy certificates using Group Policy for details.
  1. Enable remote updates on client systems at the site level.

See "Allow signed content from the intranet Microsoft update service location" in Configure Clients Using Group Policy (© 2014 Microsoft, available at https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2008-R2-and-2008/cc708574(v=ws.10), obtained on November 9, 2018) for details. 

Disclaimer: Please note, any content posted herein is provided as a suggestion or recommendation to you for your internal use. This is not part of the SolarWinds software or documentation that you purchased from SolarWinds, and the information set forth herein may come from third parties. Your organization should internally review and assess to what extent, if any, such custom scripts or recommendations will be incorporated into your environment.  You elect to use third party content at your own risk, and you will be solely responsible for the incorporation of the same, if any.