Submit a ticketCall us

Get a crash course on Network Monitoring delivered right to your inbox
This free 7-day email course provides a primer to the philosophy, theory, and fundamental concepts involved in IT monitoring. Lessons will explain not only how to perform various monitoring tasks, but why and when you should use them. Sign up now.

Home > Success Center > Patch Manager > Third-party updates are not appearing in downstream servers or SCCM SUP

Third-party updates are not appearing in downstream servers or SCCM SUP

Created by Brandon Painter, last modified by MindTouch on Jun 23, 2016

Views: 65 Votes: 0 Revisions: 10


Whenever you publish an update to your main upstream server, it is not replicating to your downstream servers.


  • All Patch Manager versions
  • All WSUS versions


In most cases, this is because of the trust relationship of the package.


Verify that the WSUS Self-Signed Certificate is installed on the downstream server in the Trusted Root CA and Trusted Publishers. If not, complete these steps:

  1. Log into your WSUS server.
  2. Launch a new mmc.exe.
  3. Go to File > Add/Remove Snap-in... and add the Certificates snap-in for the Computer account on the local machine.
  4. Go to the WSUS server and export the Self-Signed Certificate .
    Note: This is the certificate you want to Install in the Trusted Root CA and Trusted Publishers on the downstream server.
  5. ** Please note that failures might also be from duplicate WSUS certificates in the same store. Multiple certificates are fine but duplicates cancel eachother out, if this is the case you can delete any of the duplicate's. **


Last modified
01:19, 23 Jun 2016