Forums on Intune, SCCM, and Windows 11

Welcome to the forums. Register a free account today to become a member! Once signed in, you'll be able to participate on this site by adding your topics and posts, as well as connect with other members through your own private inbox!

PENDING Group policy settings were overwritten by a higher authority (Domain Controller)

Antonio Polito

New Member
Messages
1
Reaction score
0
Points
1
first of all, thank you for welcoming me to your forum.
I am ECM administrator and since I have enabled Cloud management gateway for the management of windows 10 devices in the vpn network, I have an error while running the "windows update" service. On the domain controller I have a Gpo that defines the WUA Managed server that corresponds to the WUA of the ECM which is different from the CMG.
So in the "WUAHandler" log file, I get the mismatch error. I tried to set the Gpo parameters in "Not configured" but I keep getting the error. Since the Gpo also manages other policies I cannot disable it. Could you tell me if this error can have negative impacts on the distribution of updates?
(On most of the stations the distribution of the patches takes place correctly)
Thank you
exract log:
Unable to read existing WUA resultant policy. Error = 0x80070002. WUAHandler 04/02/2022 10:30:47 16472 (0x4058)
Group policy settings were overwritten by a higher authority (Domain Controller) to: Server and Policy NOT CONFIGURED WUAHandler 04/02/2022 10:30:47 16472 (0x4058)
Failed to Add Update Source for WUAgent of type (2) and id ({4966EB78-A84D-4860-B202-071E2C42EF07}). Error = 0x87d00692. WUAHandler 04/02/2022 10:30:47 16472 (0x4058)
Its a WSUS Update Source type ({4966EB78-A84D-4860-B202-071E2C42EF07}), adding it. WUAHandler 04/02/2022 10:30:47 14940 (0x3A5C)
Unable to read existing resultant WUA policy. Error = 0x80070002. WUAHandler 04/02/2022 10:30:47 14940 (0x3A5C)
Enabling WUA Managed server policy to use server: https://CMG/CCM_Proxy_ServerAuth/xxxxxxxxxxxx WUAHandler 04/02/2022 10:30:47 14940 (0x3A5C)
Failed to check enrollment url, 0x00000001: WUAHandler 04/02/2022 10:30:47 10792 (0x2A28)
SourceManager::GetIsWUfBEnabled - There is no Windows Update for Business settings assignment. Windows Update for Business is not enabled through ConfigMgr WUAHandler 04/02/2022 10:30:47 10792 (0x2A28)
Waiting for 120 seconds for Group Policy to notify of WUA policy change... WUAHandler 04/02/2022 10:30:48 14940 (0x3A5C)
 
I tried to Block all the policies coming from the top using the OU inheritance and there are no GPO's being applied on that OU. Now I made changes to the reg key from registry.pol to registry.old.pol inside of the grouppolicy folder. I still see the same error. I am not sure what exactly is the problem or the root cause for this issue. Any help would ba really really appreciated.
 

Forum statistics

Threads
7,142
Messages
27,883
Members
18,173
Latest member
Etropsucso
Back
Top