Close Menu
    Facebook X (Twitter) Instagram
    Sunday, October 12
    X (Twitter) LinkedIn Reddit RSS
    All about Endpoint Management
    • Home
    All about Endpoint Management
    Home»CM2012»SCCM Configmgr 2012 R2 SP1 download content from Microsoft updates causing client stuck at downloading policies

    SCCM Configmgr 2012 R2 SP1 download content from Microsoft updates causing client stuck at downloading policies

    Eswar KonetiBy Eswar KonetiSeptember 02, 6:08 pm3 Mins Read CM2012 7,494 Views
    Share
    Facebook Twitter LinkedIn Reddit

    Since few days ,have been working on case with Microsoft on client issue wherein ,some clients stuck at downloading the policies/jobs and remain in Queued state without any reason and they never get deployments.

    When you deploy the software update group to collection ,you will have to put a special attention to configuration setting in download settings : “If software updates are not available on preferred distribution point or remote distribution point,download content from Microsoft updates”

    This is a new feature in Configuration manager 2012 SP1 that allows clients to fall back and use Windows Update to download the content. The client will only download content for the updates you have approved and deployed to client.

    image

    This is good option to select when the content is not available on Distribution point or client has some issues (possibly network)downloading the content from distribution point and client will direct to Microsoft update,download the content and install it.

    But ,what happens when client do not have access to the internet (Microsoft update) and content is not available on the DP ? Here the problem comes.

    If you check the option “if updates not available on DP, download from Microsoft Updates”, when the local/remote DP’s content location is not available, clients fallback to download from Microsoft Update, however, if it also fails at downloading from MU with some Internet connection issue, the DTS job (DataTransferService) keeps retrying the download the content and increments the Active job count on each failure until reaching the Active Job limit of 50 and  it never gets decremented.

    DataTransferService.log shows

    image

    Downloading from http://wsus.ds.download.windowsupdate.com:80/c/msdownload/update/software/secu/2016/07 without proxy encountered error: BITS error: 'The operation timed out

    Context: 'The error occurred while the remote file was being processed.

    QUEUE: Active job count incremented, value = 50

    image

    DTSJob {97A264D2-B234-4ED7-B1D9-257F80920063} in state 'Queued'.

    If the client exhausts the Active Job limit, the clients get stuck and never receive any policy unless you reset the active job limit .

    Though we have successfully distributed the content to DP’s (can see from the console and reports) and hundreds of clients in the same subnet/region are successfully downloaded /installed but not all clients.

    So the only possible fix is: Restart SMS agent host on the problematic clients. This process will reset the active job limit and start downloading the policies and content without any further changes on the site server ,but make sure to deselect the setting if your clients do not have access to internet.

    I am not sure with the selected settings above (download content from Microsoft update ),if this issue appear in Configuration manager current branch or is it only appear in Configmgr 2012  .

    This issue is filed as bug in Microsoft connect and is active Status . https://connect.microsoft.com/ConfigurationManagervnext/feedback/details/956321/css-configmgr-2012-r2-dts-does-not-decrement-active-bits-job-counter-when-it-fails-to-download-content-from-the-mu-location

    There is no updated information yet on this issue from product team but can we see this issue fix in next cumulative update for Configmgr 2012 ?

    Active job Bug client never recieve updates Client stuck policies configmgr download content from Microsoft updates SCCM The operation timed out
    Share. Twitter LinkedIn Email Facebook Reddit

    Related Posts

    SCCM SQL Report – Compare Installed Apps on TWO Different Computers

    July 13, 10:35 am

    Optimize Your Intune Workflow with a Powerful Browser Extension

    March 22, 10:39 am

    Migrate Microsoft 365 Updates from SCCM/MECM to Intune for Co-Managed Devices

    February 11, 9:50 pm

    5 Comments

    1. moureaux on September 14, 2017 8:31 PM

      Hello Eswar, and thanks for your amazing blog !
      I was wondering if there is a report that exist where i can see if this particular setting is enabled for all my Software Updates and those for which this setting is missing ?
      Thanks in advance.
      Regards.
      Jean

      Reply
      • Eswar Koneti on September 20, 2017 5:11 PM

        Hi,
        It is possible to get the information of software updates for specific setting .It all exist in database. All you need to identify which SQL view it is stored .
        by default, there are no reports that give you these kind of custom reports.

        Regards,
        Eswar

        Reply
    2. TWP on February 8, 2017 11:35 PM

      Any news on this in ConfigMgr CB? The link to connect doesn't work. Thinking about setting this setting in my environment but would like to know if it's safe first:)

      Reply
    3. Nomi on October 24, 2016 6:08 AM

      Hi,

      I have got production environment. I patches monthly windows updates and scheduled updates via SCCM 2012. Updates installed successfully at scheduled time. But some users attempted to manually uninstall some updates.

      Can I force users to not uninstall any monthly updates without approval ?

      or Can I force sccm to reinstall, when it find any updates removal via maually or by any users ?

      Thanks

      Nomi

      Reply
      • Eswar Koneti on October 24, 2016 9:08 AM

        You dont have to do anything. If the deployment group already targeted to collection and for some reason user uninstall updates, they will get reinstall automatically after next software update deployment evaluation cycle.
        No action needed.

        Regards
        Eswar

        Reply

    Leave a ReplyCancel reply

    This site uses Akismet to reduce spam. Learn how your comment data is processed.

    Sign Up

    Get email notifications for new posts.

    Author

    I’m Eswar Koneti ,a tech enthusiast, security advocate, and your guide to Microsoft Intune and Modern Device Management. My goal? To turn complex tech into actionable insights for a streamlined management experience. Let’s navigate this journey together!

    Support

    Awards

    Archives

    © Copyright 2009-2025 Eswar Koneti, All rights reserved.

    Type above and press Enter to search. Press Esc to cancel.