Sorry if this has been answered, I haven't been able to find the answer.
I'm trying to find if there is an extension attribute to determine the SUS setting. I've tried multiple combinations of policies and configuration profiles to try to set computers to use our internal NetSUS server (which would block OS updates or any other updates we don't allow). Sometimes they seem to work, but then randomly I'll find a computer that is upgraded to the latest OS when that update is blocked on our NetSUS server.
I assumed the easiest way to keep this in check would be to have a smartgroup that was for computers that were not set to our local NetSUS (and then to set that as the scope for a policy that tries to set the SUS server), but if anyone else is doing something different that serves the same purpose I'd definitely be interested in hearing about it.
