WSUS Updates on 2012/2016 with Lockdown


we have installed last week the Lockdown for our windows 2012 & 2016 server.

Now we can't installed any updates from our WSUS Server like Defender Updates.

What exactly we need to do that Updates from WSUS are allowed?

Many thank's


  • Personally I would'nt expect the info of disabling Defender before or after Intercept-X installation in a KB about lockdown.

    And just to repeat, this is not a Sophos issue, it is a Microsoft design flaw.

    But I did not find a prominent KB of Sophos about the need (you "need" to disable defender, because otherwise you have two active AVs running and slowing down the machine) to disable MS Defender with a quick search. All the Intercept-X System requirements refer from one KB to the other and I did not find a note about Defender in them.

    Anyway, what do you mean with "roles"?