220-1102 Operating Systems Practice Question
A technician needs to configure a Windows 10 Pro workstation to retrieve updates from a local WSUS server instead of directly from Microsoft Update. Which tool should the technician use to configure this setting?
⚠ Common exam trap
Many candidates confuse the Local Security Policy (secpol.msc) with the Group Policy Editor (gpedit.msc) because both are MMC snap-ins with 'Policy' in the name, but only gpedit.msc contains the administrative templates needed for WSUS configuration.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Group Policy Editor
The Group Policy Editor (gpedit.msc) is the correct tool because it allows the technician to configure the 'Specify intranet Microsoft update service location' policy under Computer Configuration > Administrative Templates > Windows Components > Windows Update. This policy sets the WSUS server as the update source by specifying both the intranet update service and the statistics server URLs, overriding the default Microsoft Update connection.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Group Policy Editor
Why this is correct
Group Policy Editor (gpedit.msc) is the correct tool because it contains the Administrative Templates policy path Computer Configuration > Administrative Templates > Windows Components > Windows Update > Specify intranet Microsoft update service location. Enabling this policy sets the registry keys WUServer and WUStatusServer under HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate, which directs the Windows Update client to scan and download from an internal WSUS server. This policy is available in Windows 10 Pro and can be applied locally on a standalone workstation or via domain GPOs.
- ✗
Windows Update Settings
Why it's wrong here
The Windows Update Settings page (Settings > Update & Security > Windows Update) only offers user-facing controls such as checking online for updates, pausing updates, changing active hours, and configuring delivery optimization. It provides no field or toggle to specify an intranet update service location, so it cannot point the system to a WSUS server. Even if a WSUS policy is already configured, this UI merely displays a notice that some settings are managed by your organization; it does not let you edit the server address.
- ✗
Local Security Policy
Why it's wrong here
Local Security Policy (secpol.msc) is for managing security settings like password policy, account lockout policy, user rights assignments, and audit policy. Its branch of Administrative Templates does not expose Windows Update configuration nodes, and its predefined policies cover only security-related areas, not software distribution sources. Although security templates can modify some policy-related registry keys, secpol.msc has no interface for setting WUServer or any intranet update service location, so it cannot achieve the required WSUS redirection.
- ✗
System Configuration
Why it's wrong here
System Configuration (msconfig) is a diagnostic tool used to modify boot options (such as Safe Boot), choose a startup mode (Normal, Diagnostic, or Selective), disable services, and open Task Manager for startup apps. Its Tools tab can launch other utilities including Group Policy Editor, but msconfig itself does not persist any Windows Update settings. Using msconfig to enable Diagnostic startup or disable the Windows Update service would only interfere with update functionality, not configure the workstation to retrieve updates from a WSUS server.
Go deeper
Related to this question
Learn chapter
Windows Update Configuration
Key term
Windows
Windows is a family of operating systems developed by Microsoft that manages computer hardware and software, providing a graphical user interface for users to interact with their devices.
Key term
Group Policy
Group Policy is a Windows-based feature that allows administrators to centrally manage and enforce settings for users and computers across an organization.
About these practice questions
One of 925 original 220-1102 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This 220-1102 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1102 exam.