Before you begin to create automatic deployment rules, make sure that you have configured Configuration Manager software updates.
For more information about the Create Automatic Deployment Rule Wizard, see Operations and Maintenance for Software Updates in Configuration Manager.
If you use WSUS to keep your antimalware definitions up to date, you can configure it to auto-approve definition updates.
Although using Configuration Manager software updates is the recommended method to keep definitions up to date, you can also configure WSUS as a method to allow users to manually initiate definition updated.
Use the following procedures to configure WSUS as a definition update source.
Endpoint Protection definition updates must be approved and downloaded to the WSUS server before they are offered to clients that request the list of available updates.
When you select to download definition updates from Microsoft Update, clients will check the Microsoft Update site at the interval defined in the Definition updates section of the antimalware policy dialog box.