Hello,
Does anyone know where I can get a comprehensive list of the servers that are accessed for Windows Updates?
I have a situation where I need to limit access to Windows Update to a single device among hundreds from a firewall at the edge of the network. As I understand it Windows Update traffic is all port 80.
Realistically, I only need to block the servers enough to stop the update happening, not necessarily every single server.
I think it is likely that MS is using Akamai or some other service to manage its update load so the solution needs to *only* block Window Update.
Yeah, I realise there are countless more strategic ways to lock this down than a block rule on a firewall but this is what I need to do, so don't feel you have to list alternatives that don't include some sort of rules on a firewall :)
Cheers,
Paul
You can have your own WSUS and within the SUS create different groups to manage update settings.
If you dont approve the updates it will never get deployed on all machines | unwanted patches | machine groups.