Windows Vista Tips

Windows Vista Tips > Newsgroups > Windows Update > Firewall is blocking Updates

Reply
Thread Tools Display Modes

Firewall is blocking Updates

 
 
bstover@norcalmutual.com
Guest
Posts: n/a

 
      02-17-2005

I have a network of 50 servers and 400 users. The servers run Win2k
and Win2k3 and sit behind a firewall. For obvious reasons, I limit
outbound traffic from the servers to the internet. This includes HTTP.
I don't want my servers to be accessible, and I don't want them
accessing any unnecessary external resources.


For example, We've had a flood of trojans in the past few weeks. The
trojans call a server (outbound traffic) via HTTP then download the
virus back in to the network. If I allow all outbound HTTP, then this
opens my servers to being vulnerable.


My problem: I need to update my servers with MS Critical Patches.
This means that I must create outbound rules on my main firewall
allowing
HTTP access to specific URLS or SUBNETS. I've allowed the following
based on the articles I've read in the groups and on MS, but there are
other sites involved as well that are not documented, and the IP
addresses are constantly changing.


activex.microsoft.com
download.windowsupdates.com
crl.microsoft.com
v3stats.windowsupdates.microsoft.com
v4.windowsupdates.microsoft.com
v5.windowsupdates.microsoft.com


207.46.0.0/16
64.4.0.0/16
38.113.0.0/16
64.62.0.0/16
64.152.0.0/16


Does anypne out there have a comprehensive listing of URLS and SUBNETS
that need to be included as destination addresses in an outbound HTTP
firewall policy to make sure that Windows Updates will work
consistently?


Thanks!


Your help is appreciated.

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
FIREWALL BLOCKING MY GAME GamerNeedsHelp Windows Vista Games 12 12-26-2007 08:48 PM
firewall blocking home network John Windows Vista Networking 1 10-25-2007 09:53 PM
Selective IPs blocking in Vista firewall RVince Windows Vista Security 1 09-23-2007 02:48 AM
Firewall blocking internet video Lost in the sauce Windows Media Player 1 12-22-2005 09:43 PM
Firewall blocking windows update Nate Weldon Windows Update 3 02-17-2005 09:40 PM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59