Ann Max Lv2Posted 29 Aug 2023 17:22
  

Sure, I can help you with that. Here are the steps on how to allow only Windows Update for DMZ through firewall rules:

Identify the IP addresses of the Microsoft Windows Update servers. You can find these IP addresses on the Microsoft website.
Create a firewall rule that allows traffic from the DMZ to the Microsoft Windows Update servers. The rule should allow traffic on ports 80 and 443.
If you are using a firewall that supports URL filtering, you can also create a rule that allows traffic to the specific URLs that are used by Windows Update.
Here is an example of a firewall rule that allows traffic to the Microsoft Windows Update servers:

Rule Name: Allow Windows Update
Source: DMZ
Destination: Microsoft Windows Update Servers
Protocol: TCP
Ports: 80, 443
Action: Allow
Once you have created the firewall rule, Windows Update should be able to download updates from the Microsoft Windows Update servers.

If you are still having problems, you can contact your firewall vendor for support.

Here are some additional things to keep in mind:

Make sure that the firewall rule is applied to all interfaces that are connected to the DMZ.
If you are using a firewall that supports application control, you can also create an application control rule that allows Windows Update traffic.
You may also need to configure your DNS server to point the DMZ to the Microsoft Windows Update servers.

I Can Help:

Change

Moderator on This Board

0
2
4

Started Topics

Followers

Follow

67
14
3

Started Topics

Followers

Follow

3
0
2

Started Topics

Followers

Follow

1
131
3

Started Topics

Followers

Follow

Board Leaders