<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Microsoft updates getting blocked by Firewall in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/474501#M103375</link>
    <description>&lt;P&gt;Hi Kiwi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In the security policy I have allow above FQDN any service and any application but the log result is showing aged-out. When using outlook in office the outlook will have&amp;nbsp; (!)&amp;nbsp; mark.&lt;/P&gt;</description>
    <pubDate>Mon, 21 Mar 2022 01:38:58 GMT</pubDate>
    <dc:creator>JiaXiang</dc:creator>
    <dc:date>2022-03-21T01:38:58Z</dc:date>
    <item>
      <title>Microsoft updates getting blocked by Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/472438#M103211</link>
      <description>&lt;P&gt;I have follow below link to allow these URL in my security policy but today I perform Windows update still very slow and from the log I still able to see some&amp;nbsp;aged-out in my log for update. Any configuration change can help me to solve this issue ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.microsoft.com/en-us/windows-server/administration/windows-server-update-services/deploy/2-configure-wsus" target="_blank" rel="noopener"&gt;https://docs.microsoft.com/en-us/windows-server/administration/windows-server-update-services/deploy/2-configure-wsus&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;U&gt;URL&amp;nbsp;&lt;/U&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://windowsupdate.microsoft.com" target="_blank"&gt;http://windowsupdate.microsoft.com&lt;/A&gt;&lt;BR /&gt;&lt;SPAN&gt;http://*.&lt;/SPAN&gt;&lt;A href="https://windowsupdate.microsoft.com/" target="_blank" rel="noopener"&gt;windowsupdate.microsoft.com&lt;/A&gt;&lt;BR /&gt;&lt;SPAN&gt;https://*.&lt;/SPAN&gt;&lt;A href="https://windowsupdate.microsoft.com/" target="_blank" rel="noopener"&gt;windowsupdate.microsoft.com&lt;/A&gt;&lt;BR /&gt;&lt;SPAN&gt;http://*.&lt;/SPAN&gt;&lt;A href="https://update.microsoft.com/" target="_blank" rel="noopener"&gt;update.microsoft.com&lt;/A&gt;&lt;BR /&gt;&lt;SPAN&gt;https://*.&lt;/SPAN&gt;&lt;A href="https://update.microsoft.com/" target="_blank" rel="noopener"&gt;update.microsoft.com&lt;/A&gt;&lt;BR /&gt;&lt;SPAN&gt;http://*.&lt;/SPAN&gt;&lt;A href="https://windowsupdate.com/" target="_blank" rel="noopener"&gt;windowsupdate.com&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://download.windowsupdate.com/" target="_blank" rel="noopener"&gt;http://download.windowsupdate.com&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://download.microsoft.com/" target="_blank" rel="noopener"&gt;https://download.microsoft.com&lt;/A&gt;&lt;BR /&gt;&lt;SPAN&gt;http://*.&lt;/SPAN&gt;&lt;A href="https://download.windowsupdate.com/" target="_blank" rel="noopener"&gt;download.windowsupdate.com&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://wustat.windows.com/" target="_blank" rel="noopener"&gt;http://wustat.windows.com&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://ntservicepack.microsoft.com/" target="_blank" rel="noopener"&gt;http://ntservicepack.microsoft.com&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://go.microsoft.com/" target="_blank" rel="noopener"&gt;http://go.microsoft.com&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://dl.delivery.mp.microsoft.com/" target="_blank" rel="noopener"&gt;http://dl.delivery.mp.microsoft.com&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://dl.delivery.mp.microsoft.com/" target="_blank" rel="noopener"&gt;https://dl.delivery.mp.microsoft.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://officeapps.live.com/" target="_blank" rel="noopener"&gt;officeapps.live.com&lt;/A&gt;&lt;SPAN&gt;/&lt;/SPAN&gt;&lt;BR /&gt;&lt;A href="https://cd.office.net/" target="_blank" rel="noopener"&gt;cd.office.net&lt;/A&gt;&lt;SPAN&gt;/&lt;/SPAN&gt;&lt;BR /&gt;&lt;A href="https://office.com/" target="_blank" rel="noopener"&gt;office.com&lt;/A&gt;&lt;SPAN&gt;/&lt;/SPAN&gt;&lt;BR /&gt;&lt;A href="https://officecdn.microsoft.com/" target="_blank" rel="noopener"&gt;officecdn.microsoft.com&lt;/A&gt;&lt;SPAN&gt;/&lt;/SPAN&gt;&lt;BR /&gt;&lt;A href="https://officecdn.microsoft.com.edgesuite.net/" target="_blank" rel="noopener"&gt;officecdn.microsoft.com.edgesuite.net&lt;/A&gt;&lt;SPAN&gt;/&lt;/SPAN&gt;&lt;BR /&gt;&lt;A href="https://microsoft.com/" target="_blank" rel="noopener"&gt;microsoft.com&lt;/A&gt;&lt;SPAN&gt;/&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;*&lt;/SPAN&gt;&lt;A href="https://data.microsoft.com/" target="_blank" rel="noopener"&gt;data.microsoft.com&lt;/A&gt;&lt;SPAN&gt;/&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;*.&lt;/SPAN&gt;&lt;A href="https://delivery.mp.microsoft.com/" target="_blank" rel="noopener"&gt;delivery.mp.microsoft.com&lt;/A&gt;&lt;SPAN&gt;/&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;*.&lt;/SPAN&gt;&lt;A href="https://metaservices.microsoft.com/" target="_blank" rel="noopener"&gt;metaservices.microsoft.com&lt;/A&gt;&lt;SPAN&gt;/&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Mar 2022 18:33:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/472438#M103211</guid>
      <dc:creator>JiaXiang</dc:creator>
      <dc:date>2022-03-11T18:33:26Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft updates getting blocked by Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/473974#M103335</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/195025"&gt;@JiaXiang&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It's not very clear how you've configured your policy.&lt;/P&gt;
&lt;P&gt;For Windows Updates specifically, do you have a security policy in place for the application 'ms-update' ?&lt;/P&gt;
&lt;P&gt;How is the traffic identified/blocked exactly ? Is the traffic blocked from a security profile perspective ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;-Kiwi.&lt;/P&gt;
&lt;DIV id="ConnectiveDocSignExtentionInstalled" data-extension-version="1.0.4"&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Thu, 17 Mar 2022 09:37:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/473974#M103335</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2022-03-17T09:37:54Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft updates getting blocked by Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/474501#M103375</link>
      <description>&lt;P&gt;Hi Kiwi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In the security policy I have allow above FQDN any service and any application but the log result is showing aged-out. When using outlook in office the outlook will have&amp;nbsp; (!)&amp;nbsp; mark.&lt;/P&gt;</description>
      <pubDate>Mon, 21 Mar 2022 01:38:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/474501#M103375</guid>
      <dc:creator>JiaXiang</dc:creator>
      <dc:date>2022-03-21T01:38:58Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft updates getting blocked by Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/474824#M103389</link>
      <description>&lt;P&gt;User who is using Global protect or I try to test using mobile network to perform Windows update is fine. I think the problem is not in Windows firewall.&lt;/P&gt;</description>
      <pubDate>Tue, 22 Mar 2022 00:18:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/474824#M103389</guid>
      <dc:creator>JiaXiang</dc:creator>
      <dc:date>2022-03-22T00:18:33Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft updates getting blocked by Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/484420#M104422</link>
      <description>&lt;P&gt;After raise to PANW TAC checking and the issue is actually ISP BGP routing issue. PANW TAC perform a packet capture and notice there is no drop packet in firewall then PANW TAC confirm that the issue is from ISP. Due to ISP BGP route the traffic to some ip that is not firewall resolve to. After ISP fix the routing issue then the issue is resolve.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 03 May 2022 05:57:43 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/484420#M104422</guid>
      <dc:creator>JiaXiang</dc:creator>
      <dc:date>2022-05-03T05:57:43Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft updates getting blocked by Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/550399#M112203</link>
      <description>&lt;P&gt;This issue is a year old.&amp;nbsp; How were you dealing with wildcard FQDN's?&amp;nbsp; It's my understanding you cannot use them.&amp;nbsp; I'm trying to solve this very issue.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Jul 2023 15:56:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/550399#M112203</guid>
      <dc:creator>bhelman</dc:creator>
      <dc:date>2023-07-21T15:56:30Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft updates getting blocked by Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/550413#M112205</link>
      <description>&lt;P&gt;You can not use wildcard FQDNs (because an address object must be resolvable to a specific IP(s)), however above JiaXiang was using a URL filter which can be wildcarded as it matches a portion of a string within a HTTP-like request. URL filters only apply to URL requests (HTTP/HTTPS/various APIs on non-standard ports), FQDNs apply to any communication to an IP.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Jul 2023 17:38:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/550413#M112205</guid>
      <dc:creator>Adrian_Jensen</dc:creator>
      <dc:date>2023-07-21T17:38:46Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft updates getting blocked by Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/550414#M112206</link>
      <description>&lt;P&gt;Ah, so my testing methodology was faulty (using ping to test).&amp;nbsp; Do you know if Microsoft Updates are URL requests?&amp;nbsp; I can easily re-create the test and simply web instead of ping.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Jul 2023 17:43:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/550414#M112206</guid>
      <dc:creator>bhelman</dc:creator>
      <dc:date>2023-07-21T17:43:42Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft updates getting blocked by Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/550419#M112207</link>
      <description>&lt;P&gt;Microsoft update does a HTTP request (port 80 to something like updates.microsoft.com) followed by multiple HTTPS requests (port 443) to various Microsoft domains and CDNs to download the actual patches. There may also be ping tests for reachability, I don't recall exactly.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Jul 2023 17:51:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/microsoft-updates-getting-blocked-by-firewall/m-p/550419#M112207</guid>
      <dc:creator>Adrian_Jensen</dc:creator>
      <dc:date>2023-07-21T17:51:07Z</dc:date>
    </item>
  </channel>
</rss>

