Windows update on VM's stopped working after blocking outgoing connections to internet

Prajeesh Prathap 11 Reputation points
2020-01-17T08:24:48.163+00:00

We have blocked outgoing traffic from our VMs using NSGs. This also prevents us from updating our VMs with cumulative updates and important patches. Is there any way I can allow windows updates still by whitelisting or adding a service tag to the NSG?
I've tried the list of IP address mentioned in Microsoft Azure Datacenter IP list (West Europe). That still blocks the updates. Any help would be really appreciated. I think this is a basic requirement for every datacenter to block outgoing traffic to internet from the VMs

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,115 questions
0 comments No comments
{count} vote

1 answer

Sort by: Most helpful
  1. msrini-MSFT 9,256 Reputation points Microsoft Employee
    2020-01-17T09:11:32.667+00:00

    @Prajeesh Prathap ,

    We do have a Service Tag for Licensing activation where you VM will contact the KMS server. But as of today service tags for Windows Update is not there. Please provide your feedback below.

    Link: https://feedback.azure.com/forums/217313-networking/suggestions/32260814-add-a-network-security-group-tag-for-windows-updat#{toggle_previous_statuses}

    2 people found this answer helpful.