Hi Erandipiti-67711
No as these products are not designed to receive update from another source, unlike a Windows OS with WSUS or BranchCache in example.
Let me explain the basic security restrain that block you or such try; In the SSL handshake the device use to make to connect to an upstream server to update, it validate it's certificate to be sure it's a secure update server. It's done as it's a common strategy virus/malware used to do in the past to try to redirect the update source.
Redirecting the connection to a reverse proxy but on your side, will make the device connect to you, but the certificate would not be the one from the original source, as you dont have the original private key and can't use the same certificate key pair, thus it break the chain in your case.
Thanks
Philippe
But that seems to work only if you configure something in the clients devices.
I'm not looking for that
What I want is just to have a server where the updates that go through the network are saved so next client that needs it can download it from the server instead of going all the way back to microsoft servers.
I'm not a network manager, more like an ISP
But that seems to work only if you configure something in the clients devices.
Yes, that's right.
What I want is just to have a server where the updates that go through the network are saved so next client that needs it can download it from the server instead of going all the way back to microsoft servers.
In my opinion, we have to create a server which could help us to download and deploy the require updates for the clients. As I mentioned above, we could create a WSUS server or SCCM Server to download the required updates in the internal.
In addition, here are several links for your reference:
https://learn.microsoft.com/en-us/mem/configmgr/core/get-started/set-up-your-lab
https://learn.microsoft.com/en-us/windows-server/administration/windows-server-update-services/deploy/deploy-windows-server-update-services
Hope the above will be helpful :)
Maybe WSUS with BranchCache?
Does anyone have experience with it?
Regards
Christian
Sign in to comment