Firewall settings to allow "Windows Updates"

From: Brendan DJ Murphy (brendan_at_cpac.REMOVE.org.uk)
Date: 09/29/04


Date: Wed, 29 Sep 2004 12:22:45 +0100

I'm in the process of tightning up my firewall settings.
I use Kerio Firewall 2.1.5

Up until recently, I had an "Allow" rule as follows:

Protocol TCP(Out)
Local Port: Any
Remote address: Any
Remote Port: 80,443
Application: c:\.....\svchost.exe

This was to allow the Windows Update to work.

I'd rather tie it down to specific remote IP address, but they keep
changing.

Is there a definitive list (or range) of Ip address that I should use
instead?

Brendan



Relevant Pages