Hi,
can anybody help/advise what to check/where to start with Win update problems?
Customer runing 6400 cluster on R81, https inspection on,
enabled_blades fw vpn urlf av appi ips identityServer SSL_INSPECT anti_bot ThreatEmulation mon Scrub
Reporting the problem with direct winupdate, local wsus updates are fine. By them difference between nonCP subnet vs CP controlled subnet are:
-servers cannot find updates/cannot update download most of time,
-updates found after seveal tries sometime,
-time to find/download update 10times longer behind CP
as far as know Update services should be bypasses implicitly + HTTPS policy contains rules:
![Capture.PNG Capture.PNG](https://community.checkpoint.com/t5/image/serverpage/image-id/15536i2170A53CC534851E/image-size/large?v=v2&px=999)
log not shows any Microsoft related connections processed by inspection / blocked (little bit wierd log from TE which is not enabled for this subnet..), but in result have no idea where to look more.![Capture2.PNG Capture2.PNG](https://community.checkpoint.com/t5/image/serverpage/image-id/15537iF3E3B3B53DF289A5/image-size/large?v=v2&px=999)
Thanks for tips here,
LN