Jump to content

Recommended Posts

Posted
What was the web filter policy you created to do this? Trying to see how I could fit on in with the rest of our policies.

 

I added every URL in the list you posted to the site-wide block list, and whitelisted it for the WSUS server. It's a pretty crude fix, but it's working. No more random updates or high bandwidth usage!

  • 10 months later...
Posted

Old thread I know and it came up in a search.

 

We are running mostly Win10 1803 edu and we too are getting shed loads of traffic to tlu.dl.delivery.mp.microsoft.com so I'm guessing MS have not fixed the issue. As we are running a WSUS server I would rather not have desktops downloading updates from MS.

 

Having read the thread I'm still not sure what to block at the firewall so has anyone got the idiots guide how to tame MS?

Posted
It's the modern apps which update per user. You néed to allow the domain *. mp.microsoft.com so the app updates can download. You an force Group Policy to use Bits, WUDO is on by default which checks other PCs for the updates but if it fails to download updates from a peer it will update via Bits anyway. So it's best to force Bits. There's no caching option for store apps on a local server. I wouldn't block the domain.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...