Windows Updates and SSL inspection

Started by SamBox83, May 11, 2023, 01:03:20 PM

Previous topic - Next topic
Hi everyone,
I am still in the process of deploying my OPNsense and have hit a big bump: Using the Web Proxy and SSL inspection (which is needed for AV filtering) I am unable to download Windows Updates and Updates from the Microsoft Store, getting the Error Code 0x801901f7.
Now I spent the last hours going through the Microsoft Documentation and everything that I could find on the internet and added all those URLs to the no bump site, but it still doesn't work. Now I checked the forums here and all I could find are old threads that basically stop in 2018.
Is there really no one who managed to get it working? Or is it really just a "feature" that doesn't work?

I would really like to use ClamAV as a feature, but since 95% of the net traffic today is SSL encrypted I need the SSL proxy, but I also need Windows Updates. So how do you guys solved it?

Any help would be appreciated as I am going a bit crazy at this point, having done a very deep dive into the mess that is Microsoft URLs without any solution.

Greetings
Sam


You Sir,
deserve a medal. I thought I was going crazy. I have no mentioning of the certificates in the error logs of the proxy, so I didn't event think about that.
How this isn't a wiki entry or even a result when searching for those error codes is beyond me.
Thank you so much!