Jun 04 2021 11:19 AM
We have two Windows Server 2019 VMs in Azure, and both have 1x public IP address, and 1x private ip address. The private IP address is on a VNET that has no route out to the internet. These VMs were set up with the Automatic updates enabled, and I have seen on both VMs that Windows Update client has been updating the OS successfully. We have no internal WSUS.
Is internet connectivity required for the Guest OS to perform updates from the Microsoft Updates, or is there connectivity provided via the internal Azure fabric? Basically, if we were to remove the public IP address, I assume the Windows Update client on the Guest OS would no longer be able to update, since the private IP has no way out to the internet?
Does the same apply if we decided to use Azure Update Management? Reading the tech docs on Azure Update Management, I'm led to believe that would also need internet connectivity to the Azure Update Management endpoints, so would that mean, again, removing the public IP address would stop that working?
Jun 06 2021 02:35 PM
Jun 11 2021 12:53 AM
SolutionJun 11 2021 04:03 AM