For error 0x80072EFE, the supported causes in the available guidance are a connection problem to Windows Update, proxy/network issues, BITS transfer failures, or TLS/cipher suite configuration problems.
Try this in order:
- Restart the PC again Pending update actions can block new update attempts.
- Run the Windows repair command
Open an elevated Command Prompt and run:
Then restart the PC.Dism /online /cleanup-image /restorehealth - Check Windows Update again Go to Start > Settings > Update & Security > Windows Update > Check for updates.
- Verify the download path is not being blocked by network or proxy
The documented mitigation for 0x80072EFE says BITS may be unable to transfer the file successfully.
At a command prompt, run:
Search the output for 0x80072EFE and the related HTTP code/file. Then try downloading that file manually in a browser, using the same proxy settings used in the environment. If that fails, the issue is with network/proxy access to the update URL.BITSADMIN /LIST /ALLUSERS /VERBOSE - If other network checks already look normal, review cipher suite configuration
This applies to systems where cipher suites are explicitly configured in the registry.
Check this registry key:
Ensure at least one of these cipher suites is present:HKLM\SOFTWARE\Policies\Microsoft\Cryptography\Configuration\SSL\00010002-
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 -
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA256
-
- If those cipher suites exist but the error continues, adjust their order
Warning: editing the registry is risky and incorrect changes can affect secure connections system-wide.
- Press Windows key + R, type regedit, and press Enter.
- Go to:
HKLM\SOFTWARE\Policies\Microsoft\Cryptography\Configuration\SSL\00010002 - Move the required cipher suites higher in the list, or to the top.
- Restart the PC.
- Try Windows Update again.
- If Windows Update still fails, install the update manually from Microsoft Update Catalog
- Open Microsoft Update Catalog.
- Search for the specific update number.
- Download the package that matches the operating system.
- Run the package manually.
References: