Timeout during connect (likely firewall problem)

So you specifically needs to open port 80 so that http validation will work.

You could possibly just allow certify.exe (which is the command line process that spawns during http validation) but I haven’t tried that myself.