Hello Manish and thank you for the explanation. I have 2 questions please: 1- should I use update ring or wufb configuration profile to do the patching or both of them ? 2- I have configured and successfully deployed an update ring, but strangly the updates are coming/installed without respecting my deff period. For example, they are installed after 30 days after the release even I have set the deff for 07 days and the deadline 05 days ( grace period is one day) Thanks in advance
Update ring is a better approach rather than configuration profile as ring can be used to pause and uninstall quality /feature update separately. If deadline and grace period are not honoring for a device I will certainly check diagnostics logs which will show me the applied settings. I will also check registry values which is under PolicyManager\updates location.
Hello Sir, Video is upto the mark and explanation is good. * I have one question : 17:11 This is time stamp of your video. in my environment i received notification is in few devices and few devices restart without notification. How to check this through policy or from registery. Please guide me on this.
Thanks for your feedback. Intune doesn't allow us to exclude any specific patch and that is intentional so as to keep devices always upto date. You can check my other video where I have explained on this in detail: ruclips.net/video/f7BM-0_C724/видео.html&
Amazing Video as always, but I have one question, In the Enable pre-release builds option, if I leave the Windows Insider - Release Preview option selected, it means that all devices/users targeted with this policy will be automatically enrolled to the Windows Insider Program?
please let me know feature update means deploying windows to windows 11 version ? update rings for windows 10 and later feature update section what will do and how it works Feature updates for windows 10 and later what will do and how it works
Yes, this can be done if device is Hybrid Azure AD Join. This means, device which is Azure AD Join + Domain Join. If Active Directory (Domain) is using Azure AD Connector, they can Hybrid Azure AD Join the device and can utilise the Intune for deploying updates.
365 days is deferral period. This means, new feature update will not be offered for 365 days. once 365 days are passed, update will install in 2 days (deadline). I hope that clarifies ur doubt.
The restart will happen when the deadline expires. The grace period restart kicks in only if the device is offline and come back online while the deadline has expired.
Deadline and Grace period are used together to manage restart behaviour. For Example: There is a deadline set with no grace period - Device will restart the moment deadline finishes. But if Deadline and Grace period both are set - Device will have extra days (after deadline is reached) even when device is online. Grace period will always come into picture and will additional days which helps users who are coming after long vacation and they find patch got installed and deadline also passed, hence the feature was built to prevent that.
Amazing, Explained Very Well Thank you!
What a nice explanation Guru ji. I will request you to bring more insights on applications in intune 🙏
Thanks and sure
Hi.. Manish, ty so much so for this lovely session.
If possible, we could love to see the whole series on the Intune Administration😊
Hi Abhimanyu, I have created a playlist for Intune, you can check this ruclips.net/video/bKnZSDwnB_4/видео.html
excellently explained
Hello Manish and thank you for the explanation.
I have 2 questions please:
1- should I use update ring or wufb configuration profile to do the patching or both of them ?
2- I have configured and successfully deployed an update ring, but strangly the updates are coming/installed without respecting my deff period. For example, they are installed after 30 days after the release even I have set the deff for 07 days and the deadline 05 days ( grace period is one day)
Thanks in advance
Update ring is a better approach rather than configuration profile as ring can be used to pause and uninstall quality /feature update separately.
If deadline and grace period are not honoring for a device I will certainly check diagnostics logs which will show me the applied settings. I will also check registry values which is under PolicyManager\updates location.
Hello Sir,
Video is upto the mark and explanation is good.
* I have one question : 17:11 This is time stamp of your video.
in my environment i received notification is in few devices and few devices restart without notification.
How to check this through policy or from registery.
Please guide me on this.
Great job
Hello Manish Thank you for this valuable demo.I have one query is it possible to exclude a particular patch from deploying in intune?
Thanks for your feedback. Intune doesn't allow us to exclude any specific patch and that is intentional so as to keep devices always upto date. You can check my other video where I have explained on this in detail:
ruclips.net/video/f7BM-0_C724/видео.html&
Hello Manish ,kindly make a video on autopilot troubleshooting
Sure, made a note of it.
Amazing Video as always, but I have one question, In the Enable pre-release builds option, if I leave the Windows Insider - Release Preview option selected, it means that all devices/users targeted with this policy will be automatically enrolled to the Windows Insider Program?
I don't think anything else is required.
please let me know feature update means deploying windows to windows 11 version ?
update rings for windows 10 and later feature update section what will do and how it works
Feature updates for windows 10 and later what will do and how it works
Hello Manish, thank you for this demo. Would like to confirm if one can use this to push update for system added to local Active Directory devices
Yes, this can be done if device is Hybrid Azure AD Join. This means, device which is Azure AD Join + Domain Join.
If Active Directory (Domain) is using Azure AD Connector, they can Hybrid Azure AD Join the device and can utilise the Intune for deploying updates.
I will also like to confirm about the group, I’m trying to run a test on my environment but can’t seem to have the windows 10group
You have to create azure ad group with dynamic query which will show all windows 10 devices as member.
I will request you to Please create video on Windows Autopilot
Thanks Ranveer, I will soon publish the video on Autopilot.
deadline for feature update set to 2 days I am not clear because top mentioned 365 days
365 days is deferral period. This means, new feature update will not be offered for 365 days. once 365 days are passed, update will install in 2 days (deadline). I hope that clarifies ur doubt.
How to resolve Error code 0x8a15001b could u please help
The restart will happen when the deadline expires. The grace period restart kicks in only if the device is offline and come back online while the deadline has expired.
Deadline and Grace period are used together to manage restart behaviour.
For Example: There is a deadline set with no grace period - Device will restart the moment deadline finishes.
But if Deadline and Grace period both are set - Device will have extra days (after deadline is reached) even when device is online. Grace period will always come into picture and will additional days which helps users who are coming after long vacation and they find patch got installed and deadline also passed, hence the feature was built to prevent that.
Getting error while installing the applications Error code 0x8a15001b
Too slow. Get your thoughts together or create a script before recording.