Windows 11 Updates: Microsoft Shifts Control to IT Admins, Ends Forced Updates
At the Build 2024 developer conference, Microsoft announced a new update policy for enterprise-managed devices, where future Windows 11 feature updates will be controlled by IT administrators, ending the practice of forced updates by Microsoft.
Previously, Microsoft enforced mandatory updates, especially for versions nearing or past their support end. This was aimed at enhancing system security but had caused dissatisfaction among IT administrators.
Microsoft has now decided to improve the control over feature updates, offering IT administrators various options to decide whether to install feature updates based on real-world situations.
New Control Options:
Microsoft's new options allow IT administrators to configure feature updates through Group Policy, setting them as either mandatory or optional.
If set to mandatory, all supported devices within the corporate network will automatically download and update to the latest Windows 11 feature update. If optional, devices will receive update notifications and can choose when to update.
Benefits of the New Options:
- Early Feedback: IT administrators can select a subset of employee devices for testing, allowing for evaluation and feedback collection post-upgrade.
- Risk Mitigation: Testing can prevent potential risks, as IT administrators can assess new features, understand benefits, and evaluate potential risks before a broad deployment.
- Maintaining Productivity: With updates set as optional, users can choose the most convenient time for updates, potentially avoiding disruptions caused by mandatory updates.
Policy Configuration:
For those using Microsoft Intune, go to the management center, select devices, then Windows 10 and later update settings, and finally, feature updates.
Here, create a new policy profile, choose the deployment settings, and decide between mandatory or optional settings.
Once the policy setup is complete, network devices will automatically receive the profile and perform updates as specified.
Note: This functionality is currently only available for enterprise-managed devices using Windows Update for Business, and is not supported on other devices.