12 KiB
title, description, ms.date, ms.prod, ms.technology, ms.topic, ms.localizationpriority, author, ms.author, manager, msreviewer
title | description | ms.date | ms.prod | ms.technology | ms.topic | ms.localizationpriority | author | ms.author | manager | msreviewer |
---|---|---|---|---|---|---|---|---|---|---|
Device registration overview | This article provides and overview on how to register devices in Autopatch | 07/28/2022 | w11 | windows | conceptual | medium | tiaraquan | tiaraquan | dougeby | andredm7 |
Device registration overview
Windows Autopatch must register your existing devices into its service to manage update deployments on your behalf.
The Windows Autopatch device registration process is transparent for end-users because it doesn’t require devices to be reset.
The overall device registration process is:
:::image type="content" source="../media/windows-autopatch-device-registration-overview.png" alt-text="Overview of the device registration process" lightbox="../media/windows-autopatch-device-registration-overview.png":::
- IT admin identifies devices to be managed by Windows Autopatch and adds them into the Windows Autopatch Device Registration Azure Active Directory (AD) group.
- Windows Autopatch then:
- Performs device readiness prior registration (prerequisite checks).
- Calculates the deployment ring distribution.
- Assigns devices to one of the deployment rings based on the previous calculation.
- Assigns devices to other Azure AD groups required for management.
- Marks devices as active for management so it can apply its update deployment policies.
- IT admin then monitors the device registration trends and the update deployment reports.
For more information about the device registration workflow, see the Detailed device registration workflow diagram section for more technical details behind the Windows Autopatch device registration process.
Detailed device registration workflow diagram
See the following detailed workflow diagram. The diagram covers the Windows Autopatch device registration process:
:::image type="content" source="../media/windows-autopatch-device-registration-workflow-diagram.png" alt-text="Detailed device registration workflow diagram" lightbox="../media/windows-autopatch-device-registration-workflow-diagram.png":::
Step | Description |
---|---|
Step 1: Identify devices | IT admin identifies devices to be managed by the Windows Autopatch service. |
Step 2: Add devices | IT admin adds devices through direct membership or nests other Azure AD assigned or dynamic groups into the Windows Autopatch Device Registration Azure AD assigned group. |
Step 3: Discover devices | The Windows Autopatch Discover Devices function hourly discovers devices previously added by the IT admin into the Windows Autopatch Device Registration Azure AD assigned group in step #2. The Azure AD device ID is used by Windows Autopatch to query device attributes in both Microsoft Endpoint Manager-Intune and Azure AD when registering devices into its service.
|
Step 4: Check prerequisites | The Windows Autopatch prerequisite function makes an Intune Graph API call to sequentially validate device readiness attributes required for the registration process. For detailed information, see the Detailed prerequisite check workflow diagram section. The service checks the following device readiness attributes, and/or prerequisites:
|
Step 5: Calculate deployment ring assignment | Once the device passes all prerequisites described in step #4, Windows Autopatch starts its deployment ring assignment calculation. The following logic is used to calculate the Windows Autopatch deployment ring assignment:
|
Step 6: Assign devices to a deployment ring group | Once the deployment ring calculation is done, Windows Autopatch assigns devices to one of the following deployment ring groups:
|
Step 7: Assign devices to an Azure AD group | Windows Autopatch also assigns devices to the following Azure AD groups when certain conditions apply:
|
Step 8: Post-device registration | In post-device registration, three actions occur:
|
Step 9: Review device registration status | IT admins review the device registration status in both the Ready and Not ready tabs.
|
Step 10: End of registration workflow | This is the end of the Windows Autopatch device registration workflow. |
Detailed prerequisite check workflow diagram
As described in step #4 in the previous Detailed device registration workflow diagram, the following diagram is a visual representation of the prerequisite construct for the Windows Autopatch device registration process. The prerequisite checks are sequentially performed.
:::image type="content" source="../media/windows-autopatch-prerequisite-check-workflow-diagram.png" alt-text="Detailed prerequisite check workflow diagram" lightbox="../media/windows-autopatch-prerequisite-check-workflow-diagram.png":::