windows-itpro-docs/windows/deployment/windows-autopatch/operate/windows-autopatch-maintain-environment.md
2022-08-23 08:13:20 -07:00

3.1 KiB
Raw Blame History

title, description, ms.date, ms.prod, ms.technology, ms.topic, ms.localizationpriority, author, ms.author, manager, msreviewer
title description ms.date ms.prod ms.technology ms.topic ms.localizationpriority author ms.author manager msreviewer
Maintain the Windows Autopatch environment This article details how to maintain the Windows Autopatch environment 07/11/2022 w11 windows how-to medium tiaraquan tiaraquan dougeby hathind

Maintain the Windows Autopatch environment

After you've completed enrollment in Windows Autopatch, some management settings might need to be adjusted. Use the following steps:

  1. Review the Microsoft Intune settings described in the following section.
  2. If any of the items apply to your environment, make the adjustments as described.

Note

As your operations continue in the following months, if you make changes after enrollment to policies in Microsoft Intune, Azure Active Directory, or Microsoft 365 that affect Windows Autopatch, it's possible that Windows Autopatch could stop operating properly. To avoid problems with the service, check the specific settings described in Fix issues found by the readiness assessment tool before you change the policies listed there.

Microsoft Intune settings

Setting Description
Update rings for Windows 10 or later For any update rings for Windows 10 or later policies you've created, exclude theModern Workplace Devices - AllAzure AD group from each policy. For more information, seeCreate and assign update rings.

Windows Autopatch will also have created some update ring policies. all of which The policies will have "Modern Workplace" in the name. For example:

  • Modern Workplace Update Policy [Broad]-[Windows Autopatch]
  • Modern Workplace Update Policy [Fast]-[Windows Autopatch]
  • Modern Workplace Update Policy [First]-[Windows Autopatch]
  • Modern Workplace Update Policy [Test]-[Windows Autopatch]

When you update your own policies, ensure that youdon'texclude theModern Workplace Devices - AllAzure AD group from the policies that Windows Autopatch created.

To resolve the Not ready result:

After enrolling into Autopatch, make sure that any update ring policies you have exclude the Modern Workplace Devices - All Azure Active Directory (AD) group.For more information, see Manage Windows 10 software updates in Intune.

To resolve the Advisory result:

  1. Make sure that any update ring policies you have exclude the Modern Workplace Devices - All Azure Active Directory (AD) group.
  2. If you have assigned Azure AD user groups to these policies, make sure that any update ring policies you have also exclude the Modern Workplace - All Azure AD group that you add your Windows Autopatch users to (or an equivalent group).

For more information, see Manage Windows 10 software updates in Intune.