The ability to configure compliance-deadline policies for quality and feature updates. This builds upon the existing IT pro and user experience by providing a grace-period setting after the configured-enterprise deadline to get the device updated.įor our Active Directory domain-joined devices, we created group policies that directed Windows 10 devices to get their updates from WUfB.The ability to disable pause functionality. We can now prevent users from blocking quality updates via group policy in Windows 10 to ensure they don’t keep delaying quality updates that often include important security updates.The ability to configure separate restart policies for quality and feature updates. This allows us to provide users with flexible installation experiences while keeping the company secure.The new WUfB features and configuration options include: Since the release of Windows 10 version 1803, several new features and configuration options have been introduced that we’ve deployed through our early adoption program as well as our broad deployment. Now, we can more confidently manage and monitor deployments. Enhancements in Windows Analytics and Desktop Analytics have increased visibility into deployment activities and delivery optimization. Greater visibility into device update health. Windows Analytics and Desktop Analytics provide extensive data about the state of devices to help manage Windows deployments.If an anomaly is recognized, we can easily roll back feature and quality updates using Intune. Greater control over update deployment. Now, we can remotely pause and uninstall problematic updates.Specifically, this version provided the following benefits: It offered new features that improved control and visibility of WUfB, and it helped us better manage, secure, and target deployments. We began moving all of our Windows 10 update servicing into WUfB after the release of Windows 10 version 1803, also known as the Windows 10 April 2018 Update. WUfB manages updates for both traditionally and modernly managed Windows 10 devices at Microsoft Implementing Windows Update for Business As illustrated in Figure 1, WUfB has made it possible to shift our update-management workload to the cloud and introduce consistency in how we deploy updates to both domain-joined and managed devices.įigure 1. To simplify IT administration, we’re making modern management with Intune and Azure AD the default experience for new devices. Most employee and vendor devices are still AD-joined and managed with Configuration Manager. In our environment, we use co-management strategies while moving all devices toward modern management with Intune and Azure AD-joined. Using co-management strategies to get to modern managementĪt Microsoft, there are currently 210,000 Active Directory domain-joined Windows 10 devices managed through System Center Configuration Manager and 30,000 Azure AD Windows 10 devices managed through Intune. It also provides centralized management and can be configured without requiring any on-premises infrastructure. We can also restart enforcement using group policy for domain-joined devices, and Microsoft Intune policies for cloud domain-joined or Azure AD-joined devices. With WUfB, we can control how and when our employees’ and vendors’ Windows 10 devices are updated, including update deferments. WUfB helps us keep Windows 10 devices at Microsoft up to date by connecting them directly to the Windows Update service. Quality updates. Released every month, quality updates include security and reliability fixes.Feature updates. Released twice a year, feature updates include new operating system features, functionality, and bug fixes.With Windows 10, our updates are smaller and more frequent. For Windows 10, an operational approach to deploying major updates was needed-an approach that allowed processes to be continually refined with each release, reducing cost and complexity over time. It was time consuming, costly, and often disruptive for the business. We had to approach almost every major update release as a complicated, long-term project. Windows was traditionally serviced with major version releases every few years, service packs, and monthly updates. ![]() To streamline update management and eliminate the need for on-premises infrastructure to deploy updates, Microsoft Digital recently implemented Windows Update for Business (WUfB), a publicly available, cloud-based Windows update service that simplifies update management for Windows 10 devices. ![]() Rather than waiting years between version releases, Microsoft now spreads new features and the latest security defenses into a continual update process. Windows 10 features a continuous update delivery model with a faster update release cadence. The release of Windows 10 introduced Windows as a service and a new approach to servicing Windows and deploying updates.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |