Це відео не доступне.
Перепрошуємо.

Manage Windows Updates From the Cloud Using Endpoint Manager

Поділитися
Вставка
  • Опубліковано 7 сер 2024
  • Are you a device administrator responsible for updating Windows on dozens, hundreds, or thousands of PCs? Have you used WSUS, Configuration Manager or Intune? In this show, we'll explain all of the options and for managing Windows Updates from the cloud using Microsoft Endpoint Manager and how it compares to your options in Configuration Manager and WSUS.
    Jason Githens from the Windows Management team at Microsoft joins Jeremy Chapman for a full tour of Microsoft Endpoint Manager's Windows Update ring, feature update, and quality update policies. These policies add a layer of control on top of Windows Update for Business Group Policy settings and are part of the foundation for Windows Autopatch. We'll take a look at your options and how to use each of them, along with best practice recommendations.
    For more information, check out 'The "Mechanics" of cloud-based update management' blog at aka.ms/WufBMechanicsBlog
    ► QUICK LINKS:
    00:00 Introduction of Windows Update management through Endpoint Manager
    00:50 New options to manage Windows updates from the cloud
    01:28 Configuration Manager vs. cloud-based update management
    02:50 How to set up Configuration Manager using Cloud Attach
    5:05 An overview of Windows Update rings
    8:03 Create Windows feature and quality updates
    ► Link Reference:
    Find the latest information on Windows Update management: aka.ms/ManagementMechanics
    View an interactive guide for the Cloud Attach process at: aka.ms/CloudAttach
    ► Unfamiliar with Microsoft Mechanics?
    • As the Microsoft’s official video series for IT, you can watch and share valuable content and demos of current and upcoming tech from the people who build it at Microsoft.
    Subscribe to our UA-cam: ua-cam.com/users/MicrosoftMe...
    • Talk with other IT Pros, join us on the Microsoft Tech Community: techcommunity.microsoft.com/t...
    • Watch or listen from anywhere, subscribe to our podcast: microsoftmechanics.libsyn.com...
    • To get the newest tech for IT in your inbox, subscribe to our newsletter: www.getrevue.co/profile/msftm...
    ► Keep getting this insider knowledge, join us on social:
    • Follow us on Twitter: / msftmechanics
    • Share knowledge on LinkedIn: / microsoft-mechanics
    • Enjoy us on Instagram: / msftmechanics
    • Loosen up with us on TikTok: / msftmechanics
    #windowsupdate #windows #cloud

КОМЕНТАРІ • 29

  • @drrich1755
    @drrich1755 2 роки тому +1

    Great work! Excited to start testing these features.

  • @christophercass5713
    @christophercass5713 2 роки тому +1

    Can’t wait for Driver updates to be released in MEM

  • @johnwuethrich5064
    @johnwuethrich5064 Рік тому +1

    Is there a way to force updates to a day of the week?

  • @mstreet1963
    @mstreet1963 2 роки тому +1

    Hi All, thanks for your informative podcasts. My current client base are mainly all small businesses and most don't have in house domain controllers and SCCM. All their workstations are just connected to the office 365 Active directory. Is there anyway of configuring Endpoint management to push out updates in this enviroment?

    • @Consolex666
      @Consolex666 2 місяці тому

      yes you can, assign the update ring to a dynamic group where you would added those computers, endpoint manager can see them.

  • @uhfrc
    @uhfrc 2 роки тому +3

    How are people monitoring the update status? Using a compliance policy is a pain as it'll (rightly) mark the device an non-compliant, which in most of our environments will stop them syncing files and accessing services, we really need to know before hand that updates are not installing so we can get ahead of this before it starts causing the user problems due to falling over a compliance policy.

    • @misi_epa
      @misi_epa 9 місяців тому

      The device goes to Grace period status before becomes non compliant, you will have 5 days to sort those out before they get the non compliant status.

  • @ryanmcdowell7000
    @ryanmcdowell7000 2 роки тому +2

    I see "Driver management for Windows 10" in your screenshare. Any update on this??

    • @MSFTMechanics
      @MSFTMechanics  2 роки тому +1

      Great observation, this feature is still in the works as we showed starting at 6:24 here: ua-cam.com/video/EEuzEn0qmI8/v-deo.html

  • @Geonious
    @Geonious Рік тому

    Can this feature be set to run on a specified group of Azure AD computers, or is this feature network wide only?

    • @MSFTMechanics
      @MSFTMechanics  Рік тому

      Yes, you can scope using device groups or user groups.

  • @hydewhyte4364
    @hydewhyte4364 2 роки тому +1

    Ok, so I have Config manager (SCCM) with WSUS, no azure or intune to date .... what additional licensing am i looking at? 250 virtual servers, 7k+ pc devices ... soon to add 6000 mobile android for MDM

    • @paulcharles5961
      @paulcharles5961 2 роки тому +2

      You'll need an Intune license for each user or device. You can get a stand alone Intune license or aquire the license through a bundle ( like Microsoft 365 E3)

  • @anirudhganesh5249
    @anirudhganesh5249 2 роки тому

    more setups tutorial but not sure how Producer asures up in that departnt.

  • @bitgamerx9574
    @bitgamerx9574 2 роки тому +1

    I tested setting automatic update behavior to 'Reset to default' however it did not toggle 'Automatically adjust hours for this device based on activity' to on. The other settings I included in the update ring did take so I know it was applied. Also, could you please explain how the Auto reboot before deadline setting works?

    • @MSFTMechanics
      @MSFTMechanics  2 роки тому +2

      That ensures a reboot is forced before deadline + grace period to complete the install of the applied update(s).

  • @robinknudson3663
    @robinknudson3663 Рік тому

    Miss the EBC discussions guys....

  • @contentlight3486
    @contentlight3486 Рік тому

    I have a question. Does intune first downloads the Windows updates to Azure Blob storage and then push updates to End devices in tenant?

    • @MSFTMechanics
      @MSFTMechanics  Рік тому

      No, the updates are pulled directly from Windows Update. Uploaded app packages would be stored centrally, but not the updates in WU.

  • @Matte_olo
    @Matte_olo 2 роки тому +1

    When will be possible to manage update also to non Microsoft product?

    • @uhfrc
      @uhfrc 2 роки тому

      +1 as an MSP, we are having to buy 3rd party tools to ensure 3rd party products are patched, these tools will often include comprehensive support for windows updates too (with monitoring), so we'd use one or the other, not both. In the UK, for Cyber Essentials Compliance, we need to install 3rd party patches inside 14 days.

  • @tdannecy
    @tdannecy 2 роки тому

    Why are the Quality Updates called “break glass”?

    • @MSFTMechanics
      @MSFTMechanics  2 роки тому

      The policy is referred to it like that, e.g. "urgent." The ring policy will govern most of the update timing, but if you need to expedite the software update, then you use the quality update policy.

    • @JonMorris93
      @JonMorris93 2 роки тому +1

      It’ll feel like broken glass when cleaning up the messes caused by them.

  • @dreeves14
    @dreeves14 11 місяців тому

    Year later updating is still a huge effing issue. Can't believe how bad or PITA it is to update end points. Security updates shouldn't be so hard or slow to get put in place.

  • @markcuello5
    @markcuello5 2 роки тому

    HELP

  • @stevewright5177
    @stevewright5177 2 роки тому

    nothing secure about using the cloud for anything!

  • @Consolex666
    @Consolex666 2 місяці тому

    WSUS is cruddy because Microsoft stopped working on it 15 years ago, not because cloud is better. Microsoft overselling cloud based services over their own abandonware is getting tiresome.