Blog Post

Windows IT Pro Blog
2 MIN READ

Windows update expiration policy explained

Christine Ahonen's avatar
Oct 19, 2021

Microsoft produces two to three updates per supported Windows platform monthly. This results in a backlog of updates and potentially increases the size of update packages. Many of these updates, however, are cumulative and include all earlier updates that have been published for that platform. That means, when older packages expire, you still receive the updates contained in those packages by installing the cumulative update.

By expiring older, redundant packages, you get better performance, shorter scan times, a faster user experience, and reduced risk of deploying older updates which have been superseded with newer, more secure ones. Here are answers to common questions we receive about our Windows update expiration policy.

How often are update packages expired?

Our published packages are evaluated for expiration on a regular basis. Once a large enough quantity of candidates have been found, an expiration will take place.

Why aren't older updates expired?

Some older packages may not yet have been evaluated or may not have met the criteria for expiration. It is also possible that they have not yet expired because of existing dependencies on that specific update.

Are there any packages that cannot be expired? 

Security-only update packages for Windows 8.1, Windows Server 2012 SP2, Windows Server 2012, Windows 7 SP1, Windows Server 2008 R2, and Windows Server 2008 SP2 do not expire as they are not cumulative and hold only one month worth of fixes. Additionally, if a more recent update package has a dependency on an older package, the older package will not expire until it has been superseded by a newer package.

How can find out if my update has expired?

If an update has expired, you will see the word "EXPIRED" appended to the title of  the release note article associated with that specific update on support.microsoft.com.

There will also be an expiration notice at the top of the article.

If you are using Windows Server Update Services (WSUS), you will see a banner at the top of the details pane if a given update has expired.

Note: This policy only applies to Windows updates. Updates for other Microsoft software or firmware may have different policies and should be considered separately.

 

Updated Oct 19, 2021
Version 2.0

3 Comments

  • Hi abbodi1406 and 

     

    Thank you for your questions.  Monthly quality rollups for Windows 8.1 and Windows 7 SP1 are under current evaluation. As noted above, they have special considerations since they are packaged and offered differently than Windows 10.  We will do our best to be transparent about these expirations as additional details become available.

     

    , can you provide additional details about the AJtek WAM scenario?  Screenshots would also be helpful.  Once I have this information, I should be able to assist you further.

     

    Sincerely,

    Christine

     

     

     

     

     

     

     

     

  • Hi Christine Ahonen

    Same as abbodi1406 also most of cumulative updates for Windows 10, Windows Server do not see expired flags which led to the point that AJtek WAM does expire updates and even remove them from the WSUS database at a custom schedule.

     

    This is against the WSUS method to not decline and expire updates as long anyone needs it. 

     

    But is needed as the expiration flag or supersedence is not provided for modern OS. 

     

    Do you need more information or screenshots on this? 

  • abbodi1406's avatar
    abbodi1406
    Steel Contributor

    When will the Monthly Quality Rollup series for Windows 8.1 (and 7) will be evaluated for expiration?

    since the start with September 2016 – KB3185279, none of the Rollups are expired 🙂