Forum Discussion
Automatic update settigns misconfigured alerts on autopatch mgmt status
The Intune policy is arriving, but Autopatch is correctly detecting a second policy source that sets automatic updates to disabled. On an affected device, run gpresult /h gp.html and rsop.msc, then inspect Computer Configuration, Windows Components, Windows Update. Compare that output with the remediated device. Also check HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU: NoAutoUpdate=1 is one of the conflict values Autopatch monitors. Trace and remove the source first—old Local Group Policy from the image, an RMM agent, or Configuration Manager software-update client settings—otherwise the value will return. After confirming the source, target only affected Autopatch devices with an Intune remediation that removes the conflicting value, then run policy sync, reboot, and allow reporting to refresh. Verify the MDM policy separately under HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Update or export the MDM diagnostic report. If NoAutoUpdate reappears, capture its return time and inspect the responsible management agent rather than repeatedly deleting the registry value.