Event banner
AMA: Windows updates in Intune: drivers, firmware, and Autopatch
Event details
Do you have questions on how to better manage Windows driver and firmware updates with Microsoft Intune? Are you curious to learn how driver and firmware updates with Windows Autopatch? Watch this special Ask Microsoft Anything on managing Windows updates in Intune!
This AMA is part of a Microsoft Intune edition of Tech Community Live. Visit https://aka.ms/TCL/Intune for more! |
122 Comments
- CraigDKIron Contributor
Will Intune driver management be tied to the drivers as recommended by the vendor of the PC, or the vendor of the hardware within the PC.
e.g. Microsoft Surface Laptop 3's have an approved Intel AX201 Wifi driver of 22.80 within the latest MS driver bundle, but Intel have version 22.220 available for the exact same Wifi card. You can download and install the 22.220 driver direct from Intel and apply it to the Surface Laptop 3 with a Win32 app with no issues but I'm unclear on what driver version Intune would offer up and let you deploy via the driver feature in this example.
- catmirCopper ContributorIs there an option for users to postpone the installation? Right now you are forced to reboot, for each driver push
- David_Guyer
Microsoft
A very good question. The answer is in the targeting authoring for the drivers. A general driver, say from Intel, will typically have Hardware ID targeting, or HID. A more specific version, say by a device manufacturer like Lenovo will target with a more specific CHID. So, a device with an HID driver installed can install an update that is HID or CHID targeted, but once the device gets the CHID target then it can only get updated via a CHID targeted driver update to avoid installing a more general version that may be not be fully functional. More details are in this article: https://learn.microsoft.com/en-us/windows-hardware/drivers/dashboard/using-chids HTH- CraigDKIron ContributorThanks for that - it would be handy if there was an override option to show multiple choices where there were matches, e.g. in the Surface example the only driver for the AX201 card that shows would be 22.80 as that's the lateset in the driver pack, but if you tick a box (and accept a warning) it shows you matching generic drivers too, which in this case would be 22.230 as that's the latest available from Intel for the same card.
- Jakub_sedmakCopper ContributorWhy is Windows Autopatch only available for the E3 license? Will Windows Autopatch be available for academics with an A3 or higher subscription? Thank you for the answer.
- Lior_Bela
Microsoft
Hi Jakub, currently Autopatch is available through Windows E3 and higher. Please monitor our blogs at aka.ms/moreaboutautopatch for future updates- Jakub_sedmakCopper ContributorHi Lior, thanks for your answer. I know that Windows Autopatch is only available for E3 licenses and above. I'm just asking why this is the case. Why is business prioritized over education?
- RodawingBrass ContributorIf we have already implemented Update rings how hard will it be to switch over to Autopatch and driver management?
- Char_CheesmanBronze Contributor
Thanks for participating in today's Windows updates in Intune: drivers, firmware, and Autopatch AMA! For reference, the panel covered this topic at around 27:00.
- nlmitchellIron ContributorGood to hear that it doesn't require EMS subscription. Apologies if I've missed it, but when will it appear in Intune tenants as general release?
- TheAutisticTechieBrass ContributorI've deployed Autopatch which went smoothly however i'm getting reports from the admin centre that almost all of the devices have the status of "Supported feature update but old LCUs" Are LCUs not included with Autopatch?
- David_Guyer
Microsoft
LCU's should be supported. Check the Autopatch | Release Management page for more information.
- Dr_SnoozeBrass ContributorAre there plans to allow Intune to manage additional update paths? For instance, Edge updates, Office updates, Store updates, VS Code updates, etc.?
- Char_CheesmanBronze Contributor
Thanks for participating in today's Windows updates in Intune: drivers, firmware, and Autopatch AMA! For reference, the panel covered this topic at around 32:00.
- KevinMineweaser_MSFT
Microsoft
Hi Paul, We have had some feedback regarding the need to reduce servicing channels and simplify updating across the broader stack. This is an area we continuing to take feedback on and investigate. Thanks, -Kevin
- riverae2Copper ContributorIs it possible to set custom approval requirements based on driver type (network, video) or number of applicable devices?
- Ryan_WilliamsBrass ContributorMore granular controls over what driver and firmware content gets automatically approved is in our backlog to implement as an enhancement to the current capabilities.
- 4cbmelin-workCopper ContributorIf we Approve a driver in the Needs review list, and schedule it for next Patch Tuesday, does that work with our internally structured ring deployments, making it visible only when the device is scheduled for Windows Updates?
- David_Guyer
Microsoft
Yes, when you set the Approval date to the patch Tuesday date, it will be offered on that day. If you want to align that approval with a ring with a Quality Update deferral, you'll need to add that many days to the Approval Date from Patch Tuesday. For example, if patch Tuesday in Jan 1st, and you are approving a driver where the devices are in an Update Ring with a 3 day deferral, then Approve the driver for Jan 4th. Hope that helps!
- SigurdWernerIron ContributorDriver reporting: Any way for RBAC on driver reporting? So, if a user has access only devices in a specific group will he see drivers of all the devices in Intune tenant or only the once he is allowed to see?
- Bryan Keller
Microsoft
Great feedback, let me share this with the team and we can work through our plans there.- SigurdWernerIron ContributorCurrently we see two ways this has been handled in other Intune reports: e.g. in Feature Update Device Readiness, the user sees all but can easily filter by selecting a scop tag. In Advanced Endpoint Analytics it has additional device scopes. We have ~100 different companies in just on Intune tenant.
- gschrootBrass ContributorWill driver and firmware management be part of Intune of only in Intune Suite (or as an add-on)?
- Char_CheesmanBronze Contributor
Thanks for participating in today's Windows updates in Intune: drivers, firmware, and Autopatch AMA! For reference, the panel covered this topic at around 18:00.
- Bryan Keller
Microsoft
It is included in "base" Intune however it does require an M365 Enterprise E3/E5 license