How to exclude none Entra registered devices from 365 app update

Copper Contributor

Hi, 

 

Looking for some advice if possible, we have been using the 365 app update for all of our devices and the inventory has imported our Citrix virtual machines, the knowledge base articles suggest to exclude these through an Entra AD group, We are unable to do this as these machines are not Entra registered, they just have 365 apps installed on them. 

 

These VM's are none persistent and the updates have been causing issue to users during the day when working so we have paused the update on all devices for now. 

 

Thanks in advance!

1 Reply

@blee15 If we are talking Cloud Update here, an easy method would be to extend the deadline to e.g. 5 days. During these five days, there shouldn't be a prompt to users, so they can use the VM/server undisrupted.

 

If there is no way to join the devices to Entra ID and extended the deadline is not sufficient, you could block the config.office.com endpoint from the network the VMs are running in. This would prevent the devices from receiving update commands from the service. Caveat: Cloud Policies for Office would also be blocked! If you use those, blocking the service endpoint is not an option, otherwise the policies can not be downloaded and applied.