How to upgrade all Intune managed devices to Win 11?

How to upgrade all Intune managed devices to Win 11?

Introduction

We spoke last time about controlling Windows Updates via Update Rings, you can check that article here - https://www.cloudpersistence.com/can-you-control-windows-updates-with-microsoft-intune-yes-to-a-degree/

This time we are going to discuss Feature Updates which can be found in the same place in Intune:
2023-09-03_15-37

You can use these Feature updates to control the major versions of your Windows devices. Why would you want your devices to be at a certain Windows major version? Well, it makes everything predictable, you avoid those weird one-off situations, you also get to confirm that all your applications work with a certain Build.

How to configure them

Who can use them? (prerequisites):

  1. You need a subscription that has one of the following licenses:
    Windows 10/11 Enterprise E3 or E5 (included in Microsoft 365 F3, E3, or E5)
    Windows 10/11 Education A3 or A5 (included in Microsoft 365 A3 or A5)
    Windows Virtual Desktop Access E3 or E5
    Microsoft 365 Business Premium

  2. Your devices must run a supported version of Windows 10/11 (can't update from Windows 95 to Win 11 😉). They also need to be enrolled to Intune, and be Hybrid AD joined or Azure AD joined

  3. Telemetry on devices must be turned on, at least with the "Required" setting (can also be configured via Intune)

Full list of prereqs here.

Then, it's rather straight forward. You will need to select the desired Windows version you want your devices to REMAIN AT, or to UPGRADE TO:
2023-10-13_17-27.png

2023-10-13_17-27_1.png

Yes, you heard that right, you can make your devices stay at a certain Windows version, OR you could use this to generate a mass update from Win10 to Win11. You will be presented with a list of Windows versions that are supported (of course).

Now, as you recall from that other post I refferenced in the beginning, there were some Feature Update defferal periods you could configure there in the Update Rings. Well, if you have Update Rings configured also, the general reccomendation for Feature update deferral days is to have it set to 0, otherwise, they can cause interferences and add delays. Also avoid assigning multiple feature update policies to the same devices.

NOTE! Before updating all devices to Windows 11, make sure your devices support Win11. Test it out toroughly first, and then do a small pilot via intune.

Conclusion

Hope this helps you gain control over the major Windows builds that you are running in your organization.