Device images overview

Windows 365 uses both default and custom operating system images to automatically create the virtual Cloud PCs that you provide to your end users. The default images are available from the gallery in Microsoft Intune as a part of creating your provisioning policy. You can also upload custom images that you create.

Image requirements

Both marketplace and custom images must meet the following requirements:

  • Windows 10 Enterprise version 21H2 or later.
  • Windows 11 Enterprise 21H2 or later.
  • Generation 2 images.

    Note

    We recently made the change to generation 2 (Gen2) virtual machine images. Newly created custom images must be Gen2. Existing custom images uploaded based on generation 1 will remain active.

  • Generalized VM image.
  • Single Session VM images (multi-session isn’t supported).
  • No recovery partition. For information about how to remove a recovery partition, see the Windows Server command: delete partition.
  • Default 64-GB OS disk size. The OS disk size is automatically adjusted to the size specified in SKU description of the Windows 365 license.

A custom image must also meet the following extra requirements:

  • Exist in an Azure subscription.
  • Is stored as a managed image in Azure.

Storing a managed image on Azure incurs storage costs. However, customers can delete the managed image from Azure once they've successfully uploaded it as a Custom Image to Microsoft Intune.

Windows 365 provides a built-in gallery of Windows Enterprise images accessible through the provisioning policy creation flow. They're replicated to all Azure regions to give you a quick provisioning experience. These images are updated monthly with the latest security updates so that end users have a secure and seamless experience.

There are two sets of images available to choose from across the different versions of Windows Enterprise:

  • Images with pre-installed Microsoft 365 Apps: Microsoft 365 Apps and Teams optimizations are already installed. The following settings are pre-applied:
    • IsWVDEnvironment reg key (Teams).
    • C++ Runtime (Teams).
    • WebRTC Redirector (Teams).
    • Microsoft Teams (Teams).
    • Microsoft Edge settings like sleeping tabs, forced browser sign-in, startup boost, and first time optimizations based on Microsoft Entra ID and synchronization. For more information, see Configure Microsoft Edge policy settings with Microsoft Intune.
    • Microsoft Outlook first-time configuration settings (auto log on based on Microsoft Entra profile, support for other profiles).
  • Images with OS optimizations: These are Windows Enterprise images optimized for improved performance on virtualized environments and on lower end hardware configurations. The following settings are pre-applied:
    • Services optimized for virtualization.
    • UWP packages removed.
    • Task scheduler actions disabled.

All supported Windows 365 gallery images are updated monthly after the security patch release schedule of Windows Servicing & Delivery. This update happens around the middle of each month.

Each updated image includes:

Newly provisioned Cloud PCs are automatically created with the latest images. For existing Cloud PCs, you can receive the updates by reprovisioning.

Custom images

If none of the default gallery images meet your requirements, you can upload up to 20 of your own custom device images.

For more information on creating such a custom image, see Create a managed image of a generalized VM in Azure. For best performance, you should also make sure to optimize your image for a virtual desktop role. For more information on this optimization, see Optimizing Windows 10, version 2004 for a Virtual Desktop Infrastructure (VDI) role.

A custom image can be created using any of the images mentioned previously as a starting point. For example, you can start with one of those images and then install more applications and make more configuration changes.

Note

For custom images with Teams application, follow the instructions detailed in Create a Cloud PC custom image that supports Microsoft Teams to configure optimizations that are needed.

For more information about adding a device image to Windows 365, see Add and delete custom device images.

When you upload a custom device image, Windows 365:

  1. Copies the image to a temporary subscription.
  2. Runs the following validation checks on the image:
    1. Verifies all the Windows 365 image requirements are met.
    2. Deploys a virtual machine and makes sure that the images can be booted and provisioned as a Cloud PC.
  3. If you have a Microsoft Entra hybrid join connection, Windows 365 replicates the image across all Azure regions where you have an Azure network connection.
  4. If you have a Microsoft Entra join connection, Windows 365 replicates the image to the provisioned region during provisioning.

Next steps

Learn about device configuration.

Learn about using apps, like Microsoft Teams, with your Cloud PCs.