How to block all patches or update installing on specific computer

Evol12-5109 105 Reputation points
2023-06-28T02:44:35.5166667+00:00

For some computers have deployed a software/system, any patches or quality updates will cause the software not working.

Is there any possible solution or configuration in intune can disable the installation of the patches/updates? And also keep the computer stay in Win10

Windows for business | Windows Client for IT Pros | User experience | Other
Microsoft Security | Intune | Other
{count} votes

Answer accepted by question author
  1. Crystal-MSFT 54,201 Reputation points Microsoft External Staff
    2023-06-28T05:27:34.1933333+00:00

    @Evol12-5109, Thanks for posting in Q&A. To block installing windows update, you can follow the following steps:

    1. Create feature update policy to remain at one windows feature version: For example remain at windows 10 22H2 or others. https://learn.microsoft.com/en-us/mem/intune/protect/windows-10-feature-updates
    2. Create windows update ring policy to set “Option to check for Windows Updates” as disabled to disable the option that users can look for Windows Updates themselfs. That way they can not manually update.

    Hope the above information can help.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.