Skip to content

Commit 080a580

Browse files
Learn Build Service GitHub AppLearn Build Service GitHub App
authored andcommitted
Merging changes synced from https://github.com/MicrosoftDocs/memdocs-pr (branch live)
2 parents 98f590d + 7ca4ea2 commit 080a580

127 files changed

Lines changed: 735 additions & 661 deletions

File tree

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

.openpublishing.redirection.intune.json

Lines changed: 110 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,115 @@
11
{
22
"redirections": [
3+
{
4+
"source_path": "intune/intune-service/protect/fota-updates-android.md",
5+
"redirect_url": "/intune/device-updates/android/fota-updates",
6+
"redirect_document_id": false
7+
},
8+
{
9+
"source_path": "intune/intune-service/protect/software-update-agent-error-codes.md",
10+
"redirect_url": "/intune/device-updates/windows/software-update-agent-error-codes",
11+
"redirect_document_id": false
12+
},
13+
{
14+
"source_path": "intune/intune-service/protect/software-updates-guide-android.md",
15+
"redirect_url": "/intune/device-updates/android/software-updates-guide",
16+
"redirect_document_id": false
17+
},
18+
{
19+
"source_path": "intune/intune-service/protect/software-updates-guide-personal-byod.md",
20+
"redirect_url": "/intune/device-updates/byod-software-updates-guide",
21+
"redirect_document_id": false
22+
},
23+
{
24+
"source_path": "intune/intune-service/protect/updates/apple.md",
25+
"redirect_url": "/intune/device-updates/apple/index",
26+
"redirect_document_id": false
27+
},
28+
{
29+
"source_path": "intune/intune-service/protect/updates/apple-reports.md",
30+
"redirect_url": "/intune/device-updates/apple/reports",
31+
"redirect_document_id": false
32+
},
33+
{
34+
"source_path": "intune/intune-service/protect/updates/software-updates-guide-ios-ipados.md",
35+
"redirect_url": "/intune/device-updates/apple/software-updates-guide-ios-ipados",
36+
"redirect_document_id": false
37+
},
38+
{
39+
"source_path": "intune/intune-service/protect/updates/software-updates-guide-macos.md",
40+
"redirect_url": "/intune/device-updates/apple/software-updates-guide-macos",
41+
"redirect_document_id": false
42+
},
43+
{
44+
"source_path": "intune/intune-service/protect/updates/software-updates-ios.md",
45+
"redirect_url": "/intune/device-updates/apple/software-updates-ios",
46+
"redirect_document_id": false
47+
},
48+
{
49+
"source_path": "intune/intune-service/protect/updates/software-updates-macos.md",
50+
"redirect_url": "/intune/device-updates/apple/software-updates-macos",
51+
"redirect_document_id": false
52+
},
53+
{
54+
"source_path": "intune/intune-service/protect/windows-10-expedite-updates.md",
55+
"redirect_url": "/intune/device-updates/windows/expedite-updates",
56+
"redirect_document_id": false
57+
},
58+
{
59+
"source_path": "intune/intune-service/protect/windows-10-feature-updates.md",
60+
"redirect_url": "/intune/device-updates/windows/feature-updates",
61+
"redirect_document_id": false
62+
},
63+
{
64+
"source_path": "intune/intune-service/protect/windows-10-update-rings.md",
65+
"redirect_url": "/intune/device-updates/windows/update-rings",
66+
"redirect_document_id": false
67+
},
68+
{
69+
"source_path": "intune/intune-service/protect/windows-driver-updates-overview.md",
70+
"redirect_url": "/intune/device-updates/windows/driver-updates-overview",
71+
"redirect_document_id": false
72+
},
73+
{
74+
"source_path": "intune/intune-service/protect/windows-driver-updates-policy.md",
75+
"redirect_url": "/intune/device-updates/windows/driver-updates-policy",
76+
"redirect_document_id": false
77+
},
78+
{
79+
"source_path": "intune/intune-service/protect/windows-quality-update-policy.md",
80+
"redirect_url": "/intune/device-updates/windows/quality-updates-policy",
81+
"redirect_document_id": false
82+
},
83+
{
84+
"source_path": "intune/intune-service/protect/windows-update-compatibility-reports.md",
85+
"redirect_url": "/intune/device-updates/windows/compatibility-reports",
86+
"redirect_document_id": false
87+
},
88+
{
89+
"source_path": "intune/intune-service/protect/windows-update-for-business-configure.md",
90+
"redirect_url": "/intune/device-updates/windows/configure",
91+
"redirect_document_id": false
92+
},
93+
{
94+
"source_path": "intune/intune-service/protect/windows-update-reports.md",
95+
"redirect_url": "/intune/device-updates/windows/reports",
96+
"redirect_document_id": false
97+
},
98+
{
99+
"source_path": "intune/intune-service/protect/windows-update-rollout-options.md",
100+
"redirect_url": "/intune/device-updates/windows/rollout-options",
101+
"redirect_document_id": false
102+
},
103+
{
104+
"source_path": "intune/intune-service/protect/windows-update-settings.md",
105+
"redirect_url": "/intune/device-updates/windows/settings",
106+
"redirect_document_id": false
107+
},
108+
{
109+
"source_path": "intune/intune-service/protect/zebra-lifeguard-ota-integration.md",
110+
"redirect_url": "/intune/device-updates/android/zebra-lifeguard-ota-integration",
111+
"redirect_document_id": false
112+
},
3113
{
4114
"source_path": "intune/analytics/adoption-score.md",
5115
"redirect_url": "/intune/endpoint-analytics/adoption-score",

autopilot/known-issues.md

Lines changed: 11 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
---
22
title: Windows Autopilot known issues
33
description: Be informed about known issues that might occur during Windows Autopilot deployment. # RSS subscription is based on this description so don't change. If the description needs to change, update RSS URL in the Tip in the article.
4-
ms.date: 08/13/2025
4+
ms.date: 12/15/2025
55
ms.collection:
66
- M365-modern-desktop
77
- highpri
@@ -137,13 +137,16 @@ The Windows Autopilot deployment report was updated to a new infrastructure that
137137
138138
<!-- MAXADO-9270654 -->
139139
140-
### Auto logon for Kiosk device profile only partially fixed
140+
### Auto logon for Kiosk device profile is fixed
141141
142-
Date added: *August 21, 2024*
142+
Date added: *August 21, 2024*
143+
Date updated: *December 15, 2025*
143144
144-
The known issue of [Kiosk device profiles not auto logging in when auto logon was enabled](#kiosk-device-profile-not-auto-logging-in) was previously reported as fixed. However, there are scenarios where the issue might still occur when using autologon with Kiosks and [Assigned Access](/windows/configuration/assigned-access/overview). If multiple reboots or unexpected reboots occur during the Windows out-of-box experience (OOBE) when initially configuring the Kiosk, the autologon entries in the registry might be deleted. The issue is being investigated.
145+
The known issue of [Kiosk device profiles not auto logging in when auto logon was enabled](#kiosk-device-profile-not-auto-logging-in) was previously reported as fixed. There were scenarios where the issue could still occur when using autologon with Kiosks and [Assigned Access](/windows/configuration/assigned-access/overview). If multiple reboots or unexpected reboots occur during the Windows out-of-box experience (OOBE) when initially configuring the Kiosk, the autologon entries in the registry might be deleted.
145146
146-
The following workarounds are available until the issue is resolved:
147+
**Resolution**: This issue is fixed in Windows 11, version 24H2 on systems that are patched with [KB5058411](https://support.microsoft.com/topic/may-13-2025-kb5058411-os-build-26100-4061-356568c2-c730-469e-819d-b680d43b1265) or later.
148+
149+
Prior to the [KB5058411](https://support.microsoft.com/topic/may-13-2025-kb5058411-os-build-26100-4061-356568c2-c730-469e-819d-b680d43b1265) fix, the following workarounds were available:
147150
148151
1. Apply or reapply the kiosk profile after Windows Autopilot completes.
149152
@@ -204,9 +207,9 @@ Platforms with the Infineon SLB9672 TPM with firmware release 15.22 with EK cert
204207
### Kiosk device profile not auto logging in
205208
206209
Date added: *January 30, 2023*<br>
207-
Date updated: *August 21, 2024*
210+
Date updated: *August 21, 2024*, *December 15, 2025*
208211
209-
There's currently a known issue in the following Windows Updates released in January 2023:
212+
There was a known issue in the following Windows Updates released in January 2023:
210213
211214
- Windows 11, version 22H2: [KB5022303](https://support.microsoft.com/topic/january-10-2023-kb5022303-os-build-22621-1105-c45956c6-4ccb-4216-832c-2ec6309c7629)
212215
- Windows 11, version 21H2: [KB5022287](https://support.microsoft.com/topic/january-10-2023-kb5022287-os-build-22000-1455-951898ec-2628-4d25-850e-9a44207bc139)
@@ -218,9 +221,7 @@ If these updates are installed on a device, Kiosk device profiles that have auto
218221
- Windows 11, version 21H2: [KB5025224](https://support.microsoft.com/topic/april-11-2023-kb5025224-os-build-22000-1817-ebc75372-608d-4a77-a6e0-cb1e15f117fc) or later.
219222
- Windows 10, version 22H2: [KB5023773](https://support.microsoft.com/topic/march-21-2023-kb5023773-os-builds-19042-2788-19044-2788-and-19045-2788-preview-5850ac11-dd43-4550-89ec-9e63353fef23) or later.
220223
221-
> [!NOTE]
222-
>
223-
> This issue was only partially fixed and can still occur under certain conditions. For more information, see [Auto logon for Kiosk device profile only partially fixed](#auto-logon-for-kiosk-device-profile-only-partially-fixed).
224+
**Resolution**: This issue is fixed. For more information, see [Auto logon for Kiosk device profile only partially fixed](#auto-logon-for-kiosk-device-profile-is-fixed).
224225
225226
### TPM attestation isn't working on AMD platforms with ASP fTPM
226227

intune/agents/vulnerability-remediation-agent-use.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -140,16 +140,16 @@ Remediation guidance falls into the following categories:
140140
- Deployment of a quality update policy
141141
- Expedited deployment of quality updates using Windows update rings
142142

143-
When a recommendation involves a Windows update, the agent guidance includes details about using [update rings](../intune-service/protect/windows-10-update-rings.md) to help manage a controlled rollout of the update.
143+
When a recommendation involves a Windows update, the agent guidance includes details about using [update rings](../device-updates/windows/update-rings.md) to help manage a controlled rollout of the update.
144144

145145
> [!IMPORTANT]
146-
> Some suggested Windows update recommendations begin with **Expedite**. The agent uses this format when the CVE's Common Vulnerability Scoring System (CVSS) score reaches a risk value of **9.0** or greater. For this level of risk, the agent recommends expediting these updates to your devices immediately. The guidance includes how to use [Expedited installation of quality updates](../intune-service/protect/windows-10-expedite-updates.md) to more rapidly deploy the recommended update.
146+
> Some suggested Windows update recommendations begin with **Expedite**. The agent uses this format when the CVE's Common Vulnerability Scoring System (CVSS) score reaches a risk value of **9.0** or greater. For this level of risk, the agent recommends expediting these updates to your devices immediately. The guidance includes how to use [Expedited installation of quality updates](../device-updates/windows/expedite-updates.md) to more rapidly deploy the recommended update.
147147
148148
#### Configuration recommendations
149149

150150
> [!NOTE]
151151
>
152-
> There is an active but temporary issue affecting the Vulnerability Remediation agent. Until its resolved, the agent is unable to provide recommended __Configurations__ for settings to use for this threat. The agent still identifies threats, explains their background, and offers step-by-step actions.
152+
> There is an active but temporary issue affecting the Vulnerability Remediation agent. Until it's resolved, the agent is unable to provide recommended __Configurations__ for settings to use for this threat. The agent still identifies threats, explains their background, and offers step-by-step actions.
153153
>
154154
> Configuration recommendations will resume automatically once the issue is resolved.
155155

intune/configmgr/comanage/faq.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -129,7 +129,7 @@ sections:
129129
answer: |
130130
You can manage updates for Windows and Microsoft 365 apps with either Configuration Manager or Intune. Configuration Manager provides a very detailed and controlled process for managing these updates and their content, which is important to some customers. A modern approach is to just keep devices up to date, but still control the timing and user experiences.
131131
132-
If you switch the **Windows Update policies** workload to Intune, then it becomes the management authority for Windows quality and feature updates. Use Intune to configure settings for update rings and feature update settings. For more information, see [Manage Windows software updates in Intune](../../intune-service/protect/windows-update-for-business-configure.md).
132+
If you switch the **Windows Update policies** workload to Intune, then it becomes the management authority for Windows quality and feature updates. Use Intune to configure settings for update rings and feature update settings. For more information, see [Manage Windows software updates in Intune](../../device-updates/windows/configure.md).
133133
134134
If you switch the **Office Click-to-Run apps** workload to Intune, then it becomes the management authority for Microsoft 365 apps and updates. When you create a new Microsoft 365 suite deployment, choose the update channel for your clients will be at. For more information, see the following articles:
135135

intune/configmgr/comanage/workloads.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -51,7 +51,7 @@ After moving the Windows Update workload to Intune, the client settings in Confi
5151
> [!NOTE]
5252
> To use Windows Autopatch with these devices, this workload must be moved to Intune, and client settings for Software Updates set to 'No' in Configuration Manager. For more information, see [Prerequisites for Windows Autopatch](/windows/deployment/windows-autopatch/prepare/windows-autopatch-prerequisites).
5353
54-
For more information on the Intune feature, see [Manage Windows software updates in Intune](../../intune-service/protect/windows-update-for-business-configure.md).
54+
For more information on the Intune feature, see [Manage Windows software updates in Intune](../../device-updates/windows/configure.md).
5555

5656
## Resource access policies
5757

intune/configmgr/core/plan-design/hierarchy/microsoft-connected-cache.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -262,7 +262,7 @@ When you install a Microsoft Connected Cache on a Configuration Manager distribu
262262

263263
To configure the device to use the Microsoft Connected Cache, configure the **DOCacheHost** policy. Set it to the FQDN or IP address of the Configuration Manager distribution point. For more information on this policy, see [Policy CSP - DeliveryOptimization](/windows/client-management/mdm/policy-csp-deliveryoptimization#deliveryoptimization-docachehost).
264264

265-
To use Intune to configure this policy, use the **DO Cache Host** setting in Intune Delivery Optimization profiles created *after* April 24, 2025. If your Intune profile was created *before* April 24, 2025, use the setting named **Cache server host names**. For more information, see [Delivery Optimization Windows devices in Intune](../../../../intune-service/configuration/delivery-optimization-windows.md).
265+
To use Intune to configure this policy, use the **DO Cache Host** setting in Intune Delivery Optimization profiles created *after* April 24, 2025. If your Intune profile was created *before* April 24, 2025, use the setting named **Cache server host names**. For more information, see [Delivery Optimization Windows devices in Intune](../../../..//intune-service/configuration/delivery-optimization-windows.md).
266266

267267
When you enable this policy for cloud-managed devices, either type of device can request the server to cache content, and either can download the content. If multiple devices request the same content, no matter their management authority, they download supported and available content from the Microsoft Connected Cache.
268268

intune/intune-service/protect/fota-updates-android.md renamed to intune/device-updates/android/fota-updates.md

Lines changed: 3 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -1,15 +1,12 @@
11
---
22
title: Android FOTA Updates
33
description: Use Microsoft Intune to manage firmware updates on Android devices. A FOTA update can include software and security patches, feature updates, and other changes to the device's firmware.
4-
author: paolomatarazzo
5-
ms.author: paoloma
64
ms.date: 04/09/2025
75
ms.topic: how-to
86
ms.reviewer: jieyan
97
ms.subservice: suite
108
ms.collection:
119
- M365-identity-device-management
12-
- highpri
1310
- sub-updates
1411
---
1512
# Android FOTA Updates
@@ -25,7 +22,7 @@ You have two ways to manage software updates on android:
2522
- Use Firmware Over-the-Air (FOTA), which works for some OEMs.
2623

2724
> [!NOTE]
28-
> [Microsoft Intune Plan 2 or Microsoft Intune Suite license](../fundamentals/intune-add-ons.md) is required.
25+
> [Microsoft Intune Plan 2 or Microsoft Intune Suite license](../../intune-service/fundamentals/intune-add-ons.md) is required.
2926
>
3027
> If Zebra updated the available firmware list in the last 24 hours, then the list of firmware available might take up to 24 hours to populate.
3128
@@ -35,7 +32,7 @@ You have two ways to manage software updates on android:
3532
2. Navigate to **Devices** > **By platform** > **Android** > **Manage devices** > **Configuration** > **Create** > **New policy** > **Fully Managed, Dedicated, and Corporate-Owned Work Profile** > **Device restrictions**.
3633
3. Device restrictions profiles offer control over how the device handles over-the-air updates and allow you to set a freeze period for these updates.
3734
> [!NOTE]
38-
> Not all device manufacturers support over-the-air updates. For more information, see [Corporate-owned Android Enterprise device restriction settings in Microsoft Intune](../configuration/device-restrictions-android-for-work.md)
35+
> Not all device manufacturers support over-the-air updates. For more information, see [Corporate-owned Android Enterprise device restriction settings in Microsoft Intune](../../intune-service/configuration/device-restrictions-android-for-work.md)
3936
4037
Firmware Over-the-Air (FOTA) updates allow remotely updating the firmware of devices using a wireless connection, rather than requiring the devices to be physically connected to a computer or network.
4138

@@ -45,5 +42,5 @@ In the context of FOTA, a deployment is an update policy that includes instructi
4542

4643
In addition, Microsoft Intune supports FOTA update management for supported devices from the following manufacturers. Manufacturer-specific FOTA support might offer more controls beyond what Device restrictions profiles offer.
4744

48-
- **Zebra**: Go to [Zebra LifeGuard Over-the-Air Integration with Microsoft Intune](../protect/zebra-lifeguard-ota-integration.md).
45+
- **Zebra**: Go to [Zebra LifeGuard Over-the-Air Integration with Microsoft Intune](zebra-lifeguard-ota-integration.md).
4946
- **Samsung**: Go to [Samsung E-FOTA Update Management with Microsoft Endpoint Manager](https://techcommunity.microsoft.com/t5/intune-customer-success/samsung-e-fota-update-management-with-microsoft-endpoint-manager/ba-p/2002552)

intune/intune-service/protect/media/software-updates-guide-android/android-enrollment-restrictions-policy.png renamed to intune/device-updates/android/images/software-updates-guide/android-enrollment-restrictions-policy.png

File renamed without changes.

intune/intune-service/protect/media/software-updates-guide-android/android-enterprise-freeze-period-settings.png renamed to intune/device-updates/android/images/software-updates-guide/android-enterprise-freeze-period-settings.png

File renamed without changes.

intune/intune-service/protect/media/software-updates-guide-android/app-protection-policy-device-conditions.png renamed to intune/device-updates/android/images/software-updates-guide/app-protection-policy-device-conditions.png

File renamed without changes.

0 commit comments

Comments
 (0)