Updated Microsoft Intune documentation in intune/device-updates/windows/hotpatch.md.
Windows quality-update guidance now separates expedite, hotpatch, and ordinary servicing
This was a documentation-heavy week, with the most consequential guidance concentrated in Windows update administration. Revised Intune articles distinguish standard monthly servicing from quality-update policies, targeted expedite policies, and hotpatch, while also documenting feature-update rollout constraints, a Win32 PowerShell installer path, Edge policy conflicts, and a local Autopilot Reset issue. The supplied evidence contains no Message Center item and does not establish preview, general-availability, or capability-retirement status.
- Quality-update guidance separates routine servicing from targeted scenarios
Intune · Device updates
The revised Quality Updates article says devices do not need a Windows quality updates policy to continue receiving monthly quality updates through standard Windows Update behavior. Update rings and Windows Update client policies continue to control deferrals, deadlines, restarts, and notifications. Create a quality-update policy when cloud-based orchestration, Windows Autopatch-managed deployments, hotpatch, or policy-based reporting is required; use an expedite policy instead when accelerating one specific update
- Gradual feature-update rollouts get concrete timing and prerequisite rules
Intune · Device updates
The rollout guidance specifies that the first offer-group date must be at least two days in the future. Devices are assigned randomly and evenly, with a minimum of 100 devices per group; changing dates or spacing recalculates groups for devices that have not yet received the offer. Intelligent rollouts require a Settings Catalog profile enabling Allow Windows Update for Business Cloud Processing, assigned to the same groups as the feature-update policy. This is procedural and prerequisite guidance, not a stated GA或
- Win32 app guidance documents a PowerShell-script installer path
Intune · App management
The Win32 app procedure now documents two installer types: Command line and PowerShell script. A script replaces the standard install command, is packaged with the app content, runs in the same system or user context as the installer, should run silently, is limited to 50 KB, and uses its return code to determine installation status. With Multi-Admin Approval enabled, scripts cannot be uploaded during app creation; create the app first, then add or modify the script. The documentation does not state preview or GA
- Edge for Business guidance sets enrollment-based policy boundaries
Intune · App management
The Edge for Business guidance directs administrators to use App Configuration Policies for non-enrolled devices. For enrolled Windows devices, choose either Settings Catalog policies or the Microsoft Edge Security Baseline, not both. It also warns that deploying App Configuration Policies and Settings Catalog policies targeting the same client creates conflicts. This is an administration and security-guidance clarification, not evidence that the Edge security baseline capability was retired.
- Autopilot known issue links local reset to a network-denial setting
Windows Autopilot · Device enrollment
The Windows Autopilot known-issues page records that a local Windows administrator cannot start local Windows Autopilot Reset when an Intune policy sets “Deny access to this computer from the network” for the Local account. The documented workaround is to remove that setting or exclude devices that require local Autopilot Reset; the issue remains under investigation.
Audit Windows update designs against the clarified division: retain update rings and Windows Update client policies for ordinary servicing, deferrals, deadlines, restarts, and notifications; use quality-update policies for cloud orchestration, Autopatch-managed deployments, hotpatch, or reporting, and expedite policies for targeted urgent updates. For gradual feature rollouts, verify the timing and cloud-processing prerequisite. For Win32 scripts, observe the 50 KB, silent-execution, return-code, and Multi-Admin Approval constraints. Review Edge policy assignments and any Autopilot devices that depend on local reset.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
Updates this week
Microsoft Intune
221 updatesUpdated Microsoft Intune documentation in intune/device-updates/windows/quality-updates.md.
Quality Updates
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/quality-updates.md.
Feature Update Policy
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/feature-update-policy.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/index.md.
Windows Update Ring Policies
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/update-rings.md.
Added Microsoft Intune documentation in intune/device-updates/windows/driver-update-policy.md.
Added Microsoft Intune documentation in intune/device-updates/windows/update-ring-policy-settings.md.
Added Microsoft Intune documentation in intune/device-updates/windows/feature-update-policy.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/rollout-options.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/feature-update-policy.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/quality-updates.md.
Feature Updates
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/feature-updates.md.
Index
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/index.md.
Windows Update Ring Policies
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/update-rings.md.
Driver Update Policy
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/driver-update-policy.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/feature-updates-windows-10.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/hotpatch.md.
Expedite Policy
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/expedite-policy.md.
Index
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/index.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/driver-updates.md.
Rollout Options
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/rollout-options.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/rollout-options.md.
Expedite Policy
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/expedite-policy.md.
Feature Updates
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/feature-updates.md.
Rollout Options
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/rollout-options.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/rollout-options.md.
Update Rings
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/update-rings.md.
Driver Updates Policy
RemovedRemoved Microsoft Intune documentation in intune/device-updates/windows/driver-updates-policy.md.
Feature Update Policy
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/feature-update-policy.md.
Feature Updates Policy
RemovedRemoved Microsoft Intune documentation in intune/device-updates/windows/feature-updates-policy.md.
Update Rings Policy Settings
RemovedRemoved Microsoft Intune documentation in intune/device-updates/windows/update-rings-policy-settings.md.
Updated Microsoft Intune documentation in intune/agents/vulnerability-remediation-agent-use.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/feature-updates-policy.md.
Rollout Options
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/rollout-options.md.
Feature Updates
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/feature-updates.md.
Feature Updates
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/feature-updates.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/driver-updates.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/software-update-agent-error-codes.md.
Driver Updates Policy
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/driver-updates-policy.md.
Index
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/index.md.
Update Rings Policy Settings
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/update-rings-policy-settings.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/quality-updates.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/update-rings.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/driver-updates-policy.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/hotpatch.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/quality-updates.md.
Expedite Quality Updates
RemovedRemoved Microsoft Intune documentation in intune/device-updates/windows/expedite-quality-updates.md.
A new quality update policy article describes Hotpatch security updates that take effect without a restart.
Driver Updates Policy
UpdatedThe driver policy guidance now asks administrators to plan how driver and firmware releases are evaluated, approved, and deployed to reduce risk before creating policies.
The Hotpatch guidance now explains that Windows quality update policies can install eligible security updates without requiring an immediate device restart.
Quality Updates
UpdatedDevices without a Windows quality updates policy continue receiving monthly quality updates through Windows Update; update rings and Windows Update client policies still control deferrals, deadlines, restarts, and notifications.
Quality update policies are described as a cloud-orchestrated policy surface that supports direct Intune management or Autopatch, expedited deployments for urgent security needs, and Hotpatch for eligible devices without immediate restart.
When a vulnerability recommendation starts with Expedite at CVSS 9.0 or higher, the remediation agent now directs administrators to the expedite section of the Windows quality update policy guidance.
Recommendations marked Expedite for CVSS 9.0 or higher now direct administrators to the dedicated expedited quality updates guidance.
A new article explains Hotpatch updates and managing them through Windows quality update policies in Intune.
Driver update policy guidance is dated January 13, 2026 and streamlines the initial navigation to Devices, Windows, Manage updates, Windows updates, Driver updates, then Create profile.
The dedicated article is titled Expedite Windows quality updates instead of Windows quality updates policy.
The Hotpatch guidance gains a Hotpatch quality updates report section for monitoring deployment status and errors.
Driver Updates
UpdatedThe architecture explanation states that Intune sends identities, policy, approvals, and pause commands; Autopatch configures Windows Update; devices provide diagnostic data and receive approved driver updates.
Windows Update rings policy
UpdatedThe article title is now Windows Update rings policy and its description covers creating and managing update ring policies; Intune Plan 1 is linked as the core requirement.
Quality Updates
UpdatedQuality update policies are positioned for advanced deployments such as Hotpatch or Windows Autopatch-managed workflows rather than ordinary monthly servicing.
Feature Updates Policy
UpdatedFeature update policy guidance directs administrators to the Accessing feature updates reports location when confirming that devices reached OfferReady before proceeding.
The article is retitled Manage Windows feature updates and describes using Intune policies to manage Windows feature updates.
Driver Updates
UpdatedThe driver update requirements now include the shared cloud prerequisite content.
Feature Updates
UpdatedFeature update guidance recommends setting Feature update deferral period to 0 so an update-ring deferral does not delay the feature update policy.
Feature Updates
UpdatedFeature update policy requirements now include shared cloud environment guidance.
Feature Updates Windows 10
UpdatedThe Windows 10 guidance directs administrators to the feature update policy explanation of multiple policies targeting a device.
Quality Updates
UpdatedQuality update policy requirements now include shared cloud environment guidance.
Quality Updates
UpdatedA separator is removed as Hotpatch reporting guidance is moved into dedicated Hotpatch content.
Quality Updates Policy
UpdatedThe quality update policy section is named Expedite Windows quality updates, keeping the same workflow in the consolidated policy guidance.
Update Rings
UpdatedThe Update rings guidance now displays the current update-rings image asset.
The feature update policy description shifts from creating releases to managing Windows feature update policies in Intune.
Quality Updates
UpdatedThe quality update overview no longer includes the Hotpatch monitoring and reporting section that described deployment status and errors.
Quality Updates Policy
RemovedRemoved Microsoft Intune documentation in intune/device-updates/windows/quality-updates-policy.md.
Update Rings Policy Settings
UpdatedThe Update Ring policy settings content removes an extra blank separator.
Update Rings Policy Settings
UpdatedThe article removes the Use deadline settings heading and its statement that deadline settings can be configured.
Quality Updates Policy
UpdatedThe quality updates policy article adds an Expedite Windows quality updates in Microsoft Intune section.
Update Rings Policy Settings
UpdatedThe Update settings heading changes from level three to level two while the former settings table is removed.
A new reference article documents Windows Update settings available through Intune Update Ring policies.
A reference article was added for Windows Update settings manageable through Intune Update Ring policies.
Update Rings Policy Settings
UpdatedThe article removes its Setting, Description, and CSP Reference table and begins converting Microsoft product updates guidance to a section-based layout.
Update Rings
UpdatedThe article deletes a commented legacy introduction describing feature and quality servicing updates.
The article date is updated from July 15, 2024 to January 12, 2026 and the Microsoft product update setting is reformatted.
Settings
UpdatedThe settings table adds Windows drivers Allow/Block with the ExcludeWUDriversInQualityUpdate CSP and explains 0–30 day quality update deferrals; it also corrects the Microsoft Update CSP link.
Feature Updates
UpdatedA commented legacy description about holding devices at a specific feature update version is removed.
Update Rings Policy Settings
UpdatedThe reference removes Automatic behavior frequency, Scheduled install day, and Scheduled install time from its automatic update behavior guidance.
Update Rings Policy Settings
UpdatedOnly blank lines were added to the update rings policy settings article.
Update Rings Policy Settings
UpdatedMicrosoft product updates is converted from a heading and list to a bold setting label with Allow and Block choices.
Feature Updates Policy
UpdatedThe Validation and reporting section is removed and a Co-management considerations section is introduced.
Settings
UpdatedThe settings table adds the BranchReadinessLevel CSP reference to Enable pre-release builds and removes a general behavior-reference sentence.
Update Rings Policy Settings
UpdatedThe reference now states that feature update deferrals can be set from 0 to 365 days and adjusts prerelease build formatting.
Update Rings
UpdatedThe article removes wording that update rings shape installation timing and removes the direct link to the policy settings reference from the creation step.
Update Rings Policy Settings
UpdatedThe reference removes Restart checks (EDU Restart), the user option to pause updates, and the user option to check for updates while retaining expanded automatic update behavior guidance.
Update Rings
UpdatedThe update rings article removes the listed feature deferral, uninstall period, and prerelease-build entries from its limitations text.
Update Rings Policy Settings
UpdatedMicrosoft product updates and Windows drivers headings are changed from level-three to level-four headings.
Update Rings Policy Settings
UpdatedAutomatic update behavior changes back from a level-five heading to a bold label and the EDU Restart heading is adjusted.
Driver Updates
UpdatedA commented legacy introduction explaining approvals, pauses, and recommended versus optional drivers is removed.
Feature Updates Windows 10
UpdatedThe article links multiple-policy behavior to update-rings-policy-settings.md and replaces a creation-section link with the feature updates article root.
Update Rings Policy Settings
UpdatedAutomatic update behavior changes from a bold label to a level-five heading.
Update Rings
UpdatedThe policy creation steps now direct administrators to update-rings-policy-settings.md instead of settings.md for available Update ring settings.
Update Rings
UpdatedThe shared device-configuration include path is corrected from three parent levels to two.
Update Rings
UpdatedThe Microsoft Account Sign-In Assistant service requirement is changed from a list item to a direct note.
Update Rings Policy Settings
UpdatedThe policy reference expands Automatic update behavior with Notify download, maintenance-time installation and restart, scheduled installation, no end-user restart control, and reset-to-default behavior, including Active Hours and AllowAutoUpdate references.
Update Rings Policy Settings
UpdatedA blank callout spacer separates adjacent controls in the Update Ring settings guidance.
Update Rings Policy Settings
UpdatedOption to pause Windows updates changes from a level-four heading to a bold setting label.
Expedite Updates
RemovedThe former expedite-updates.md article was removed after expedited quality update guidance was incorporated into quality-updates-policy.md.
Quality Updates
UpdatedThe quality updates article removes its inline prerequisites heading and shared licensing include during content reorganization.
The move-from-update-ring-deferrals-to-feature-updates-policy article was removed after its guidance moved into feature-updates-policy.md.
Ring Policy Settings
Removedring-policy-settings.md, another Update Ring policy settings reference, was removed.
Settings
Removedsettings.md, the reference for Windows Update settings in Intune Update Ring policies, was removed.
Updated Microsoft Intune documentation in intune/intune-service/fundamentals/review-logs-using-azure-monitor.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/update-rings-reports.md.
Updated Microsoft Intune documentation in intune/intune-service/fundamentals/review-logs-using-azure-monitor.md.
Feature Updates Reports
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/feature-updates-reports.md.
Updated Microsoft Intune documentation in intune/intune-service/fundamentals/review-logs-using-azure-monitor.md.
Updated Microsoft Intune documentation in intune/intune-service/fundamentals/review-logs-using-azure-monitor.md.
Update Rings Reports
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/update-rings-reports.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/feature-updates-reports.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/update-rings-reports.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/driver-updates-reports.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/quality-updates-reports.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/compatibility-reports.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/compatibility-reports.md.
Updated Microsoft Intune documentation in intune/intune-service/fundamentals/review-logs-using-azure-monitor.md.
Added Microsoft Intune documentation in intune/device-updates/windows/expedite-policy.md.
**Summary report**
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/expedite-quality-updates.md.
**Device report**
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/expedite-quality-updates.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/driver-updates-reports.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/driver-updates-reports.md.
Updated Microsoft Intune documentation in intune/device-updates/windows/update-rings-reports.md.
**QU distribution**
UpdatedThe distribution report is described as a sequence of organizational reports and consistently refers to quality updates when presenting device counts for the selected scope.
Feature update reporting guidance now describes integrated deployment-status reports without repeating data-collection prerequisites, report-only data scope, or latency material.
**Driver updates summary**
UpdatedThe driver reporting guidance adds an Accessing driver updates reports section while retaining the statement that its data is used only by driver update reports.
The drill-down report description now refers to Windows feature versions and clarifies that Windows Insider or other releases are grouped when they do not match a generally available Windows feature release and documented quality-update level.
**Update failures**
UpdatedData retention is promoted to its own section; driver update data remains available for six months after the last event and older versions disappear after no device requires them.
**Driver updates summary**
UpdatedDriver reporting guidance presents Driver updates summary, Driver updates, and Update failures as tabbed views; the driver view continues to show applicable policies for a selected driver across policies.
Feature Updates Reports
UpdatedFeature update reporting content includes the shared Intune admin center link definition used by its navigation guidance.
Update Rings Reports
UpdatedReport access now starts at Devices > Windows, then Manage updates > Windows updates, before selecting Update rings.
Whats New Archive
UpdatedArchive links for feature update reports and expedited quality updates now point to their current report and quality update guidance locations.
Driver Updates Reports
UpdatedDriver report prerequisites now direct administrators to Manage Windows driver updates for the required environment conditions.
Update Rings Reports
UpdatedThe Update rings report illustration now points to the current update-rings image asset.
Quality Updates Reports
UpdatedThe quality update reports guidance no longer contains the additional Hotpatch report section.
The article date is updated to January 12, 2026 and the User permissions to use reports heading is removed.
The report introduction retains the deployment and status description but removes the detailed Intune navigation path and default-policy screenshot.
Troubleshoot
UpdatedKnown issues is renamed Known issues and limitations and gains an API operator support limitations subsection.
**QU distribution**
UpdatedThe article removes the Windows quality update distribution report heading and its description of per-quality-update device counts.
**QU device version**
UpdatedThe QU device version tab now uses the device-version anchor instead of feature-version.
Compatibility Reports
UpdatedThe article removes its Prerequisites and Licensing headings during requirements-content consolidation.
Add and Assign an App
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/apps/quickstart-add-assign-app.md.
Updated Microsoft Intune documentation in intune/intune-service/apps/quickstart-create-assign-app-policy.md.
Mamedge 4 Acp Edge
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/apps/mamedge-4-acp-edge.md.
Mamedge 5 Settings Catalog
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/apps/mamedge-5-settings-catalog.md.
Mamedge Overview
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/apps/mamedge-overview.md.
Added Microsoft Intune documentation in intune/intune-service/apps/mamedge-7-troubleshoot.md.
Mamedge 6 Security Baseline
RemovedRemoved Microsoft Intune documentation in intune/intune-service/apps/mamedge-6-security-baseline.md.
Added Microsoft Intune documentation in intune/intune-service/apps/mamedge-6-end-user-experience.md.
Updated Microsoft Intune documentation in intune/intune-service/apps/mamedge-5-settings-catalog.md.
Updated Microsoft Intune documentation in intune/intune-service/apps/mamedge-4-acp-edge.md.
Updated Microsoft Intune documentation in intune/intune-service/apps/mamedge-overview.md.
Mtd Connector Enable
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/protect/mtd-connector-enable.md.
Removed Microsoft Intune documentation in intune/intune-service/apps/mamedge-7-end-user-experience.md.
Mamedge 8 Troubleshoot
RemovedRemoved Microsoft Intune documentation in intune/intune-service/apps/mamedge-8-troubleshoot.md.
Updated Microsoft Intune documentation in intune/intune-service/apps/apps-win32-app-management.md.
Updated Microsoft Intune documentation in intune/intune-service/apps/apps-win32-add.md.
Updated Microsoft Intune documentation in intune/intune-service/apps/lob-apps-ios.md.
Updated Microsoft Intune documentation in intune/intune-service/apps/vpp-apps-ios.md.
Vpp Apps Ios
UpdatedThe iOS/iPadOS purchased-app guidance removes the link for organizations not yet migrated to Apple Business Manager or Apple School Manager.
Tier1 for Intune provides mobile customer relationship management, including client details, interaction history, opportunities, call reports, tasks, meetings, and files through Intune-protected access.
Apps Supported Intune Apps
UpdatedClarity Express for Intune provides Android and iOS access to work items, progress tracking, and Clarity data while using Intune app protection policies.
Apps Supported Intune Apps
UpdatedQlik Analytics provides Android and iOS access to cloud analytics, dashboards, offline downloaded analytics, metric alerts, and insight sharing while using Intune app protection policies.
Apps Supported Intune Apps
UpdatedJump AI supports Android and iOS meeting recording, uploaded recordings, structured notes, meeting review, and recorded-content management under Intune app protection policies.
Apps Supported Intune Apps
UpdatedThe Intus scheduling app listing now includes the Android app alongside iOS and describes access to work schedules, availability, hours, shift management, and notifications.
Apps Supported Intune Apps
UpdatedDatadog provides Android and iOS access to alerts, incidents, dashboards, logs, monitor state, and performance metrics while using Intune app protection policies.
Free Trial Sign Up
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/fundamentals/free-trial-sign-up.md.
Updated Microsoft Intune documentation in intune/intune-service/fundamentals/free-trial-sign-up.md.
Updated Microsoft Intune documentation in intune/intune-service/fundamentals/quickstart-create-user.md.
Updated Microsoft Intune documentation in intune/intune-service/fundamentals/quickstart-create-group.md.
Admin Tasks
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/fundamentals/admin-tasks.md.
Admin Tasks
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/fundamentals/admin-tasks.md.
The Government service description now directs expedited update information to Windows quality updates guidance.
Migrate To Intune
UpdatedThe migration guidance carries a January 8, 2026 date, indicating its planned review point.
Migrate To Intune
UpdatedThe article date changes from December 15, 2025 to January 8, 2026.
Whats New
UpdatedThe What's New page adds a Week of January 12, 2026 section for Enterprise App Catalog Win32 installer script support.
Filters Device Properties
UpdatedThe article date is updated and spacing is normalized for the iOS/iPadOS Managed property row.
Centrally manage Admin Tasks
UpdatedThe title and description now describe managing common administrative tasks centrally across Intune capabilities.
The article is renamed Centrally manage common admin tasks in Microsoft Intune.
Whats New
UpdatedThe What's New entry replaces a delay notice with availability beginning January 13, 2026 and identifies the 2026-01 B quality update as the first offered update.
Updated Microsoft Intune documentation in intune/intune-service/protect/quickstart-send-notification.md.
Updated Microsoft Intune documentation in intune/intune-service/fundamentals/quickstart-create-custom-role.md.
Updated Microsoft Intune documentation in intune/intune-service/protect/quickstart-set-password-length-android.md.
Mobile Threat Defense
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/protect/mobile-threat-defense.md.
Updated Microsoft Intune documentation in intune/intune-service/protect/microsoft-defender-with-intune.md.
Role Based Access Control
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/fundamentals/role-based-access-control.md.
Microsoft Defender for Endpoint integration guidance now emphasizes Mobile Threat Defense device compliance and preventing security breaches.
The integration guidance identifies the Microsoft Defender XDR portal for subscription access and threat reports, while retaining the high-risk device flow that lets Intune remove corporate-resource access.
The prerequisites clarify that the administrator needs an Intune role able to configure the settings and cite Endpoint Security Manager as an example.
The onboarding guidance is titled Configure Microsoft Defender for Endpoint with Intune and Onboard Devices.
Updated Microsoft Intune documentation in intune/intune-service/protect/microsoft-defender-with-intune.md.
Updated Microsoft Intune documentation in intune/intune-service/protect/microsoft-defender-with-intune.md.
Updated Microsoft Intune documentation in intune/intune-service/protect/microsoft-tunnel-prerequisites.md.
Windows client planning guidance replaces expedited updates policy references with quality updates policy references.
The former settings page removes its introductory Update settings text and renames its main section to Update rings settings as content moves to policy-specific references.
Update rings policy settings
UpdatedThe article is retitled Update rings policy settings and moves Windows 10-to-latest Windows 11 upgrade information into the reorganized settings layout.
Filters Supported Workloads
UpdatedThe supported-workloads table changes Settings catalog (DDM) from unsupported to supported.
Expedite Updates
UpdatedThe expedited-update content participates in the move toward a consolidated quality update policy experience.
The policy settings guidance removes an interim Update rings settings section heading as the reference is reorganized around the policy configuration flow.
Enroll a Windows device
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/enrollment/quickstart-enroll-windows-device.md.
Index
UpdatedUpdated Microsoft Intune documentation in intune/device-updates/windows/index.md.
Updated Microsoft Intune documentation in intune/intune-service/enrollment/quickstart-setup-auto-enrollment.md.
Updated Microsoft Intune documentation in intune/intune-service/fundamentals/try-intune-overview.md.
Feature Updates Policy
UpdatedThe article recommends ending update-ring deferrals when using feature update policies because combining them can delay installation; user-experience settings can remain.
Device Wipe
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/remote-actions/device-wipe.md.
Settings Catalog
UpdatedThe article date is updated and its Windows OS Edition filter guidance is revised as part of the January release.
The supported OEMConfig app table adds FCNT Senior Care, FCNT Schema, and Sonim package identifiers.
The supported OEMConfig applications table adds X with package identifier com.X.rgoem.
Whats New Archive
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/fundamentals/whats-new-archive.md.
Settings Catalog
UpdatedThe Settings Catalog note explaining that Edge, Office, and OneDrive settings do not follow Windows OS version or edition filtering is indented beneath the relevant guidance.
Updated Microsoft Intune documentation in intune/intune-service/configuration/quickstart-email-profile.md.
Settings Catalog
UpdatedThe article explains that selecting two or more Android management modes displays settings that apply to at least one selected mode.
Copilot
UpdatedSettings Catalog guidance now links user or device scope to its explanation, retains OS Edition examples, and removes the earlier inclusive multi-management-mode explanation and Android filter tip.
Windows Autopilot
4 updatesKnown Issues
UpdatedUpdated Microsoft Intune documentation in autopilot/known-issues.md.
Updated Microsoft Intune documentation in autopilot/known-issues.md.
The known issue for devices not receiving quality updates during Hybrid Entra joined deployments is removed, and the page date advances to January 13, 2026.
Known Issues
UpdatedKnown issues now includes Devices don't get Quality Updates during Hybrid Entra joined deployments, dated January 13, 2026.
Microsoft Configuration Manager
3 updatesList Of Prerequisite Checks
UpdatedUpdated Microsoft Intune documentation in intune/configmgr/core/servers/deploy/install/list-of-prerequisite-checks.md.
Updated Microsoft Intune documentation in intune/configmgr/core/plan-design/configs/site-and-site-system-prerequisites.md.
Whats New In Version 2509
UpdatedConfiguration Manager version 2509 guidance announces that AdminService rejects NTLM authentication.
Endpoint Privilege Management
1 updateCentrally manage Admin Tasks
UpdatedUpdated Microsoft Intune documentation in intune/intune-service/fundamentals/admin-tasks.md.
Microsoft Intune Advanced Analytics
2 updatesUpdated Microsoft Intune documentation in intune/advanced-analytics/device-query-multiple-devices.md.
Updated Microsoft Intune documentation in intune/advanced-analytics/device-query-multiple-devices.md.
Enterprise App Management
1 updateThe Enterprise App Catalog article updates its date and describes the Win32 app type as supporting customizable capabilities including PowerShell script installers.