Walkthrough use Group Policy to configure Windows Update for Business Windows 1. Applies to. Looking for consumer information See Windows Update FAQImportant. Due to naming changes, older terms like CB,CBB and LTSB may still be displayed in some of our products. Desktop-Wallpaper-policy.jpg' alt='Configure Windows Update Using Group Policy' title='Configure Windows Update Using Group Policy' />In the following settings CB refers to Semi Annual Channel Targeted, while CBB refers to Semi Annual Channel. Using Group Policy to manage Windows Update for Business is simple and familiar use the same Group Policy Management Console GPMC you use to manage other device and user policy settings in your environment. Before configuring the Windows Update for Business Group Policy settings, consider a deployment strategy for updates and feature updates in your environment. In Windows 1. 0 version 1. Disable-Loading-Websites-In-Background-3.png?0479ea' alt='Configure Windows Update Using Group Policy' title='Configure Windows Update Using Group Policy' />How to Configure PVS vDisk Update Management Using SCCM. The reason probably is the new Active hours feature see below. However, the missing drop down menu can cause confusion when you configure Windows Update via Group. Current Branch for Business CBB upgrades could be delayed, restricting the Current Branch CB builds to a single deployment ring. Windows 1. 0 version 1. Group Policy setting that allows you to delay feature updates for both CB and CBB, broadening the use of the CB servicing branch. Note. The terms feature updates and quality updates in Windows 1. Blog Post How to configure AppLocker Group Policy in Windows 7 to block thirdparty browsers httpbit. UPDh. Group Policy for Windows XP Professional This Article Does Not Apply to XP Home Edition. At one time Group Policy was the exclusive territory of those that deal. In Windows 10 1607 Anniversary Update, Microsoft introduced changes to Windows Update Delivery Optimization WUDO, resulting in different Group Policy. To use Group Policy to manage quality and feature updates in your environment, you must first create Active Directory security groups that align with your constructed deployment rings. Most customers have many deployment rings already in place in their environment, and these rings likely align with existing phased rollouts of current patches and operating system upgrades. Configure Windows Update for Business in Windows 1. In this example, you use two security groups to manage your updates Ring 4 Broad business users and Ring 5 Broad business users 2 from Table 1 in Build deployment rings for Windows 1. The Ring 4 Broad business users group contains PCs of IT members who test the updates as soon as theyre released for Windows clients in the Current Branch for Business CBB servicing branch. This phase typically occurs after testing on Current Branch CB devices. The Ring 5 Broad business users 2 group consists of the first line of business LOB users, who consume quality updates after 1 week and feature updates 1 month after the CBB release. Note. Although the sample deployment rings specify a feature update deferral of 2 weeks for Ring 5, deferrals in Windows 1. Windows 1. 0 version 1. Auto Repair Shop Software Mechanic Garage Playhouse here. CB builds of Windows 1. CB deployment ring. In version 1. 60. CB builds can be delayed, making it possible to have multiple CB deployment rings. Complete the following steps on a PC running the Remote Server Administration Tools or on a domain controller. Configure the Ring 4 Broad business users deployment ring for CBB with no deferral. Open GPMC gpmc. msc. Expand Forest Domains your domain. Right click your domain and select Create a GPO in this domain, and Link it here. In the New GPO dialog box, type Windows Update for Business CBB1 for the name of the new GPO. Note. In this example, youre linking the GPO to the top level domain. This is not a requirement you can link the Windows Update for Business GPOs to any organizational unit OU thats appropriate for your Active Directory Domain Services AD DS structure. Right click the Windows Update for Business CBB1 GPO, and then click Edit. In the Group Policy Management Editor, go to Computer Configuration Policies Administrative Templates Windows Components Windows Update. Right click Defer Upgrades and Updates, and then click Edit. In the Defer Upgrades and Updates Group Policy setting configuration, you see several options EnableDisable Deferred Updates. Enabling this policy setting sets the receiving client to the CBB servicing branch. Specifically disabling this policy forces the client into the CB servicing branch, making it impossible for users to change it. Defer upgrades for the following. This option allows you to delay feature updates up to 8 months, a number added to the default CBB delay approximately 4 months from CB. By using Windows Update for Business, you can use this option to stagger CBB feature updates, making the total offset up to 1. CB. Defer updates for the following. This option allows you to delay the installation of quality updates on a Windows 1. Table 1 shows the deferment capabilities by update type. Pause Upgrades and Updates. Should an issue arise with a feature update, this option allows a one time skip of the current months quality and feature update. Quality updates will resume after 3. For example, deploy this setting as a stand alone policy to the entire organization in an emergency. Table 1 summarizes the category of update in Windows 1. Windows Update for Business can defer its installation. Table 1. Category. Maximum deferral. Deferral increments. Classification type. Classification GUIDOS upgrades. Upgrade. 36. 89. BDC8 B2. AF4 8. D4. A A6. C5. E9. D5. OS updates. Security updates. FA1. 20. 1D 4. 33. FA8 8. AE9 B8. 77. B6. 44. 1Drivers. EBFC1. FC5 7. 1A4 4. F7. B 9. ACA 3. B9. A5. 03. 10. 4A0. Updates. CD5. FFD1. E E9. 32 4. E3. A BF7. 4 1. 8BF0. B1. BBD8. 3Othernon deferrable. No deferral. No deferral. Definition updates. E0. 78. 96. 28 CE0. BE7. 4 2. 49. 5B8. F4. 3BSimply enabling the Defer Upgrades and Updates policy sets the receiving client to the CBB servicing branch, which is what you want for your first deployment ring, Ring 4 Broad business users. Enable the Defer Updates and Upgrades setting, and then click OK. Close the Group Policy Management Editor. Because the Windows Update for Business CBB1 GPO contains a computer policy and you only want to apply it to computers in the Ring 4 Broad business users group, use Security Filtering to scope the policys effect. Scope the policy to the Ring 4 Broad business users group. In the GPMC, select the Windows Update for Business CBB1 policy. In Security Filtering on the Scope tab, remove the default AUTHENTICATED USERS security group, and add the Ring 4 Broad business users group. The Ring 4 Broad business users deployment ring has now been configured. Next, configure Ring 5 Broad business users 2 to accommodate a 1 week delay for quality updates and a 2 week delay for feature updates. Configure the Ring 5 Broad business users 2 deployment ring for CBB with deferrals. Open GPMC gpmc. msc. Expand Forest Domains your domain. Right click your domain and select Create a GPO in this domain, and Link it here. In the New GPO dialog box, type Windows Update for Business CBB2 for the name of the new GPO. Right click the Windows Update for Business CBB2 GPO, and then click Edit. In the Group Policy Management Editor, go to Computer Configuration Policies Administrative Templates Windows Components Windows Update. Right click Defer Upgrades and Updates, and then click Edit. Enable the Defer Updates and Upgrades setting, configure the Defer upgrades for the following option for 1 month, and then configure the Defer updates for the following option for 1 week. Click OK and close the Group Policy Management Editor. Scope the policy to the Ring 5 Broad business users 2 group. In the GPMC, select the Windows Update for Business CBB2 policy. In Security Filtering on the Scope tab, remove the default AUTHENTICATED USERS security group, and add the Ring 5 Broad business users 2 group. Configure Windows Update for Business in Windows 1.