Every Admin 'loves' Patching😡

แชร์
ฝัง
  • เผยแพร่เมื่อ 3 ต.ค. 2024

ความคิดเห็น • 37

  • @liorbela
    @liorbela ปีที่แล้ว +2

    Really great overview, Dean! thanks for doing this

  • @markbowd2039
    @markbowd2039 ปีที่แล้ว +1

    Amazing Dean!

  • @Timmy-Hi5
    @Timmy-Hi5 ปีที่แล้ว +2

    And like most of the New MS Intune Features > Reporting on the each ring is not working as expected :( logged with MS Autopatch team, trobleshoot it for a week... and guess what "We can't help 😁raise the case with Intune support"😂🤣 Welcome to Disneyland 🤩😁... yay so my next job (when Boss fires me) is perfoming autopatch in McDonalds 🤩😁😂

    • @AzureAcademy
      @AzureAcademy  ปีที่แล้ว +2

      At least you have a plan 🤣

    • @Timmy-Hi5
      @Timmy-Hi5 ปีที่แล้ว +2

      @@AzureAcademy 😁😂💯🤯😁🆘💻

    • @AzureAcademy
      @AzureAcademy  ปีที่แล้ว +2

      🤣❤️‍🔥

  • @TonyCai
    @TonyCai ปีที่แล้ว +1

    Great video Dean!

  • @diegomartinez447
    @diegomartinez447 ปีที่แล้ว +1

    Great like always! - for for multisession Vms, any reason why we shouldn't use an Automation account and perform update management that way?

    • @AzureAcademy
      @AzureAcademy  ปีที่แล้ว +1

      Thanks! Azure Automation will not work. Automation account updates only work for servers operating systems. 🤦‍♂️

  • @25566
    @25566 ปีที่แล้ว +1

    This should be included with windows 11 enterprise/server editions, why do they require an additional license

    • @AzureAcademy
      @AzureAcademy  ปีที่แล้ว +1

      That’s a nice thought…but not how the world works. Oh and windows servers are not supported by auto patch

  • @haraprasadnayak4040
    @haraprasadnayak4040 ปีที่แล้ว +1

    Great video as always. With this new tool what can we expect to happen with update ring, feature and quality update options available in InTune? Are they going to stay or MS is going to retire them?

    • @AzureAcademy
      @AzureAcademy  ปีที่แล้ว +1

      They are 2 different systems. Think of Intune update rings and windows update for business as the tools to patch things yourself and Autopatch and the mechanic who does the patching for you

    • @haraprasadnayak4040
      @haraprasadnayak4040 ปีที่แล้ว +1

      @@AzureAcademy That makes absolute sense. Don't know how I missed that.

    • @AzureAcademy
      @AzureAcademy  ปีที่แล้ว +1

      No worries! 😉

  • @adamyounguk83
    @adamyounguk83 ปีที่แล้ว +1

    Thanks Dean good video. With the lack of support for multisession OS what in your opinion is the best method for updating multisession hosts? Would you lean towards manual patch installation in a custom image and disable auto updates?

    • @AzureAcademy
      @AzureAcademy  ปีที่แล้ว +4

      My best opinion is to submit your feedback to the product team so we can get support for multisession! And in the meantime I am working on something special for this…a video is coming soon!

    • @eudeliobenitezgonzalez574
      @eudeliobenitezgonzalez574 11 หลายเดือนก่อน +1

      @@AzureAcademy We need that video. It's ready?. Link please. Thanks

    • @AzureAcademy
      @AzureAcademy  8 หลายเดือนก่อน +1

      Sorry for the delay…but this new feature is coming soon…by end of month I hope

  • @sowbener
    @sowbener 6 หลายเดือนก่อน +1

    So we are in a buisiness with 350+ devices that cant always be restarted because there was a update.
    These computers might be running simulations that may take 48+ hours.
    How will i control or manage devices from restarting and losing the simulation data?

    • @AzureAcademy
      @AzureAcademy  6 หลายเดือนก่อน +1

      You schedule the installs, then plan those maintenance windows to be about 2 hours long so you aren’t running sims during that time

  • @x3wildcard
    @x3wildcard ปีที่แล้ว +1

    This is great for smb, but I don't see a universe where this is usable in a large enterprise. Imagine trying to run these changes and permissions past 3 different systems & security teams.

    • @AzureAcademy
      @AzureAcademy  ปีที่แล้ว +1

      Why do you think so? The permissions to set it up are a once and done, and the patches for a change cycle follow the standard patch Tuesday deployments…which any enterprise should be doing already…right?

    • @x3wildcard
      @x3wildcard ปีที่แล้ว +1

      @@AzureAcademy Systems team is going to say no, leave servers out of it--it ain't broke, why fix it? Apps team is going to say no, we need to validate patches our own way (WSUS or rings work, why introduce an additional mechanic?). Security team is going to say no, we can't grant that level of authority to some unproven service. Security won't even let me set up RDP shortpath for my AVD pools. Why? Corporate red tape. The reason almost doesn't matter--it's easier to say no.
      That's before even mentioning how MS consistently requires all of these things be done by a Global Admin. What's the point of RBAC if everything requires Global Admin? My only access to Global Admin is through my boss's boss and a 10 page document about why a change should be made and its impacts... after getting buy in from other stakeholders. Merely uttering the words "global admin" in a pre-req document instantly makes every approver inclined to say "no".
      As a cloud platform/automated endpoint management guy I think It's a great feature; just don't see it getting traction over the other first party patching options in large enterprise. Options that don't seemingly introduce additional failure points or give even a non-zero perception of loss of control.

    • @AzureAcademy
      @AzureAcademy  ปีที่แล้ว +3

      You make interesting points, but I think you left out one of the main benefits of Autopatch…💰💰💰
      I’m only half kidding
      Paying multiple admins to do the patching and all the other folks involved testing, troubleshooting etc. in that process is a huge investment of cash, when you already own the licenses for the tool that does it for you…which equals savings. And your admins can focus on something that brings more value to your org.
      As for the idea that no one in the org is willing to make any changes ever because of a level of rights or if it ain’t broke don’t fix it…I have worked for those companies too…my suggestion there is to think about your career and where you want it to go.
      Are you happy to be in a stable never changing environment vs pushing the edge, which means you have to know how to move fast and fail fast, be agile etc.
      or something in between.
      neither path is wrong, and neither is for everyone.
      You pick what’s best for you, your career and your family…and don’t sweat the rest ☺️
      Thanks for the feedback and #HappyLearning

  • @Silent_Base
    @Silent_Base ปีที่แล้ว +1

    Is this available for GCC-HIGH tenants?

    • @AzureAcademy
      @AzureAcademy  ปีที่แล้ว +1

      Not sure, I don’t do a ton of Gov work…I’ll get back to you
      But the easiest thing to do is open Intune and look ☺️

    • @AzureAcademy
      @AzureAcademy  ปีที่แล้ว +1

      I checked with the product team and Windows Autopatch is NOT available in GCC-HIGH tenants...YET.
      Stay tuned because ya never know 👍

  • @eudeliobenitezgonzalez574
    @eudeliobenitezgonzalez574 11 หลายเดือนก่อน +1

    Hello, after see the video I'm still confusing in how to update AVD windows 11 multisession machines. Due to Windows Autopatch dont work with multisession machines in AVD we are trying to updating with our own WSUS server but it doesn't work. What's the correct way to update these machines?. Thanks in advance

    • @AzureAcademy
      @AzureAcademy  11 หลายเดือนก่อน +2

      The best way to update multisession is to not do it at all! You should update your image
      Build updated multisession hosts and throw the old hosts away! I will have a new video on this process soon…stay tuned! ☺️

    • @eudeliobenitezgonzalez574
      @eudeliobenitezgonzalez574 11 หลายเดือนก่อน +1

      Thanks!!@@AzureAcademy

    • @AzureAcademy
      @AzureAcademy  8 หลายเดือนก่อน +1

      Anytime

  • @_pp79_
    @_pp79_ ปีที่แล้ว +1

    If intune update rings are in use, can we use autopatch?

    • @AzureAcademy
      @AzureAcademy  ปีที่แล้ว +2

      I would suggest NOT starting Autopatch until you stop using update rings. This way you don't end up with multiple tools controlling the same PCs and end up with issues.