Streamline Your Windows 11 Upgrade Process with Forms, Power Automate, and Intune
Windows 11 has been available for nearly two years now, but many companies still have reservations about installing it on their client devices. While they are comfortable with the installation process, they don't want to force users to upgrade, instead leaving the decision up to them.
This presents a new challenge for administrators: how to automate the process for users who want to upgrade to Windows 11?
Today, Microsoft offers a combination of services under Power Automate that can help us also to automate the process of “upgrading to Windows 11”. Forms, Power Automate, and Intune. These services can streamline the process, making it easier and more efficient for administrators to manage.
Before we start, it's worth mentioning that Intune now has a new feature called Autopatch, which helps Intune administrators manage Windows update rollouts with different patches. However, the choice of tool will ultimately depend on your company's Windows Update policy. Even if you have Autopatch, you can still use this automation process to upgrade to Windows 11.
Step 1: Azure AD Security Group
To begin, we will establish an Azure Active Directory Security Group. This group will serve as a crucial component in our deployment of Windows Feature Updates using Microsoft Intune.
Save Group Object ID for next steps
Step 2: Windows Feature Update Profile
we can upgrade devices to Windows 11 through the Endpoint Manager portal with the "Feature updates for Windows 10 and later" Profile and assign it to the security group established in the initial step.
and Assignments
Recommended by LinkedIn
To avoid conflicts, it is recommended to exclude the group from any existing Update Rings policies if they have already been established.
Step 3: Microsoft Forms
In Step 2 we created Upgrade Profile and assigned it to Groups which have no member, now we will create Microsoft Forms to obtain confirmation from users who wish to upgrade their device to Windows 11. You can use Microsoft Forms to create simple "Choice Form"
Step 4: Power Automate Flow
With the confirmed data of users who wish to upgrade their devices to Windows 11, it is now time to add these users to the Azure AD security group. Additionally, we can also use outlook to email the users about the update.
Result:
Upon submitting the Forms, users will receive an automatic confirmation email.
Now Security Group has one member.
Using Intune Reports, the status of Windows updates for each device can be checked according to the Feature Update Profile
By integrating the Automation with your enterprise Ticket system, users will receive a Form upon creating a ticket for a Windows 11 upgrade.
Security Solution Architect, M365 Modern Workplace, Intune, Azure, IAM, PIM, PAM CISM, CISSP, CISA, CRISC
1yExcellant
Azure Cloud Engineer @ Controlware GmbH | Azure Virtual Desktop Specialist
1yVery informative and interesting! Thanks for sharing!
Penetration Tester
1ywrite more articles