Streamline Your Windows 11 Upgrade Process with Forms, Power Automate, and Intune

Streamline Your Windows 11 Upgrade Process with Forms, Power Automate, and Intune

Windows 11 has been available for nearly two years now, but many companies still have reservations about installing it on their client devices. While they are comfortable with the installation process, they don't want to force users to upgrade, instead leaving the decision up to them.

This presents a new challenge for administrators: how to automate the process for users who want to upgrade to Windows 11?

Today, Microsoft offers a combination of services under Power Automate that can help us also to automate the process of “upgrading to Windows 11”. Forms, Power Automate, and Intune. These services can streamline the process, making it easier and more efficient for administrators to manage.


No alt text provided for this image

Before we start, it's worth mentioning that Intune now has a new feature called Autopatch, which helps Intune administrators manage Windows update rollouts with different patches. However, the choice of tool will ultimately depend on your company's Windows Update policy. Even if you have Autopatch, you can still use this automation process to upgrade to Windows 11.

Step 1: Azure AD Security Group

To begin, we will establish an Azure Active Directory Security Group. This group will serve as a crucial component in our deployment of Windows Feature Updates using Microsoft Intune. 

No alt text provided for this image

Save Group Object ID for next steps

Step 2: Windows Feature Update Profile

we can upgrade devices to Windows 11 through the Endpoint Manager portal with the "Feature updates for Windows 10 and later" Profile and assign it to the security group established in the initial step.

No alt text provided for this image

and Assignments

No alt text provided for this image

To avoid conflicts, it is recommended to exclude the group from any existing Update Rings policies if they have already been established.

Step 3: Microsoft Forms

In Step 2 we created Upgrade Profile and assigned it to Groups which have no member, now we will create Microsoft Forms to obtain confirmation from users who wish to upgrade their device to Windows 11. You can use Microsoft Forms to create simple "Choice Form"

No alt text provided for this image

Step 4: Power Automate Flow

With the confirmed data of users who wish to upgrade their devices to Windows 11, it is now time to add these users to the Azure AD security group. Additionally, we can also use outlook to email the users about the update.

No alt text provided for this image

Result:

Upon submitting the Forms, users will receive an automatic confirmation email.

No alt text provided for this image

Now Security Group has one member.

No alt text provided for this image

Using Intune Reports, the status of Windows updates for each device can be checked according to the Feature Update Profile

No alt text provided for this image

By integrating the Automation with your enterprise Ticket system, users will receive a Form upon creating a ticket for a Windows 11 upgrade.

Mustafa Shawer

Security Solution Architect, M365 Modern Workplace, Intune, Azure, IAM, PIM, PAM CISM, CISSP, CISA, CRISC

1y

Excellant

Like
Reply
Marcel Janoff

Azure Cloud Engineer @ Controlware GmbH | Azure Virtual Desktop Specialist

1y

Very informative and interesting! Thanks for sharing!

write more articles

To view or add a comment, sign in

More articles by Rashad Bakirov

Insights from the community

Others also viewed

Explore topics