Loading...

Action Required to Enable Extended Security Update for local devices accessing Windows 365

Action Required to Enable Extended Security Update for local devices accessing Windows 365

Windows 10 devices accessing Windows 365 Enterprise Cloud PCs and Windows 365 Frontline (Dedicated) Cloud PCs are automatically entitled to ESU under certain conditions. IT administrators must use Microsoft Intune or another MDM provider to deploy a custom policy that helps verify whether a device is enrolled in the Windows 10 ESU subscription program. Action is required in order for these devices to install the upcoming November 2025 Windows security update, which will be available on November 11, 2025. Learn more about this change at Enable Windows 10 Extended Security Updates (ESU) for clients accessing cloud and virtual machines. When will this happen: The upcoming November 2025 Windows security update will be available on November 11, 2025. It’s necessary to take action prior to this date, in order for devices to be eligible for this update.   Entitlement to ESU is available for qualifying devices any time. We advise taking action prior to November 11 in order to receive this month’s update. How this will affect your organization: Windows 10 devices accessing Windows 365 Enterprise Cloud PCs and Windows 365 Frontline Cloud PCs in dedicated mode are automatically entitled to ESU for the duration of the ESU offer if the user has an active Windows 365 Enterprise license assigned or Windows 365 Frontline Cloud PC in dedicated mode provisioned, provided the following conditions are met: IT administrators must deploy a custom policy that enables the EnableESUSubscriptionCheck flag. This policy helps verify whether a device is enrolled in the Windows 10 ESU subscription program. Microsoft Intune or another MDM provider can be used to deploy this custom policy. See the documentation To configure EnableESUSubscriptionCheck flag with Intune and the resources in the Additional Information section, below. The local Windows 10 device is either Microsoft Entra joined or Microsoft Entra hybrid joined. Users must sign in to their physical Windows 10 device using the same Microsoft Entra ID account they use for Windows 365 Cloud PCs at least once every 22 days to maintain eligibility for ESU updates on that device. Please also note the following: Physical devices that are only Microsoft Entra registered or […]

The post Action Required to Enable Extended Security Update for local devices accessing Windows 365 appeared first on M365 Admin.

Published on:

Learn more
Need help with this product?

We can help you with Action Required to Enable Extended Security Update for local devices accessing Windows 365

If you want help implementing, troubleshooting, or improving this product, contact us and we’ll point you in the right direction.

M365 Admin
M365 Admin

by João Ferreira

Share post:

Related posts

Dynamics 365 Field Service: Automate optimizations with Scheduling Operations Agent

This release expands the optimization capabilities of the Scheduling Operations Agent to include the ability to create recurring optimizations...

20 hours ago

Microsoft Teams: Call quality feedback surveys for Teams Rooms on Android

Microsoft Teams will introduce call quality feedback surveys for Teams Rooms on Android starting November 2026. Users can rate audio, video, a...

21 hours ago

Microsoft Edge: Retiring legacy sign-in implementation on Windows

Microsoft Edge on Windows will retire its legacy direct-WAM sign-in in version 157, fully adopting the OneAuth library to standardize authenti...

21 hours ago

Microsoft Defender Vulnerability Management: Private preview for selected developer package vulnerability coverage

Microsoft Defender Vulnerability Management is privately previewing expanded vulnerability coverage for selected Node.js, Python, and Java pac...

21 hours ago

Microsoft Defender for Office 365: Post-delivery protection for malicious QR codes in Microsoft Teams

Microsoft Defender for Office 365 extends Teams URL protection to detect malicious URLs in QR codes post-delivery, warning users and enabling ...

21 hours ago

Microsoft Teams: Analytics for desk utilization in Teams Pro Management portal

Microsoft Teams Pro Management portal will add desk utilization analytics, showing usage, reservations, occupancy, and peak patterns. Requires...

21 hours ago

‘Record A Skill’ Capability in PowerPoint Copilot

PowerPoint Copilot will introduce a “Record a Skill” feature in October 2026, allowing users to record and reuse workflows for com...

21 hours ago

Microsoft 365: Targeted Release retirement

Microsoft 365 Targeted Release will retire in January 2027, replaced by Frontier, Standard, and Deferred release options. Administrators must ...

21 hours ago

Interim guidance for Manitoba time zone changes

A time zone change affects Windows devices in Manitoba, with Windows releasing a fix in October 2026. Manitoba is permanently moving to UTC-5 ...

21 hours ago

Microsoft Purview DLP: Improved setup and Intune multi-admin approval support for unmanaged apps in Edge for Business

Starting November 2026, Microsoft Purview DLP will improve setup and support Intune multi-admin approval for unmanaged apps in Edge for Busine...

21 hours ago

Newsletter

Get the latest Dynamics 365 and Power Platform content in your inbox

A curated digest of community blogs, product news, videos, and podcasts — delivered without the noise.

Weekly updates Unsubscribe anytime Fresh community picks
We use your email only for the newsletter and you can unsubscribe at any time.
By subscribing, you agree to the privacy policy.