# Scheduled Maintenance # Windows Updates Windows update is a service that runs on your laptop which installs any updates released by Microsoft typically on a monthly basis. Installing Windows updates is important as it helps keep George & Bell's infrastructure secure against outside threats. ### Update Schedule Cumulative Updates are released by Microsoft on every second Tuesday of the month. These updates include patches to newly found vulnerabilities and small system improvements. These updates will be deployed to all laptops one week after general public release. Feature updates which consist of large overall improvements or change to the Windows OS are released every six month by Microsoft. These updates are automatically installed onto your laptop after 3-6 months of general public availability. ### Receiving Updates Each month your laptop will prompt you asking to install the latest round of updates. Below is what you will see within the bottom right-hand corner of the screen when a update is available. [![windows-update-restart-required.png](https://docs.georgeandbell.com/uploads/images/gallery/2023-03/scaled-1680-/p6Dwindows-update-restart-required.png)](https://docs.georgeandbell.com/uploads/images/gallery/2023-03/p6Dwindows-update-restart-required.png) For the first seven days after the initial notification, Windows Update will only prompt you to install the updates when convenient. After seven days, Windows Update will become more forceful and ask that you install the update immediately or have it scheduled to install, however you'll still be able to defer the update for another three days (14 days in total). After the three days have elapsed, you will be forced to install the update. # Application Management Laptops are managed and updated via a cloud-based service called Microsoft Intune. This service is integrated into Microsoft 365 ensures all laptops have a consist set of update-to-date applications for employees to use. ### Update Schedule Below is an outline of how often each application is updated within the organization and if the application requires your input.

All applications which are not continuously updated are manually tested before release.

**Application Name****Update Period****Installation Type**
1PasswordContinuous\*n/a
Google ChromeContinuous\*n/a
Mozilla FirefoxContinuous\*n/a
Microsoft OfficeContinuous\*n/a
Microsoft TeamsContinuous\*n/a
Adobe Reader DCMonthlyPrompt Always
ZoomMonthlySilent
Cisco WebExMonthlySilent
7-ZipAs RequiredSilent
Duo Authentication for Windows LogonAs RequiredSilent
LiquidFiles Outlook PluginAs RequiredPrompt If Necessary
WinTech ProValAs RequiredPrompt If Necessary
Fortinet FortiClientAs RequiredPrompt If Necessary
\* Updates are taken care of by the application itself and are not managed nor initiated by the IT department. At times IT may force an update however. #### Installation Types How an application updates varies based upon a couple different factors including how often its used and how long it takes to install. Below are the different ways an application can perform its update.
SilentUpdates will always be installed in the background without causing any interruption.
Always PromptUpdates will always prompt you prior to installation.
Prompt If NecessaryUpdate may prompt you but only if required to do so. Typically this means that the update will install silently in the background, unless you are actively using the application.
### Update Process When an application is deployed to your laptop, you will see an series of notifications as the installation progresses. The first notification will inform you that the installer is being downloaded to your laptop (shown below). Once complete, a second notification will appear indicating that the installation is in progress. [![7-zip_installation.png](https://docs.georgeandbell.com/uploads/images/gallery/2023-02/scaled-1680-/7-zip-installation.png)](https://docs.georgeandbell.com/uploads/images/gallery/2023-02/7-zip-installation.png) If the update process determines that you have an application open that needs to close, a prompt will appear asking that the conflicting application be closed. You will also be given the option of deferring the update/install if desired. If deferred you will not be prompted again for a period of 24 hours. In most cases you can defer the installation three times, after which you'll be forced to complete the installation. [![psappdeploytoolkit_prompt.png](https://docs.georgeandbell.com/uploads/images/gallery/2023-02/scaled-1680-/psappdeploytoolkit-prompt.png)](https://docs.georgeandbell.com/uploads/images/gallery/2023-02/psappdeploytoolkit-prompt.png) Once the installation has successfully installed, a third and final notification will appear. [![7-zip_installation_completed.png](https://docs.georgeandbell.com/uploads/images/gallery/2023-02/scaled-1680-/7-zip-installation-completed.png)](https://docs.georgeandbell.com/uploads/images/gallery/2023-02/7-zip-installation-completed.png) ### FAQ **What happens if the application fails to install?** You can safely ignore the message (unless its impacting you) as IT support will be notified of the failed update. If required, IT support may reach out to resolve the issue. **After deferring an update, I received a notification saying that the update failed. Is this ok?** This is expected. When you defer the application, Microsoft Intune's doesn't understand the difference between a deferred update and a failed update so a failed message is displayed. In either case, Microsoft Intune will reattempt the update in 24 hours. **How long does a deferral last?** Microsoft Intune's will wait 24 hours before trying the update again. **I received a prompt for an application that wasn't open. I thought it would install silently without prompting me?** At times IT may deploy an update forcing a prompt every time. This is usually done if the update takes a considerable amount of time and there is concern that the laptop may be accidentally shutdown during the updating process. **Can you force an update to be installed at a certain time?** Unfortunately not. Every laptop checks in with Microsoft Intune on initial sign-in and every 8 hours there afterwards. Its during these times that updates will be installed. IT has no control over this process. **Can I force an update to occur?** Not directly. You can if you wish, force a synchronization with Microsoft Intune. If an update is available, it *should* install shortly after the synchronization. To force an synchronization: 1. Open **Settings** via the Start Menu. 2. Select **Accounts**. 3. Within the left-hand column, select **Access Work or School**. 4. Select **Connected to GBC AD Domain**. An Info button should appear. Select **Info**. 5. Under *Device Sync Status*, select **Sync**. **I have an application that isn't listed that I think should be included in the regular updates?** Please let us know and we'll look into adding it.