Feature update deferral Windows

Piot Nowak 40 Reputation points
2026-06-01T13:15:25.7866667+00:00

Our busy accounting department cannot handle any major interface changes or OS layout shifts during the end-of-year financial audit. If Microsoft releases a new annual feature build of Windows 11, how do we configure our update rings to defer that major upgrade for 90 days while allowing minor quality security fixes through?

Windows for business | Windows 365 Enterprise
0 comments No comments

Answer accepted by question author
Domic Vo 34,165 Reputation points Independent Advisor
2026-06-01T13:45:07+00:00

Hi Piot Nowak,

To protect your accounting department from disruptive interface changes during the end-of-year audit, you can precisely isolate major OS upgrades from monthly security patches using a Group Policy Object. In your Group Policy Management Editor, navigate to Computer Configuration, Administrative Templates, Windows Components, Windows Update, and open the folder named Manage updates offered from Windows Update. Within this directory, double-click the policy titled Select when Feature Updates are received, set it to Enabled, and enter 90 in the options pane to defer the major annual build.

This configuration instructs the local Windows Update engine to calculate a strict 90-day delay from Microsoft's public release date before the upgrade becomes visible to the client machines. By leaving the companion policy for quality updates unconfigured, monthly security fixes will continue to download and install on their normal schedule, maintaining your required security posture without risking any sudden changes to the operating system layout.

Domic V.

Was this answer helpful?

1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.