Skip to main content

Without setting up an Advanced Policy, is there a way to exclude a patch from being auto pushed in a Patch Policy? It appears the April 2025 patch is causing all sorts of issues with all our older endpoints that aren’t on Win 11 24H2 and want to remove that from trying to update on systems until we can test May’s patches or upgrade them all to 24H2 before the April/May Patch gets applied. 

Hi Abeidson,

What policy type are you currently using? You can convert it to a Patch Except policy for a time to exclude that particular KB. 

Additionally you can use the software page to perform a global ignore, but you may have to ignore it on Multiple OS types (ie: ignore KB1234 on Windows 10, ignore KB1234 on Windows 11). This is a global blocking of the update on the specified platform without modifying policies:
 


 


Reply