How can I keep Office 2607 on one managed device temporarily?

0
0
Asked By MellowPine47 On

One of our locations uses software that is incompatible with newer Microsoft 365 Apps builds. While the vendor works on a fix, I need to keep one device on Office version 2607 instead of allowing it to update to 2608.

I created an Office Deployment Tool XML configuration to install build 2607, but after reboot the device updates itself again. I have tried several approaches:

- In Outlook, I went to File > Office Account > Update Options > Disable Updates, but nothing changed and no useful error appeared.
- In Intune, I excluded the device and its user from our Office update configuration policy, but Office still updated after restarting.
- In the Microsoft 365 Apps admin and configuration portals, I can view the device, installed version, and update channel, but I cannot find a way to control updates for this individual device. I have Global Administrator and Office Apps Administrator permissions.

What is the correct way to prevent this device from moving past build 2607, preferably while retaining a manageable way to update it later?

4 Answers

Answered By QuietCedar21 On

Another option is to configure Office to use a network share as its update source. Keep only the approved 2607 files on that share, so the device cannot see a newer build, while still giving you a controlled place to publish an update when the application is fixed. This needs to be tested carefully and maintained so the device continues receiving appropriate security updates.

Answered By CloudyHarbor8 On

Excluding the device from an Intune policy may not be enough. If a Cloud Update profile is active in the Microsoft 365 Apps admin center, Cloud Update can take precedence over other management settings. Check config.office.com for an active Cloud Update profile and use its exclusion or opt-out setting for this device. After it is no longer managed by Cloud Update, apply a separate policy that explicitly targets the device and pins Office to the 2607 build. Simply removing it from another policy leaves the default update behavior enabled.

Answered By NorthStarMango3 On

For a temporary hold, use an Office Deployment Tool configuration that explicitly disables updates, such as . Reinstall or reconfigure Office with that XML, then check whether management settings are being written back under HKLMSOFTWAREPoliciesMicrosoftoffice16.0commonofficeupdate. Look for values such as UpdateBranch or TargetVersion, and check Task Scheduler for the Office Automatic Updates 2.0 task. On managed installations, the Disable Updates button in Office is often unavailable or ineffective, so it is better to enforce the setting through deployment or policy.

Answered By SilverKite60 On

If the application needs to remain on a fixed Office feature version for a longer period, consider an Office LTSC release. It is designed for a more stable feature set and can still receive applicable security updates, although licensing and compatibility should be checked. For the immediate problem, explicitly deploying a policy that disables updates or pins the target build is more appropriate than relying on the Office UI.

Related Questions

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.