Endpoint Management: How University-Managed Devices Receive Updates

Summary

University Technology Services (UTS) regularly deploys operating system, security, software, firmware, and driver updates to University-managed devices.

Body

Overview

University Technology Services (UTS) regularly deploys operating system, security, software, firmware, and driver updates to University-managed devices. These updates help maintain a reliable, secure, and consistent computing environment across Villanova University.

To minimize disruptions and reduce risk, updates are released in stages through a process known as servicing rings. This approach allows UTS to validate updates with smaller groups of devices before broader deployment across the University.

Devices Covered

This process applies to University-managed Windows, macOS, and iOS devices. UTS uses Microsoft Intune and Jamf Pro to manage device configurations, security settings, software deployment, and updates.

How Updates Are Released

Updates are deployed through three servicing rings. Each ring allows UTS to validate update quality and compatibility before proceeding to a larger audience.

Ring 1: UTS Endpoint Management and Information Security Teams

Updates are first deployed to devices used by members of the UTS Endpoint Management and Information Security teams.

  • Identify compatibility issues early.
  • Validate update behavior before campus-wide deployment.
  • Provide support teams with first-hand experience using the update.
Ring 2: UTS and Cross-Campus Test Group

Following successful validation in Ring 1, updates are deployed to all remaining UTS-managed devices and a small cross-campus test group.

The test group includes selected devices from schools, colleges, and key administrative areas to ensure updates are validated across a diverse set of University use cases.

Ring 3: General Population

After successful validation in Rings 1 and 2, updates are deployed to the remaining University-managed devices.

This phased approach helps reduce risk while ensuring devices remain secure and up to date.

Update Schedule

The timing of updates depends on the type of update being deployed and the servicing ring assigned to the device.

Update Type Ring 1 Ring 2 Ring 3
Operating System Feature Updates Fall Break Winter Break After the Spring Semester
Quality and Security Updates Deployed on the date of release.
Restart may be deferred for up to two days.
Deployed seven days after Ring 1.
Restart may be deferred for up to seven days.
Deployed seven days after Ring 2.
Restart may be deferred for up to seven days.
Annual Firmware and Driver Updates 14 days before Winter Break
Beginning immediately after the Spring Semester
7 days before Winter Break
7 days after the Ring 1 spring deployment
Winter Break
Beginning immediately after the Ring 2 spring deployment
BIOS Updates BIOS updates are not automatically enforced. Manual BIOS updates are available for supported Dell devices through Dell Command Update.

What to Expect

  • Updates may download and install automatically on University-managed devices.
  • Quality and security updates may require a device restart.
  • Users can temporarily defer required restarts, subject to the limits defined by their servicing ring.
  • Operating system feature updates are generally scheduled around academic break periods.
  • Firmware and driver updates are released on a planned schedule to reduce disruptions during the academic year.
  • Devices should remain connected to the internet regularly to receive updates in a timely manner.

What You Should Do

  1. Save your work frequently.
  2. Leave your device powered on and connected to the internet regularly.
  3. Review update notifications when they appear.
  4. Restart your device when prompted to complete update installation.
  5. Avoid postponing restarts until the final deadline whenever possible.

Details

Details

Article ID: 165031
Created
Tue 10/6/26 4:06 PM
Modified
Tue 10/6/26 4:40 PM

Related Services / Offerings

Related Services / Offerings (2)

Learn how to purchase a computer outside of the PC Refresh Program.
The NOVAdevice Refresh Program provides all eligible full-time faculty a staff a new computer on a lifecycle of no more than 5 years.