Microsoft Updates via SCCM 2012 R2: What is the best strategy for domain-joined roaming laptops?


We are using SCCM 2012 R2 SP1 to deploy software updates campus wide. We also do have bunch of domain-joined laptops that users take home at end of the day. We are making sure that all laptops should have SCCM client. Now, all other desktops can be restarted in the maintenance windows but laptops are becoming our nightmare. We can't restart them during day and once they leave the campus, they won't connect to our VPN so that SCCM client can work. We are not planning for Intunes as well.

Now, what's the best strategy to resolve this issue. What I want, if laptops can download the updates during the time when they are on campus and get the notification that updates are ready to install, it would be awesome. Is it possible in our current SCCM 2012 setup?
Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Benjamin VoglarIT ProCommented:
Unfortunately this is not possible, it would bo possible if you have Direct Access.

We have set up so that our laptops install updates when they are at work and we prevent them to restart. Restart is permitted from 7 pm til 6 am. Which means, if they turn on computer at home, they are forced to restart.

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
Benjamin VoglarIT ProCommented:
Here is how to set this up:

venkatspbSenior Software EngineerCommented:
Maintanence window for laptops is not a recommended solution. But to the best of my knowledge it can be resolved very easily.

Once the updates are installed mostly after the deadline only because people will int install with the notification for sure. Okay... once the deadline is reached the update will mandatorily install. In the settings from configuration manager delay the restart time to 6 to 8 hours.

This would solve your issue. Just check the client agent settings for software updates.

It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today

From novice to tech pro — start learning today.