Update Windows 11 24H2 To 25H2 [Enablement Package]
Summary
Upgrades Windows 11 version 24H2 devices to version 25H2 with a single restart. Apps, files, and settings stay in place.
The upgrade uses Microsoft's enablement package (KB5054156), a small update that switches on 25H2 features already delivered to the device by monthly updates. To learn how it works, see KB5054156: Feature update to Windows 11, version 25H2 by using an enablement package.
It works by running the Update-Windows11To25H2 script. Devices that do not qualify are left unchanged and reported as failures.
NoReboot does not guarantee that the device stays up. It only stops this component from restarting the device. Windows Update can still restart it on its own schedule, for example to finish installing other updates, and patch policies or users can restart it too. Any restart completes the upgrade, so run this component inside a maintenance window if restart timing matters.
Devices need Windows 11 version 24H2 with the August 29, 2025 update (KB5064081) or any later monthly update.
Dependencies
Implementation
- Download the component Update Windows 11 24H2 to 25H2 from the attachments.
- After downloading the file, click on the
Importbutton in the Datto RMM interface. - Select the component just downloaded and add it to the Datto RMM interface.

- After Importing the component to the Datto RMM, make sure to add the component to the
PVALGroup always.- Steps to Add the component under
PVALGroup.
i. Click onDrop Down Icon.
ii. Click onAdd to Group.
iii. Select the group asPVAL

- Steps to Add the component under
For detailed instructions on importing a Datto component, see Workflow for Implementing Engineers.
Sample Run

Datto Variables
| Variable Name | Default | Type | Description |
|---|---|---|---|
NoReboot | False | Boolean | Installs the upgrade without restarting the device. The upgrade completes on the next restart from any source. See the warning in the Summary. |
RebootDelaySeconds | 300 | String | Seconds to wait before restarting, from 60 to 86400. Signed-in users see a restart warning during this time. Any other value stops the script before it makes changes. Ignored when NoReboot is set. |
IgnoreSafeguardHold | False | Boolean | Installs the upgrade even when Microsoft has placed a safeguard hold on the device. Use only on tested devices. |
Results by Device
| Device | Result |
|---|---|
| Windows 11 24H2, all requirements met | Upgraded to 25H2. Restarts after the delay unless NoReboot is set. |
| Windows 11 25H2 or newer | Success. No changes. |
| Windows 11 24H2 without the required update | Failure. No changes. Install the latest monthly update and run again. |
| Windows 11 23H2 or earlier, or Windows 10 | Failure. No changes. These versions need a full feature update instead. |
| Windows 11 LTSC edition or Windows Server | Failure. No changes. Not eligible for this upgrade. |
| Device under a safeguard hold | Failure. No changes, unless IgnoreSafeguardHold is set. |
A safeguard hold is Microsoft blocking an update on devices with a known problem, such as an incompatible driver. The failure message includes the safeguard ID, which you can look up on the Windows 11, version 25H2 known issues page.
Output
- Activity Log
- Script logs on the device:
C:\ProgramData\_Automation\Script\Update-Windows11To25H2\Update-Windows11To25H2-log.txtC:\ProgramData\_Automation\Script\Update-Windows11To25H2\Update-Windows11To25H2-error.txt
Attachments
Changelog
2026-10-06
- Initial version of the document.