# System Update Policy Payload

> The Android payload that controls when Device Owner devices install Android system updates, including maintenance windows and annual freeze periods.

Source: https://docs.capaone.com/capainstaller/the-capainstaller-console/configuration-management/what-is-configuration-management/profiles/android-profiles/system-update-policy-payload/  
Product: CapaInstaller — a separate CapaSystems product; do not apply this page to any other.

This payload sets the system update policy on an Android device. The policy controls when the device installs Android system (OTA) updates.

:::note[Requirements]
The payload only applies to devices enrolled as **Device Owner**, with Android 6.0 or later. Freeze periods need Android 9 or later. See [Android Device Owner Enrollment](/capainstaller/installation-and-maintenance/getting-started-with-device-management/device-enrollment/android-device-owner-enrollment/).
:::

You add the payload to a configuration profile in the Profile Editor, under the **Android** payloads. See [Profile Editor](/capainstaller/the-capainstaller-console/configuration-management/how-to-use-configuration-management/working-with-devices/profile-editor/).

## Policy types

| Policy type | What the device does |
|:------------|:---------------------|
| **Automatic** | Installs system updates as soon as they're available, without user interaction. This is the default. |
| **Windowed** | Installs system updates during a daily maintenance window, without user interaction. Set the window in **System Update Window**. |
| **Postponed** | Postpones the installation of updates for 30 days. After that, the device prompts the user to install the update. |

## Configurations

| Configuration | Description | Example |
|:--------------|:------------|:--------|
| **Policy Type** | The system update policy: **Automatic**, **Windowed**, or **Postponed**. | Windowed |
| **Update Window Start** | Start of the maintenance window, in minutes after midnight (0–1439). Needed when the policy type is **Windowed**. | `120` (2:00 AM) |
| **Update Window End** | End of the maintenance window, in minutes after midnight (0–1439). Needed when the policy type is **Windowed**. | `300` (5:00 AM) |
| **System Update Freeze Period (Repeats Annually)** | Select this option to block all system updates in a period that repeats every year. | Selected |
| **Freeze Period Start Month (1 - 12)** | The month the freeze period starts. | `12` |
| **Freeze Period Start Day (1 - 31)** | The day in the start month the freeze period starts. | `15` |
| **Freeze Period End Month (1 - 12)** | The month the freeze period ends. | `1` |
| **Freeze Period End Day (1 - 31)** | The day in the end month the freeze period ends. | `10` |

To convert a time of day to minutes, multiply the hour by 60 and add the minutes. For example, 11:00 PM is 23 × 60 = `1380`.

## Freeze periods

A freeze period blocks all system updates on the device, also security updates. Keep these rules in mind:

- The start day and the end day are both part of the freeze period.
- A freeze period can be at most 90 days. Android rejects longer periods.
- Enter a valid date. An invalid day, such as 31 in a 30-day month, or 29 February, makes the payload fail.
- On devices with Android 6.0 to 8.1, the update policy is installed without the freeze period. The payload status shows that the freeze period needs Android 9.

## Change or remove the policy

A device keeps a system update policy until the payload is removed. If a device already has a system update policy, a new System Update Policy payload doesn't replace it. To change the policy on a device, remove the profile with the current policy first, and then assign the profile with the new policy.

When you remove the profile from the device, the system update policy is cleared, and the device goes back to its default update behavior.
