Why Do Intune Policies Cause Unexpected Reboots During Windows Autopilot OOBE?
Unexpected reboots during Windows Autopilot Out-of-Box Experience (OOBE) remain one of the most frustrating issues for IT administrators in 2026. These interruptions occur when security policies assigned to device groups trigger what Microsoft calls "coalesced reboots" during the Enrollment Status Page (ESP) phase. The most common culprits include Device Guard, Credential Guard, Virtualization-Based Security (VBS), Attack Surface Reduction rules, and misconfigured Windows Update rings.
The root cause lies in the timing of policy application. When security policies are assigned to device groups, they apply immediately during the device setup phase of Autopilot, before the user has even signed in. These policies often require system-level changes that mandate a restart, interrupting the smooth OOBE experience and potentially causing user confusion or deployment failures.



