Warning with 2211 MECM Build A warning appear when I verify prerequisites for Configuration Manager 2211 Hotfix Rollup. Three warnings appear. Co-management workload slider for ressource access policies Network Access Account account usage alert
Microsoft Endpoint Configuration Manager 2107 permit to convert the CMG (Cloud Management Gateway) with classic cloud service to virtual machine scale set. I write a post few month ago here for configure CMG with virtual machine scale set. Change parameter When you convert to virtual machine scale set, you can proceed to change some parameters.
After several years of use, it is necessary to migrate the SCCM infrastructure to one or more other servers. It is possible to migrate the server to another server or to migrate role by role. If the infrastructure remains the same, the first solution is preferable because it is faster. In the case where the roles are redistributed, it is preferable to use role by role.
Customers with an Azure subscription through a CSP (Cloud Solution Provider) could encounter a lot of problems to set up the CMG. Since the 2010 version of Configuration Manager, it is possible to set up the functionality Cloud management gateway with Azure VM scale set.
The deployment of a task sequence to customers can be done via the Internet. This scenario, which has already been present for several versions of Configuration Manager, has been improved with the 2010 version. It is now possible to start the update or installation of a Windows 10 workstation from a boot media.
Orchestration groups start with Configuration Manager 2002. This features permit to create a group for control the deployment of Software update. With this orchestration group, you can update devices based on percentage, explicit order, etc…. The member can be any Configuration Manager client. You can apply rules to any collections and all software update groups.
Since version 1906 of Configuration Manager, it is possible to install a Microsoft Connected Cache server on distribution points. This functionnality has been renamed Microsoft Connected Cache with version 1910 of Configuration Manager. This server is a Transparent on-demand caching server for uploaded content through distribution optimization. It is possible to limit the use of this server using client settings. So it is easy to limit access to this feature only to the local Configuration Manager client.
What is Tenant attach ? The tenant attach solution allows devices present in SCCM to be managed by Microsoft Intune. This will make it possible to manage them in Microsoft Intune as well. The tenant attach functionality requires the following prerequisites. An account with Global administrator rights in the Intune tenant. The AD user is synchronised with Azure AD
With sccm, it is possible to use reports natively using SQL reporting. If you want more advanced reports, more ergonomic, … It is possible to integrate Power BI with SCCM. This way you will be able to use all the power of Power Bi with SCCM.
The Configuration Manager solution is enriched with a new functionality at the application deployment level. Introduced with the latest versions of Configuration Manager, feature Approve Application request feature can now be used.
This functionnality is implemented from sccm 1906. He permit to deploy multiple application as a single deployment. With SCCM 1910, users can uninstall the app group. The App group can be deployed to a user collection. It is possible to specify the order in which the applications are installed in the group.
Using MBAM with SCCM SCCM 1910 provides full BitLocker lifecycle management. He replace MBAM(Microsoft BitLocker Administration and Monitoring). Configuration Manager provides these capabilities for BitLocker Drive Encryption:
Site Server high availability With System Center Configuration Manager, you can have redunndancy role with multiple instance of role (Distribution point, …). Configuration Manager 1806 permit to have high availability for Site Server role (it’s not possible before 1806 version of Configuration Manager). For the central administration site and child primary site, you need have 1810 version of Configuration Manager.
SCCM PXE without WDS SCCM 1806 brings an interesting new feature for anyone wishing to deploy workstations at a remote site. Before this version, it’s necessary to have a server to perform a PXE boot. Indeed, this type of startup requires to use a WDS (Windows Deployment Service) server. Since version 1806 of SCCM, it is possible to do a PXE boot without a WDS server.However, it is not possible to do a Multicast deployment without WDS. So if you…
CMPivot into SCCM SCCM contains a large amount of data, which can be used to create reports. CMPivot was introduced in SCCM with version 1806 of SCCM. This feature has the advantage of accessing the status of the devices in real time. This feature has the advantage of accessing the status of the devices in real time. A query is executed on a target group (computer), then the result is returned.
Configure cloud distribution Point A cloud Distribution Point allows to own a distribution point in the cloud. With this type of distribution point, it is possible to have the following features : manage cloud distribution points individually or as members of distribution point groups Use this DP as a fallback content location
Configure Cloud Management Gateway This feature has been introduced in SCCM in order to manage SCCM clients over the Internet. Note that this feature requires an azure subscription to work. Thereafter, the customers have the possibility of reaching the SCCM system sites wherever they are. Client certificates and SSL certificates are required. with this article you can configure the Cloud Management Gateway.
SCCM 2012 to SCCM CB SCCM 2012 R2 is approaching the end of its lifes, so it is important to upgrade to the new version (SCCM Current Branch). Depending on the ADK and SQL version used, it may be necessary to update them as well.So we will first update ADK Windows 8.1 to ADK Windows 10. The boot images will then be read-only, it will be necessary to update them. In a second step, we will update SCCM.
Data Warehouse service point From the version 1702 of SCCM, you can enable and use Data Warehouse service point. This feature allows you to save any desired data and create date with this data. The feature supports up to 2To of data. The timestamp are present for tracking any information. The data is stored with automatic synchronisation between ConfgMgr site database and the database of Data Warehouse. This information has available from the reporting services point. After the installation of…
Antivirus exceptions for SCCM I installed recently a SCCM 1702. With the agent, the anti-virus was installed on the different servers and workstations. SCCM now uses the Windows servicing model. It is therefore necessary to configure the exceptions to the levels of the anti-virus scans if you want to avoid certain problems.
CmdLets SCCM A SCCM server administration will be generally to add new drivers, images of boot or to installations and applications. This will also be to monitor the State of health of the infrastructure by looking at the logs file.Using PowerShell with CmdLets SCCM is justified because it is thus possible to script some action and therefore to industrialize the process which some may be “heavy” when there are executed manually. For this Microsoft provides to people wishing Cmdlets to…
Erreur Code 0x80070661 Pilots are essential when deploying workstations with SCCM. It is therefore necessary to ensure that pilots are imported before deployment. Importing Windows 10 drivers with SCCM 2012 R2 SP1 and SCCM 2012 SP2 can cause problems
SCCM 2012 R2 offers many advantages, including the ability to provide users with an application portal. Application portal is based on two roles in SCCM : Application Catalog website point Application Catalog web service point
Backup data with MDT While trying to back up the data of a Windows XP workstation with MDT, I realized that the UNC path entered in the CustomSettings.ini file was ignored.
If you want deploy Operating System with MDT (Microsoft Deployment Toolkit) or with with SCCM (System Center Configuration Manager). Driver is more important. You can capture driver on desktop/laptop or download package of driver. This package can be downloaded on web site of HP or Dell for example. Package driver for Dell : Download here Package driver for HP 32 bits : Download here Package driver for HP 64 bits : Download here
When booting in PXE, a boot image is loaded. This may take several minutes to complete. To reduce the loading time, it is necessary to make a change in the registry.
Windows ADK allows the creation of Winpe, however it uses by default an English language pack. This implies a qwerty keyboard. In order to find an azerty keyboard, it is necessary to follow the steps presented in the file (this last one references all the commands for the creation of a WinPE CD). Create WinPE
After starting the workstation in pxe, mdt 2012 returns the wizard windows which will allow the selection of the task sequence, the entry of the name of the workstation,…
Despite the entry in the msp d’office 2010 file, it will be necessary to start the activation the first time an Office suite software is started.
It is convenient to have a USb key bootable with WinPE as well as all these tools. This to be able to very simply troubleshoot a workstation / server without the need to bring a cd.
It is difficult to talk about deployment without saying the word WAIK. This tool allows us to use tools such as Imagex but above all allows us to create a custom WinPE image.
Since Windows Server 2003 SP2, we have a great tool at our disposal: the Windows Deployment Service. This allows us to deploy WIM images. It can be interesting to deploy an OS automatically. This is possible with WDS (Windows deployment service) using response files.
Using an automated script, it is possible to send an E-mail when the job sequence is completed. The contents of the script (click here for download the wsf file). This file contain the following code :
In some cases, we may receive more response from WDS. The stations do not receive any response from the TFTP server and fall out in timed out.
There is a procedure to test the customsettings.ini file before starting the deployment. This is to ensure that the settings are OK.