Jump to content


anyweb

Root Admin
  • Posts

    9244
  • Joined

  • Last visited

  • Days Won

    368

Everything posted by anyweb

  1. you can always upgrade the OS and SQL using an inplace upgrade, and that's the method I would choose and have done in the past. You need to get SCCM up to the latest version though before upgrading the operating system, here are my old notes and this does not include the operating system upgrade (which you can do after upgrading SCCM/SQL)
  2. I think you are confusing application download and sending/receiving machine policy or state messages to the management point, i assume you have a local distribution point that resides in the IP Address range boundary that this computer is being image in, is that correct ? is the application in question also on this local DP ?
  3. first things first why do you want to setup a new site maybe there's a better option like upgrade your existing infrastructure to Current Branch.
  4. did you install CM2002 in the slow ring or fast ring ? have you seen any update appear in updates and servicing for PXE boot issues (amongst other things) ?
  5. any time sync or group policy issues on the client when this happens ?
  6. thanks, does that ip range over lap with any other subnet (as Garth already mentioned) ?
  7. if you are using https then are you sure you have no issues with your certs ? for example on your issuingCA run pkiview.msc and verify everything looks healthy as this can impact PXE booting.
  8. so i uninstalled both my Windows ADK's, rebooted, downloaded and installed both for ADK 2004 and rebooted, then reloaded my boot images with the new adk then tested pxe, works fine...
  9. and the boot image is definitely distributed to your DP with the right source version ? i'm updating my lab to adk 2004 now....
  10. very odd, i don't have adk 2004 in my cm2002 lab but i can upgrade it this evening to observe the behaviour did you verify from the boot package Id that it's pulling down the boot image you set the settings on ?
  11. are you sure you upgraded Windows ADK properly then ? there are two components to it this time...
  12. did you fix cmd support so you can also grab the smsts.log ?
  13. from the smsts logs provided the client get's an ip address of 10.64.2.47 does that ip address match any of your configured IP Range boundaries ?
  14. anything interesting in the smspxe.log ?
  15. how have you configured your settings ?
  16. first off is SRS configured and all the other ConfigMgr reports showing up in SCCM ? secondly what was the full cmdline you used to configure things ? this is how I did it.. .\MBAMWebSiteInstaller.ps1 -SqlServerName cm01.windowsnoob.lab.local -SqlDatabaseName CM_P01 -ReportWebServiceUrl http://cm01.windowsnoob.lab.local/Reportserver -HelpdeskUsersGroupName "windowsnoob\MBAM_HD" -HelpdeskAdminsGroupName "windowsnoob\MBAM_HD_Adv" -MbamReportUsersGroupName "windowsnoob\MBAM_HD_Report" -SiteInstall Both
  17. yes i'm using a CMG in this lab but i haven't tested Bitlocker Management in that regard and i believe the functionality it just not there yet without a workaround suggested by Marc in another thread.. Here's the requested screenshot.
  18. if you place the name of the SQL server in 'single quotes' does it work ?
  19. hiya and welcome, can you look at the network tab of your IBCM client ? my (co managed, forced internet client) looks like this
  20. thanks for the update !
  21. all the configuration manager baseline is showing as compliant is the settings, this means it has set those settings (in the registry and local group policy) and therefore it has done it's job, that's why it's compliant, the actual encryption is carried out on demand by the MDOP agent based on the settings you've configured. Is there a Virtual TPM in this virtual machine (look in device manager to confirm it's presence) ?
  22. A Gen1 VM won't encrypt, as you can't add a Virtual TPM to Gen1 hyperv virtual machines. Use a Gen 2 VM instead and enable the virtual TPM. if you follow my guides here you'll be fine, CM2002 just offers more possibilities including the ability to properly enforce encryption without the workaround i posted for CM1910 https://www.niallbrady.com/2019/11/13/want-to-learn-about-the-new-bitlocker-management-in-microsoft-endpoint-manager-configuration-manager/ if you run into an issue please let me know
  23. if i had a vote left Marc i'd vote for it, did you tweet it yet ?
  24. are your VPN's somehow blocking communication ? are you using VPN's ?
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.