Jump to content


Established Members
  • Posts

  • Joined

  • Last visited

brink668's Achievements


Newbie (1/14)



  1. We have some Windows 10 machines deployed in the field and I have done a lot of research about updating Windows 10 via SCCM 2012R2. Most cases say it is still possible to update Windows 10 via SCCM 2012R2. I have been able to deploy updates. However what I am noticing is that the build versions are not changing for example. How do I upgrade machines via SCCM 2012R2 to go from 10240 to 10586? Is this possible or do I need to use SCCM version 1151?
  2. Sounds like you have a scan policy set if a client machine misses a scheduled scan to scan the next time the machine is on or force it as soon as possible. I think the setting was something like "If you miss 2 consecutive scans to force a scan". you may want to look at that property. Edit the actual setting is called " Force a scan of the selected scan type if client computer is offline during two or more scheduled scans."
  3. You could also set the boundaries to automatically look for them based on what is setup in your DHCP/DNS configuration and then apply them to the correct boundary groups. Anything not set in a boundary will automatically be considered to be on a slow network. Also any firewalls? Hardware and software based? Also, try connecting to this URL: http://mysccmservernamehere/sms_mp/.sms_aut?mplist do you see any content or any version info?
  4. What is your site code? is your site code PRI? This is my command line for an DMZ system CCMSETUP.EXE FSP=SERVERNAME-SCCM1 SMSMP=mydomain.com SMSSLP=SERVERNAME-SCCM1 SMSCACHESIZE=5000 CCMLOGMAXHISTORY=2 SMSSITECODE=AR1 DNSSUFFIX=mydomain.com Also make sure your site code is in DNS, for example my site code is AR1, this value should exist in your DNS.
  5. Is it possible to allow local administrators or users of a specific group to disable the system center endpoint protection and/or just real-time scan? Is there anyway to disable this policy on a more granular scale if necessary from the client end rather then moving the machine into a collection which grants the policy to all users to disable the real-time scan? I saw some items referring to group policy but that was only for SCCM 2007 version not the latest System Center Endpoint Protection 2012 version.
  6. Does that machine need all those updates? If it doesn't need all those updates it will just ignore them and only install the updates that are pertinent to that machine. In terms of troubleshooting how many systems do you have in total and how many operating systems are in your SCCM 2012 system. Please tell me all of them and how many machines there are. Not just in the collection you pushed to.
  7. This is what I have in my Client Push properties SMSSITECODE=AR1 FSP=TESTLAB-SCCM1 FSP = ComputerName value for us
  8. Did you update to CU2? This should resolve any Distribution/Content updating issues.
  9. Is this behavior normal to see FEP Updates clients required for update = 0, other updates show Required machines but ForeFront does not show this. Update Settings:
  10. I have the exact opposite problem I am trying to get my systems to restart during the maintenance window after installing updates. Users are getting prompted to Restart the machines but I want to force the restart on them. I will detail my environment for you to possibly help you get yours to not-restart as this is the case for me.
  11. From the logs it looks like it is communicating with the site/server; pulled some messages from the log The server is our site we only have 1 From WindowsUpdate.log 2013-05-23 13:15:38:023 448 478 AU # Policy Driven Provider: HTTP://MBAMK-SCCM1.XXXXXX.COM:8530 2013-05-23 13:15:39:282 448 eac Agent * Found 0 updates and 4 categories in search; evaluated appl. rules of 24 out of 67 deployed entities 2013-05-23 13:15:39:462 448 eac Agent * Found 15 updates and 23 categories in search; evaluated appl. rules of 68 out of 110 deployed entities 2013-05-23 13:15:39:490 448 eac Agent * Found 3 updates and 11 categories in search; evaluated appl. rules of 38 out of 110 deployed entities 2013-05-23 13:41:08:882 448 260 Agent * Endpoint Provider: 00000000-0000-0000-0000-000000000000 2013-05-23 13:41:08:882 448 260 Agent * WSUS server: HTTP://MBAMK-SCCM1.XXXXX.COM:8530 2013-05-23 13:41:08:882 448 260 Agent * WSUS status server: HTTP://MBAMK-SCCM1.XXXXX.COM:8530 2013-05-23 13:41:09:060 448 1fe0 PT +++++++++++ PT: Synchronizing server updates +++++++++++
  12. My FEP Clients have stopped downloading updates from the SCCM Server, they are only updating from Windows Update. It seems that something is very amiss as my FEP clients are downloading from Windows Update even though in the policy I have this set to Disabled Alternate Sources set to TRUE. How can I easily determine if the FEP client is updating to the SCCM Server or Windows Update which logs shows this? 2. I noticed also when I click on the about section of FEP the policy applied does not match with what is actually applied to the client / collection. Could this be a result of a corrupted policy?
  13. SOLVED. The problem is 2 things need to be set correctly. ADR Rule Deployment's User Experience must be set to the following to force Restart/Software Installation even with a maintenance window Software Installation (CHECKED) Suppress Software Restart on Workstations (UNCHECKED) When deploying the software group you essentially have to check the same fields otherwise it may not work. I cant seem to figure out why you have to do this twice it seems like wasted work to have to perform this step twice for an Automatic Deployment Rules.
  14. I feel like I keep posting questions. I tried to do a search on this but everything was bringing me to the exact opposite of what I am trying to do. It seems that even though I have maintenance window set for 18 hours on a collection every day for my testing. The machines install the updates but the user's are prompted to restart instead of just restarting the computers. I can't seem to figure out how to force the computers to restart, RESTART Suppression is only set for servers.
  • Create New...