Managing Windows 10 Endpoint Protection with SCCM 2012

Benoit LecoursSCCM, SCEP, WINDOWS 1013 Comments

Windows 10 is out since July 29th, now you want to manage Windows 10 Endpoint Protection with SCCM 2012. You have probably noticed that Windows 10 comes natively with Windows Defender. Instead of Endpoint Protection, it is now the default anti-malware managed by SCCM 2012. Actually, the Endpoint Protection agent is installed locally in Programs & Features but it’s using the Windows Defender UI with a thin layer of Endpoint Protection to manage policies and malware definitions. If you have already deployed Windows 10 in your environment, you might have encountered an issue where your Endpoint Protection policies are applied but the malware definitions are not updated. Some have found a way to work around this problem by extracting the Endpoint Protection installer and make Endpoint Protection malware definitions automatically update. Unfortunately, this TechNet article is the only official documentation but it’s mentioning only Windows 10 Technical Preview, no word about Windows 10 RTM. Might only be a matter of updating their documentation. For … Read More

How to install SCCM 2012 State Migration Point

Benoit LecoursSCCM11 Comments

In this part of SCCM 2012 and SCCM 1511 blog series, we will describe how to install SCCM 2012 R2 or SCCM 1511 State Migration Point (SMP). Role Description The State Migration Point stores user state data when a computer is migrated to a new operating system. This is not a mandatory Site System but you need a State Migration Point if you plan to use the User State steps in your Task Sequence. These steps integrates with User State Migration Tools (USMT) to backup your user data before applying a new operating system to a computer. Site System Role Placement in Hierarchy The State Migration Point is a site-wide option. It’s supported to install this role on a child Primary Site, stand-alone Primary Site or Seconday Site. It’s not supported to install it on a Central Administration site. Beginning with SCCM 2012 R2, the State Migration Point can be installed on the site server computer or on a remote … Read More

How to perform a SCCM 2012 R2 Installation

Benoit LecoursSCCM6 Comments

In the first part of this SCCM 2012 and SCCM 1511 blog series, we planned our hierarchy, prepared our server and Active Directory. In part 2, we installed and configured SQL in order to perform SCCM 2012 R2 installation. In part 3, we will run the prerequisite checker and proceed to the SCCM 2012 R2 installation. We will install a stand-alone Primary site.   Prerequisite Check Before launching the SCCM 2012 R2 installation, we recommend to launch the Prereqchk tool in order to verify if all components are configured correctly. The SCCM 2012 R2 installation wizard will also run this check but if you’re missing a requirement, you’ll have to go through the whole installation wizard again after fixing it. We prefer to use the standalone tool. To start the tool : Open an Administrator command prompt Browse to .\SMSSETUP\BIN\X64 Run the following command : prereqchk.exe /AdminUI If you follow the guide correctly you’ll have this wonderful result : Refer to this … Read More

How to maximize the use of Asset Intelligence in SCCM/MECM with Custom Labels

Nicolas PilonAsset Intelligence, SCCM7 Comments

Asset Intelligence is a feature in Configuration Manager that allows you to identify and manage the inventoried software of your environment. It’s populated each time there’s a hardware inventory scan on the device. The catalog contains data about inventoried software and 5 labels can be defined to standardize product names or any useful information in your catalogue. Software developers are not always following a standard name for their own products. Consequently, the data quality for software reports will be better. In this post, we will show how you can maximize the use of custom labels in Asset Intelligence. We will use Office Visio as an example for this post. If Asset Intelligence is not enabled in your infrastructure, you can enable the component by following Technet post. Asset Intelligence node in the SCCM/MECM Console From the Configuration Manager console, click on Asset and Compliance in the left panel Expand Overview / Asset … Read More