Automatic Install of Endpoint Protection fails on windows 8.1 clients with SCCM 2012 R2

Running SCCM 2012 R2 and deploying CM clients and Endpoint Protection via software updates. CM client and EP install fine on Windows 7 clients. CM client installs fine but endpoint protection fails on Windows 8.1 clients with the following from the
endpoint protection agent log:
<![LOG[Create Process Command line: "C:\Windows\ccmsetup\SCEPInstall.exe" /s /q /policy "C:\Windows\CCM\EPAMPolicy.xml".]LOG]!><time="12:22:02.560+240" date="08-13-2014" component="EndpointProtectionAgent"
context="" type="1" thread="4260" file="epagentutil.cpp:607">
<![LOG[Detail error message is : [EppSetupResult]
HRESULT=0x80070643
Description=Cannot complete the System Center Endpoint Protection installation. An error has prevented the System Center Endpoint Protection setup wizard from completing successfully. Please restart your computer and try again. Error code:0x80070643. Fatal
error during installation.
So on the win8.1 client I run the above command line manually in a command window and receive Access is denied. Then I run the same command in an elevated command window and EP installs fine. Does this have something to do with why the automatic
EP client install fails with the 0x80070643 error code? If so, what is the fix?

Hi,
Try uninstalling any other security software.
For more information, please review the link below:
I‘m getting an error code from my Microsoft security software
http://www.microsoft.com/security/portal/mmpc/help/errorcodes.aspx
We
are trying to better understand customer views on social support experience, so your participation in this
interview project would be greatly appreciated if you have time.
Thanks for helping make community forums a great place.

Similar Messages

  • No System Center Endpoint Protection on my Windows 8.1 client?

    I'm trying to install the SCCM 2012 SP1 CU3 client on a test Windows 8.1 computer.  The client install seems to go well, components install and enable but I do not see the System Center Endpoint Protection tool in the tool tray on the 8.1
    client like I see on Windows 7. 
    How can I check to see if SCEP is installed and working?
    Thanks,
    FP

    Hi,
    In addition, you also need to install Endpoint Protection Point role to manage SCEP clients.
    Best Regards,
    Joyce
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • AMT 3.2.10 Clients with SCCM 2012 on Windows 2012

    Hey
    I have a couple of HP dc7800 computers with Intel's AMT/vPro that I'd like to provision with SCCM 2012. The installed firmware version is 3.2.10 which is a supported version according to the documentation [1]. Provisioning of newer clients (5.2.x upwards)
    is successful, so I can rule out all the usual suspects like the provisioning certificate from GoDaddy, our internal CA, DHCP options, etc. Provisioning with SCCM 2007 of both 3.2.x and 5.x AMT devices is also still successful. 
    The amtopmgr.log repeatedly shows the following entries:
    Provision target is indicated with SMS resource id. (MachineId = 16777325 WS45.mydomain.ch)
    Found valid basic machine property for machine id = 16777325.
    Warning: Currently we don't support mutual auth. Change to TLS server auth mode.
    The provision mode for device WS45.mydomain.ch is 1.
    The IP addresses of the host WS45.mydomain.ch are x.x.x.x.
    Root hash of provisioning certificate is 2796BAE63F1801E277261BA0D77770028F20EEE4.
    Attempting to establish connection with target device using SOAP.
    Create provisionHelper with (Hash: 74B7792EDBD64EBB01E2E3A0B27FAFA04C2D3BCB)
    Set credential on provisionHelper...
    Try to use provisioning account to connect target machine WS45.mydomain.ch...
    Error 0x80090304 returned by InitializeSecurityContext during follow up TLS handshaking with server.
    **** Error 0x37f2b370 returned by ApplyControlToken
    Fail to connect and get core version of machine WS45.mydomain.ch using provisioning account #0.
    Try to use default factory account to connect target machine WS45.mydomain.ch...
    Error 0x80090304 returned by InitializeSecurityContext during follow up TLS handshaking with server.
    **** Error 0x37f2b370 returned by ApplyControlToken
    Fail to connect and get core version of machine WS45.mydomain.ch using default factory account.
    Try to use provisioned account (random generated password) to connect target machine WS45.mydomain.ch...
    Error 0x80090304 returned by InitializeSecurityContext during follow up TLS handshaking with server.
    **** Error 0x37f2b370 returned by ApplyControlToken
    Fail to connect and get core version of machine WS45.mydomain.ch using provisioned account (random generated password).
    Error: Device internal error. This may be caused by: 1. blabla...
    Error: Can NOT establish connection with target device. (MachineId = 16777325)
    After some investigation with Wireshark, I've found out that SCCM tries connect with TLSv1 to the AMT device. The response from the device is immediately an SSL alert (internal error). Using OpenSSL, I could connect to the device if I explicitly told it
    to use SSLv3. This leads me to believe that the 3.2.x firmware cannot handle TLSv1 correctly and SCCM never tries to connect with SSLv3 after a failure.
    So the question is: How can I get SCCM 2012 to provision these devices?
    Regards,
    Ingo
    [1]
    http://technet.microsoft.com/en-us/library/c1e93ef9-761f-4f60-8372-df9bf5009be0#BKMK_SupConfigOOB

    Since no one has answer this post, I recommend opening  a support case with CSS as they can work with you to solve this problem.
    Garth Jones | My blogs: Enhansoft and
    Old Blog site | Twitter:
    @GarthMJ

  • Windows 8 Tablet Manage with SCCM 2012

    Hi,
    Does the SCCM 2012 R2 supports managing of Tablet Devices  Windows 8 installed.
    Is there any step-by-step guide or TechNet or MSDN articales ?
    Thanks,

    here's some step by step guides for you, that help you enroll and deploy settings and apps to Windows 8.x devices
    CM12 in a Lab -
    How can I manage modern devices using System Center 2012 R2 Configuration Manager ? - Part 5
    CM12 in a Lab -
    How can I manage modern devices using System Center 2012 R2 Configuration Manager ? - Part 6
    CM12 in a Lab -
    How can I manage modern devices using System Center 2012 R2 Configuration Manager ? - Part 7
    Step by Step Configuration Manager Guides >
    2012 Guides |
    2007 Guides | I'm on Twitter > ncbrady

  • Installing Symantec endpoint Protection installtion failed

    Hi ,
     I have Symantec endpoint protection and have setup.exe. I have create a package and created a program as
    setup.exe /s /v"/qn RUNLIVEUPDATE=0 REBOOT=REALLYSUPPRESS" but unfortunately installation fails as part of Task sequence.
    just wondering if I am using some wrong command line arguments...pls. share any pointers. pls. find the screen shot attach from smstslog
    Regards.

    Hi,
    I am Chetan Savade from Symantec Technical Support Team.
    See if Windows defender is causing any issue.
    Can change it to setup /s /v"/l*v log.txt /qn RUNLIVEUPDATE=0 REBOOT=REALLYSUPPRESS DISABLEDEFENDER=0"
    Refer these articles:
    Keeping Windows Defender Enabled when Deploying and Installing Symantec Endpoint Protection Client package.
    http://www.symantec.com/docs/TECH168501
    Using MSI Command Line Switches to install Symantec Endpoint Protection (SEP) 12.1 fails to install or fails to abide by switch parameters
    http://www.symantec.com/docs/TECH177946
    MSI command line reference for Symantec Endpoint Protection
    http://www.symantec.com/docs/TECH102668

  • Steps to install Forefront Endpoint Protection 2010?

    I've been searching on how to install Forefront Endpoint Protection 2010 on a Windows Server 2012 R2 Server.  I can't seem to find anything about this.  Can someone tell me the steps I need to take.  I installed SQL 2012, then SCCM
    2012, but when I launch the Forefront 2010 installer its saying it can't find SCCM 2007.  I take it its not supported in Forefront 2010? Anyways, if there are instructions on how to install the Endpoint Protection and Exchange Online protection I'd appreciate
    it.  
    Fernando

    Hi,
    In SCCM 2012 Endpoint Protection 2012 is integrated so you cannot install FEP 2010 in it. Add the Site System role called "Endpoint Protection" on your Primary site server, CAS if you use a CAS and then you are good to go.
    the steps are described here:
    http://blogs.technet.com/b/anilm/archive/2012/02/19/how-to-enable-configuration-manager-2012-endpoint-protection.aspx
    Regards,
    Jörgen
    -- My System Center blog ccmexec.com -- Twitter
    @ccmexec

  • How to manage Forefront Endpoint Prorection Security Client 2010 with SCCM 2012

    Hi
    I've sucessfully installed System Center Configuration Manager 2012
    and now I 'd like to push/deploy Forefront Endpoint Protection Client 2010 on client machines.I also know that Microsoft embedded Forefront Endpoint Protection in SCCM 2012 so that you can manage FEP from single SCCM 2012 console.Now
    when I try to push FEP client on client machines using Default Client Settings
    then I've found that all Endpoint Protection settings are greyed out !
    Do I need to install Forefront Endpoint Protection 2010 or 2012 Server (which is beta) with SCCM 2012, in order to deploy FEP client or is there a workaround or solution to resolve this ?
    Thanks
    Sohail

    Hi,
    Endpoint Protection 2012 is builtin in SCCM 2012, you simply add the Site Role called Endpoint Protection either on your CAS if you have one of those or on your Primary site Server. FEP is no longer a standalone installer and it is a released product and
    no longer Beta.
    Then the Endpoint Protection Client Settings will no longer be greyed out and you can deploy the System Center 2012 Endpoint Protection client.
    http://technet.microsoft.com/en-us/library/hh508760.aspx
    regards,
    Jörgen
    -- My System Center blog ccmexec.com -- Twitter
    @ccmexec

  • Deploy UDI Windows 10 with SCCM 2012 R2 and MDT 2013 Update 1

    Hi,
    Trying use "User-Driven Installation"  with
    SCCM 2012
    R2 CU4 and MDT
    2013 Update 1 for deploy Windows
    10.
    Created MDT Task Sequences with
    template "Client Task sequence"
    and Deployment Method "User-Driven Installation".
    When I try to deploy I have error like:
    Failed to run the last action: Error in the task sequence. Execution of task sequence failed.
    The operation cannot be completed because other resources are dependent on this resource. (Error: 00001389; Source: Windows)
    ZTI deployment failed, Return Code = 5001 InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Unable to create WebService class InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Command line returned 5001 InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Process completed with exit code 5001 TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Part smsts.log
    !--------------------------------------------------------------------------------------------! TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Expand a string: WinPEandFullOS TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Executing command line: smsswd.exe /run: cscript "%deployroot%\scripts\ztierrormsg.wsf" TSManager 22.04.2015 11:36:57 1160 (0x0488)
    [ smsswd.exe ] InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    PackageID = '' InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    BaseVar = '', ContinueOnError='' InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    ProgramName = 'cscript "C:\_SMSTaskSequence\WDPackage\scripts\ztierrormsg.wsf"' InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    SwdAction = '0001' InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Set command line: Run command line InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Working dir 'not set' InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Executing command line: Run command line InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Process completed with exit code 5001 InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Microsoft (R) Windows Script Host Version 5.12 InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Copyright (C) Microsoft Corporation. All rights reserved. InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Microsoft Deployment Toolkit version: 6.3.8216.1000 InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    The task sequencer log is located at X:\WINDOWS\TEMP\SMSTSLog\SMSTS.LOG. For task sequence failures, please consult this log. InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    ZTI deployment failed, Return Code = 5001 InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Unable to create WebService class InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Command line returned 5001 InstallSoftware 22.04.2015 11:36:57 1740 (0x06CC)
    Process completed with exit code 5001 TSManager 22.04.2015 11:36:57 1160 (0x0488)
    !--------------------------------------------------------------------------------------------! TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Failed to run the action: Error in the task sequence.
    The operation cannot be completed because other resources are dependent on this resource. (Error: 00001389; Source: Windows) TSManager 22.04.2015 11:36:57 1160 (0x0488)
    MP server http://sccm.domain.com. Ports 80,443. CRL=false. TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Setting authenticator TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Set authenticator in transport TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Sending StatusMessage TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Setting message signatures. TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Setting the authenticator. TSManager 22.04.2015 11:36:57 1160 (0x0488)
    CLibSMSMessageWinHttpTransport::Send: URL: sccm.domain.com:80 CCM_POST /ccm_system/request TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Request was successful. TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Set a global environment variable _SMSTSLastActionRetCode=5001 TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Set a global environment variable _SMSTSLastActionSucceeded=false TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Clear local default environment TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Let the parent group (Gather Logs and StateStore on Failure) decides whether to continue execution TSManager 22.04.2015 11:36:57 1160 (0x0488)
    The execution of the group (Gather Logs and StateStore on Failure) has failed and the execution has been aborted. An action failed.
    Operation aborted (Error: 80004004; Source: Windows) TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Failed to run the last action: Error in the task sequence. Execution of task sequence failed.
    The operation cannot be completed because other resources are dependent on this resource. (Error: 00001389; Source: Windows) TSManager 22.04.2015 11:36:57 1160 (0x0488)
    MP server http://sccm.domain.com. Ports 80,443. CRL=false. TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Setting authenticator TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Set authenticator in transport TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Sending StatusMessage TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Setting message signatures. TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Setting the authenticator. TSManager 22.04.2015 11:36:57 1160 (0x0488)
    CLibSMSMessageWinHttpTransport::Send: URL: sccm.domain.com:80 CCM_POST /ccm_system/request TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Request was successful. TSManager 22.04.2015 11:36:57 1160 (0x0488)
    Executing command line: X:\WINDOWS\system32\cmd.exe /k TSBootShell 22.04.2015 11:37:31 696 (0x02B8)
    The command completed successfully. TSBootShell 22.04.2015 11:37:31 696 (0x02B8)
    Successfully launched command shell. TSBootShell 22.04.2015 11:37:31 696 (0x02B8)

    MDT Updates for Windows 10 Technical Preview Build 10041
    Если Вам помог чей-либо ответ, пожалуйста, не забывайте жать на кнопку "Предложить как ответ" или "Пометить как ответ".
    http://zalozny.com.ua

  • How configure Windows 8.1 Clients with IE11 for SSO with Kerberos SPNEGO

    We are using BI Publisher OBIEE 11.1.1.7 with SSO Kerberos SPNEGO.
    The Weblogic Server Version is WLS_PRODUCT_VERSION=10.3.5.0
    The SSO is working very well with Clients that are Windows XP or Windows 2003 R2. We had testet wit IE7,IE8 Firefox.
    Now as we become Windows 8.1 Clients with IE11 the Kerberos SPNEGO SSO is not working.
    Please give us advice or a HOW TO Document about the configuration on Windows 8.1 Cllients with IE11 Browser.
    I find many Dokuments related to older Windows Versions for example
    http://www.oracle.com/technetwork/articles/idm/weblogic-sso-kerberos-1619890.html
    but nothing for Windows 8.1 Clients
    Thanks in advance.

    The location for tabs in IE11 browser might be different but the steps are the same :
    Configure Local Intranet Domains
       1. In Internet Explorer, select Tools > Internet Options.
       2. Select the Security tab.
       3. Select Local intranet and click Sites.
       4. In the Local intranet popup, ensure that the Include all sites that bypass the proxy server and Include all local (intranet) sites not listed in other zones options are checked.
       5. Click Advanced.
       6. In the Local intranet (Advanced) dialog box, add all relative domain names that will be used for Oracle WebLogic Server instances participating in the SSO configuration (for example, myhost.example.com) and click OK.
    Configure Intranet Authentication
       1. Select Tools > Internet Options.
       2. Select the Security tab.
       3. Select Local intranet and click Custom Level... .
       4. In the Security Settings dialog box, scroll to the User Authentication section.
       5. Select Automatic logon only in Intranet zone. This option prevents users from having to re-enter logon credentials, which is a key piece to this solution.
       6. Click OK.
    Verify Proxy Settings
    If you have a proxy server enabled:
       1. Select Tools > Internet Options.
       2. Select the Connections tab and click LAN Settings.
       3. Verify that the proxy server address and port number are correct.
       4. Click Advanced.
       5. In the Proxy Settings dialog box, ensure that all desired domain names are entered in the Exceptions field.
       6. Click OK to close the Proxy Settings dialog box.
    What is the error reported by the browser / wls logs ?
    -- Puneeth

  • Can't open secured documents on windows 7 domain client with mandatory profiles.

    While opening certain PDF files we have the problem that the user is presented with a message that he does not have the rights permissions. This happens twice, after that the users gets an empty page with the message the Adobe version might not be up to date. We use Acrobat Pro 10, but this also happens while using Reader 11.0.8. On our windows 2008 terminal services machine this could be fixed by giving the user rights on c:\ to create and remove a file. :O. On windows 7 this doesn't work probably because of UAC. But we've tried every solution to that available on the internet, disabling uac, changing uac options, changing rights on userprofile folders, changing rights on c:\ but to no avail. When using process explorer we can see it wants to create a temp file p328hkl.tmp or something like that on C but it can't and immediattely after is shows the error on screen.
    Anyone who also has this problem or solved it? There are no problems with simple self made pdf files/scans but only with certain types of pdf files for which it tries to create a tmp file.
    Thanks,
    Peter

    Hi Brogers,
    Thanks for your reaction. We do have AppData redirection in place. We redirect AppData to a share on our data server which works perfectly fine for all other applications. The weird thing is that Reader/Acrobat try to write to C:\ which to my knowledge should not happen, is this maybe a fallback because it can’t write to a different location? Users have full control on their own roaming AppData but not on their local AppData that is made by windows itself while copying the mandatory default profile to C:\.
    I might use the wrong term while saying secured documents. I’m talking about a document created by Raet/Youforce a web application for personal administration. The documents can be opened by other viewers than Acrobat/Reader but then only contain the background and not the text. In Acrobat/Reader they do open normally when Acrobat/Reader can create the .tmp file. Otherwise it will not display the file at all. I would attach such a document to see but since it contains certain info I am not allowed to do so.
    I hope we can work out a solution for this.
    Met vriendelijke groet,
    Peter Gerritsen
    Engineer
    AndoBurg BV
    Voorstraat 31
    3931 HB Woudenberg
    T 033 479 40 80
    F 033 479 40 89
    E [email protected]<mailto:[email protected]>
    I www.andoburg.com<http://www.andoburg.com/>
    Als u niet de geadresseerde van dit bericht bent, verzoeken wij u ons hiervan op de hoogte te brengen en het bericht te verwijderen. AndoBurg BV aanvaardt geen aansprakelijkheid voor schade die voortvloeit uit elektronische verzending van informatie. Aan de inhoud van deze e-mail en eventuele bijlagen kunnen geen rechten worden ontleend, tenzij schriftelijk anders is overeengekomen.
    Van: brogers_1
    Verzonden: vrijdag 19 september 2014 20:10
    Aan: Peter Gerritsen
    Onderwerp:  Can't open secured documents on windows 7 domain client with mandatory profiles.
    Can't open secured documents on windows 7 domain client with mandatory profiles.
    created by brogers_1<https://forums.adobe.com/people/brogers_1> in Enterprise Deployment (Acrobat and Reader) - View the full discussion<https://forums.adobe.com/message/6745441#6745441>

  • How to find using SQL query application deployed on win 7 machines with SCCM 2012 server or user installed manually.

    Hi,
    how to find using SCCM SQL query,  application deployed on win 7 machines with SCCM 2012 server or user/technician installed manually. Please let me know.

    Thanks, is it not possible via any script also?
    Like Torsten said, how can you tell the difference between CM12 installed applications and locally installed? Once you can answer that, then you can write report.
    Garth Jones | My blogs: Enhansoft and
    Old Blog site | Twitter:
    @GarthMJ

  • Easy print not working on a 64 bit Windows 8.1 client with Remote Desktop connection version 8.1

    Easy print is not working on a 64 bit Windows 8.1 client with Remote Desktop connection version 8.1 . Printers dont get redirected when you connect to the terminal server. The server we are connecting to has Windows 2008 server.  On 32 bit Windows
    7 and windows XP clients Easy print is working fine and printers get redirected in terminal server.

    I am having the exact same problem. Windows 7 works fine, but 8.1 will not redirect printers. Others said to check local policy terminal services settings and my setting are all set as they should.
    I think Windows 8.1 is not telling the terminal server what printers it has.

  • How to reduce configuration cache file Quota size located in ( C:\Windows\ccmcache ) for all client from SCCM 2012 server

    How to reduce configuration cache file Quota size located in ( C:\Windows\ccmcache ) for all client from SCCM 2012 server
    Thanks in Advance
    NTRao

    Hi,
    There are numerous ways to change the cache size.
    You could deploy a vbscript to a collection of the devices.
    On Error Resume Next
    Dim UIResManager
    Dim Cache
    Dim CacheSize
    CacheSize=20000
    Set UIResManager = createobject("UIResource.UIResourceMgr")
    Set Cache=UIResManager.GetCacheInfo()
    Cache.TotalSize=CacheSize
    Or you could use a configuration item.
    http://blog.coretech.dk/heh/configuration-items-and-baselines-using-scripts-powershell-example/
    You can also use the right click tools by Now Micro on a collection, if all the servers are on this would be the easiest / quickest way.
    http://www.nowmicro.com/recast/right-click-tools/
    http://www.david-obrien.net/2013/02/how-to-configure-the-configmgr-client/
    select SMS_R_SYSTEM.ResourceID, SMS_R_SYSTEM.ResourceType, SMS_R_SYSTEM.Name, SMS_R_SYSTEM.SMSUniqueIdentifier, SMS_R_SYSTEM.ResourceDomainORWorkgroup, SMS_R_SYSTEM.Client from SMS_R_System where SMS_R_System.OperatingSystemNameandVersion like '%6.2%'
    https://msdn.microsoft.com/en-us/library/windows/desktop/ms724832%28v=vs.85%29.aspx?f=255&MSPPError=-2147217396

  • Windows Intune with SCCM 2012 R2.

    Windows Intune with SCCM 2012 R2.
    I am able to download Certificate Signing Request (CSR).
    When I submit CSR file to Apple Push Certificates Portal I get following prompt:
    Do you want to open or save create02fe592d.json (132 bytes) from identity.apple.com?
    I am unable to get the APN Certificate.

    That is a known issue with Internet Explorer and the Apple Website.  If you just go back to the main page where all your certificate are located you can download it from there.
    Jon L. - MSFT - This posting is provided "AS IS" with no warranties and confers no rights.

  • SCCM Server says Forefront Endpoint Protection failed to install update(s)

    I have a single SCCM 2012 SP1 CU4 server running on Windows Server 2012.  I primarily use this for Endpoint Protection and Windows Updates.
    Recently I started seeing a lot of errors in the Endpoint Protection deployments.  This one has me baffled because the Endpoint Protection client on the machine says that it is up-to-date.  However, when I go to
    Monitoring --> Deployments on the server, I see tons of errors that read "Failed to install update(s)."
    Under the "Last Enforcement Error Code" heading, it reads: 
    0x80070643. 
    I have spent several days searching about this, but the only info I can find is about Endpoint Protection
    installation problems.  In my case, though, I have Endpoint Protection installed...it is the
    update(s) that are showing the errors.
    Server screen-shot:
    Client screen-shot:
    Thanks in advance for any help.

    I see these entries starting at 6:19 PM last night and ending at 6:09 AM today:  I put in
    bold what kind of stands out to me. 
    Assignment {7b642d5f-623d-4c44-a902-a414bef0adf7} has total CI = 1    UpdatesDeploymentAgent    5/15/2014 6:19:29 PM    1232 (0x04D0)
    OnPolicyModify for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})...     UpdatesDeploymentAgent    5/15/2014 6:19:29 PM    1232 (0x04D0)
    Starting forced trigger (TriggerActivate) for assignment {7b642d5f-623d-4c44-a902-a414bef0adf7}    UpdatesDeploymentAgent    5/15/2014 6:19:29 PM    1232 (0x04D0)
    Detection job ({F7A501B7-38F4-458B-AA62-F32212D3B614}) started for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:19:29 PM    1232 (0x04D0)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:20:02 PM    1072 (0x0430)
    DetectJob completion received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:20:02 PM    4632 (0x1218)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.2187.0)) ArticleID (2461484) added to the targeted list of deployment ({7b642d5f-623d-4c44-a902-a414bef0adf7})  
     UpdatesDeploymentAgent    5/15/2014 6:20:02 PM    4632 (0x1218)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.2219.0)) ArticleID (2461484) added to the targeted list of deployment ({7b642d5f-623d-4c44-a902-a414bef0adf7})  
     UpdatesDeploymentAgent    5/15/2014 6:20:02 PM    4632 (0x1218)
    DownloadCIContents Job ({8C3E7548-DA29-48EB-B3C3-12B96B31D492}) started for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:20:02 PM    4632 (0x1218)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:20:03 PM    4632 (0x1218)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:20:03 PM    4508 (0x119C)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Progress: Status = ciStateDownloading, PercentComplete = 0, Result = 0x0    UpdatesDeploymentAgent    5/15/2014 6:20:03 PM  
     4508 (0x119C)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Progress: Status = ciStateDownloading, PercentComplete = 0, Result = 0x0    UpdatesDeploymentAgent    5/15/2014 6:20:03 PM  
     4508 (0x119C)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:20:03 PM    4508 (0x119C)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:20:03 PM    4508 (0x119C)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:20:03 PM    4508 (0x119C)
    DownloadJob completion received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:20:03 PM    1128 (0x0468)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.2187.0)) ArticleID (2461484) added to the targeted list of deployment ({7b642d5f-623d-4c44-a902-a414bef0adf7})  
     UpdatesDeploymentAgent    5/15/2014 6:20:03 PM    1128 (0x0468)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.2219.0)) ArticleID (2461484) added to the targeted list of deployment ({7b642d5f-623d-4c44-a902-a414bef0adf7})  
     UpdatesDeploymentAgent    5/15/2014 6:20:03 PM    1128 (0x0468)
    Message received: '<?xml version='1.0' ?>
        <CIAssignmentMessage MessageType='Activation'>
            <AssignmentID>{7b642d5f-623d-4c44-a902-a414bef0adf7}</AssignmentID>
        </CIAssignmentMessage>'    UpdatesDeploymentAgent    5/15/2014 6:37:00 PM    452 (0x01C4)
    Assignment {7b642d5f-623d-4c44-a902-a414bef0adf7} has total CI = 2    UpdatesDeploymentAgent    5/15/2014 6:37:00 PM    452 (0x01C4)
    Assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7}) received activation trigger    UpdatesDeploymentAgent    5/15/2014 6:37:00 PM    452 (0x01C4)
    Detection job ({726D8962-0690-46DB-B9A0-FF5D979AE3CF}) started for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:37:00 PM    452 (0x01C4)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:37:00 PM    620 (0x026C)
    DetectJob completion received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:37:01 PM    4496 (0x1190)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.2187.0)) ArticleID (2461484) added to the targeted list of deployment ({7b642d5f-623d-4c44-a902-a414bef0adf7})  
     UpdatesDeploymentAgent    5/15/2014 6:37:01 PM    4496 (0x1190)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.2219.0)) ArticleID (2461484) added to the targeted list of deployment ({7b642d5f-623d-4c44-a902-a414bef0adf7})  
     UpdatesDeploymentAgent    5/15/2014 6:37:01 PM    4496 (0x1190)
    DownloadCIContents Job ({7EEA627C-B1B3-457D-BE69-6F3A8DDDA692}) started for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:37:01 PM    4496 (0x1190)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:37:01 PM    452 (0x01C4)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:37:01 PM    1648 (0x0670)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Progress: Status = ciStateDownloading, PercentComplete = 0, Result = 0x0    UpdatesDeploymentAgent    5/15/2014 6:37:01 PM  
     1648 (0x0670)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Progress: Status = ciStateDownloading, PercentComplete = 0, Result = 0x0    UpdatesDeploymentAgent    5/15/2014 6:37:01 PM  
     1648 (0x0670)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:37:01 PM    1648 (0x0670)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:37:01 PM    1648 (0x0670)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:37:01 PM    1648 (0x0670)
    DownloadJob completion received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/15/2014 6:37:01 PM    1648 (0x0670)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.2187.0)) ArticleID (2461484) added to the targeted list of deployment ({7b642d5f-623d-4c44-a902-a414bef0adf7})  
     UpdatesDeploymentAgent    5/15/2014 6:37:01 PM    1648 (0x0670)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.2219.0)) ArticleID (2461484) added to the targeted list of deployment ({7b642d5f-623d-4c44-a902-a414bef0adf7})  
     UpdatesDeploymentAgent    5/15/2014 6:37:01 PM    1648 (0x0670)
    CUpdateAssignmentsManager received a SERVICEWINDOWEVENT START Event    UpdatesDeploymentAgent    5/15/2014 10:00:00 PM    3736 (0x0E98)
    Suspend activity in presentation mode is selected    UpdatesDeploymentAgent    5/15/2014 10:00:00 PM    3736 (0x0E98)
    Atleast one user has elected to suspend non-business hours activity when in presentation mode. Checking for presentation mode.    UpdatesDeploymentAgent    5/15/2014 10:00:00 PM    3736 (0x0E98)
    Proceeding to non-business hours activites as presentation mode is off.    UpdatesDeploymentAgent    5/15/2014 10:00:00 PM    3736 (0x0E98)
    Auto install during non-business hours is disabled or never set, selecting only scheduled updates.    UpdatesDeploymentAgent    5/15/2014 10:00:00 PM    3736 (0x0E98)
    A user-defined service window(non-business hours) is available. We will attempt to install any scheduled updates.    UpdatesDeploymentAgent    5/15/2014 10:00:00 PM    3736 (0x0E98)
    Attempting to install 0 updates    UpdatesDeploymentAgent    5/15/2014 10:00:00 PM    3736 (0x0E98)
    No actionable updates for install task. No attempt required.    UpdatesDeploymentAgent    5/15/2014 10:00:00 PM    3736 (0x0E98)
    Updates could not be installed at this time. Waiting for the next maintenance window.    UpdatesDeploymentAgent    5/15/2014 10:00:00 PM    3736 (0x0E98)
    CUpdateAssignmentsManager received a SERVICEWINDOWEVENT END Event    UpdatesDeploymentAgent    5/16/2014 5:00:00 AM    3500 (0x0DAC)
    No current service window available to run updates assignment with time required = 1    UpdatesDeploymentAgent    5/16/2014 5:00:00 AM    3500 (0x0DAC)
    Attempting to cancel any job started at non-business hours.    UpdatesDeploymentAgent    5/16/2014 5:00:00 AM    3500 (0x0DAC)
    Message received: '<?xml version='1.0' ?>
        <CIAssignmentMessage MessageType='EnforcementDeadline'>
            <AssignmentID>{7b642d5f-623d-4c44-a902-a414bef0adf7}</AssignmentID>
        </CIAssignmentMessage>'    UpdatesDeploymentAgent    5/16/2014 6:09:00 AM    2768 (0x0AD0)
    Assignment {7b642d5f-623d-4c44-a902-a414bef0adf7} has total CI = 2    UpdatesDeploymentAgent    5/16/2014 6:09:00 AM    2768 (0x0AD0)
    Deadline received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/16/2014 6:09:00 AM    2768 (0x0AD0)
    Detection job ({41BE2786-E548-429E-9590-5102B1F8DE2A}) started for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/16/2014 6:09:00 AM    2768 (0x0AD0)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/16/2014 6:09:00 AM    4660 (0x1234)
    DetectJob completion received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/16/2014 6:09:01 AM    4660 (0x1234)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.2187.0)) ArticleID (2461484) added to the targeted list of deployment ({7b642d5f-623d-4c44-a902-a414bef0adf7})  
     UpdatesDeploymentAgent    5/16/2014 6:09:01 AM    4660 (0x1234)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.2219.0)) ArticleID (2461484) added to the targeted list of deployment ({7b642d5f-623d-4c44-a902-a414bef0adf7})  
     UpdatesDeploymentAgent    5/16/2014 6:09:01 AM    4660 (0x1234)
    UpdateAssginment Download: CCM_CONTENT_WF_DEADLINE_DOWNLOAD set    UpdatesDeploymentAgent    5/16/2014 6:09:01 AM    4660 (0x1234)
    DownloadCIContents Job ({D484DF2D-C472-478E-A75F-1C50DACF6A5D}) started for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/16/2014 6:09:01 AM    4660 (0x1234)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/16/2014 6:09:01 AM    4660 (0x1234)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/16/2014 6:09:01 AM    748 (0x02EC)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Progress: Status = ciStateDownloading, PercentComplete = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:01 AM  
     748 (0x02EC)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Progress: Status = ciStateDownloading, PercentComplete = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:01 AM  
     748 (0x02EC)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/16/2014 6:09:01 AM    748 (0x02EC)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/16/2014 6:09:01 AM    748 (0x02EC)
    Progress received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/16/2014 6:09:01 AM    748 (0x02EC)
    DownloadJob completion received for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/16/2014 6:09:01 AM    748 (0x02EC)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.2187.0)) ArticleID (2461484) added to the targeted list of deployment ({7b642d5f-623d-4c44-a902-a414bef0adf7})  
     UpdatesDeploymentAgent    5/16/2014 6:09:02 AM    748 (0x02EC)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.2219.0)) ArticleID (2461484) added to the targeted list of deployment ({7b642d5f-623d-4c44-a902-a414bef0adf7})  
     UpdatesDeploymentAgent    5/16/2014 6:09:02 AM    748 (0x02EC)
    Starting install for assignment ({7b642d5f-623d-4c44-a902-a414bef0adf7})    UpdatesDeploymentAgent    5/16/2014 6:09:02 AM    748 (0x02EC)
    ApplyCIs - JobId = {24FEF2A6-EFAB-4675-B3DE-E357BD4D7384}    UpdatesDeploymentAgent    5/16/2014 6:09:02 AM    748 (0x02EC)
    Raising client SDK event for class NULL, instance NULL, actionType 13l, value NULL, user NULL, session 4294967295l, level 0l, verbosity 30l    UpdatesDeploymentAgent    5/16/2014 6:09:02 AM    748 (0x02EC)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Progress: Status = ciStateDetecting, PercentComplete = 0, DownloadSize = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:02
    AM    4660 (0x1234)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Progress: Status = ciStateDetecting, PercentComplete = 0, DownloadSize = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:02
    AM    4660 (0x1234)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Progress: Status = ciStateDownloading, PercentComplete = 0, DownloadSize = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:02
    AM    2788 (0x0AE4)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Progress: Status = ciStateDownloading, PercentComplete = 0, DownloadSize = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:02
    AM    2788 (0x0AE4)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Progress: Status = ciStateWaitInstall, PercentComplete = 0, DownloadSize = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:02
    AM    4660 (0x1234)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Progress: Status = ciStateWaitInstall, PercentComplete = 0, DownloadSize = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:02
    AM    4660 (0x1234)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Progress: Status = ciStateInstalling, PercentComplete = 0, DownloadSize = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:22
    AM    2788 (0x0AE4)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Progress: Status = ciStateInstalling, PercentComplete = 100, DownloadSize = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:22
    AM    4660 (0x1234)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_4fcb1b37-19a1-4c12-a77c-bbe513872a43) Progress: Status = ciStateVerifying, PercentComplete = 0, DownloadSize = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:22
    AM    4660 (0x1234)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Progress: Status = ciStateInstalling, PercentComplete = 100, DownloadSize = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:22
    AM    4660 (0x1234)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17EA00E/SUM_ba89c7f4-5400-4c40-aa1b-aefa5fbdffb2) Progress: Status = ciStateVerifying, PercentComplete = 0, DownloadSize = 0, Result = 0x0    UpdatesDeploymentAgent    5/16/2014 6:09:22
    AM    2788 (0x0AE4)
    CUpdatesJob({24FEF2A6-EFAB-4675-B3DE-E357BD4D7384}): Job completion received.    UpdatesDeploymentAgent    5/16/2014 6:09:51 AM    4660 (0x1234)
    Update (Site_A0C81BE8-8706-4378-B3C3-9149D17
    I did not specifically specify any maintenance windows.  It looks like the default business hours are set on the client though:
    Is this maybe causing my problems???  Is it possible to change that default value from the SCCM console??
    Thanks again for all of your help!

Maybe you are looking for