FEP 2010 Admin Template Breaks GPResult /H on SCCM 2012 clients

We have both FEP 2010 clients, which are being managed by a GPO created from the FEP2010 Admin Template in our Central store, and SCCM 2012/SCEP clients which are being managed by
SCCM but we have noticed when running GPResult /h on the SCCM clients, you get an error in the Administrative Template section:
An error has occurred while collecting data for Administrative Templates.
The following errors were   encountered:
Registry   value "%windir%\SoftwareDistribution\Datastore\Logs\Edb.chk" is of   unexpected type.
We have discovered the SCCM/SCEP client local policy creates the exclusion paths in the registry as a DWORD but the FEP2010 Admin Template creates the exclusion paths
as a REG_SZ on the FEP 2010 clients. When you run GPResult /h, the templates from the Central Store are used and since the value types are different on the SCCM/SCEP 2012 client, GPResult /H fail.
The current work-around is to create a GPO using the FEP 2010 Admin Template with the exclusion paths that are the same as your SCCM 2012 settings and apply that GPO to the SCCM Clients. That changes the registry keys from DWORD to REG_SZ
and GPResult start working again!!
Running GPResult /Z also works!! 
Any one else experience this behavior?

Hi,
I tried and found that the value type is different too. The DWORD value for Forefront Client also works, so the workaround you are currently using is applicable. Anyway, I will record the situation that the ADMX template has a different value type with SCEP
policy value.
Juke Chou
TechNet Community Support

Similar Messages

  • Package seems to break when distributed with SCCM 2012

    Hello.
    I made a package with an old Java version and a link to the locally installed IE, that opens a special webpage.
    When i install this manually with the
    AppV_DeployNPublish tool on my testmachine (that is a copy of a domain computer), the package works. It opens the webpage and uses the Java in the package (checked with ProcessExplorer). I can even upgrade the java or delete it and it works.
    But when we deploy it with the SCCM 2012 to a domain computer, tha package seems to break. It opens the webpage but uses the local installed Java (checked again with ProcessExplorer), that ends with the software doesn't work. We must use an old java version
    to get the software to function properly!
    We are using the App-V 4.6.2 version...
    Why is it like this?
    Regards,
    Peter

    To properly isolate Java you need to make sure the AppData\LocalLow\Sun folder is part of your App-V package. Also adding the -noframemerging switch to the IE command line can help as sometimes it likes to latch onto the IE process already running outside
    the bubble rather than starting a new one.
    Lots more info here:
    http://packageology.com/2014/02/sequencing-java-the-definitive-guide-part-1
    Dan Gough - UK App-V MVP
    Blog: packageology.com
    Twitter: @packageologist
    LinkedIn

  • Office Admin Templates

    Not sure if I should be posting this here or in a Group Policy forum; however, I'll try here first (apologies if I am wrong)
    I've applied the Office 2010 and Office 2013 Admin Templates to the PolicyDefinitions directory on our network
    When I go to set  under the User Config\Admin Templates\Microsoft Outlook 201x\Outlook Social Connector section it comes up as Extra Registry Settings.
    Do I have to use an ADM template for this instead to have it come up a tad more proper?

    Not sure if I should be posting this here or in a Group Policy forum; however, I'll try here first (apologies if I am wrong)
    I've applied the Office 2010 and Office 2013 Admin Templates to the PolicyDefinitions directory on our network
    When I go to set  under the User Config\Admin Templates\Microsoft Outlook 201x\Outlook Social Connector section it comes up as Extra Registry Settings.
    Do I have to use an ADM template for this instead to have it come up a tad more proper?
    "Extra Registry Settings" appears, when you have settings defined in a GPO, but the machine performing RSoP (or gpresult or GPMC) does not have access to the updated Admin Template.
    Your scenario can occur, if you are using a Central Store.
    Are you using a CS?
    Are you using an older OS to execute the RSoP/gpresult/GPMC ?
    (older OS = older than Vista. WinXP and WS2003 can't deal with ADMX at all. If you are using older OS, you *could* use ADM there, but ADM has other negative implications...)
    [Yes, this is more of a GP question, rather than Office. This symptom occurs wherever there are templates-not-found. The old ADM model solved that issue in a not-very-pretty way, i.e. by copying the ADM files into *every* GPO :( ]
    Don
    (Please take a moment to "Vote as Helpful" and/or "Mark as Answer", where applicable.
    This helps the community, keeps the forums tidy, and recognises useful contributions. Thanks!)

  • FEP 2010 Implementation Notes/Concerns

    My perspective is from a large enterprise with SCCM 2007R3, no SCOM, currently running Symantec.
    I realize this is the first release with SCCM integration but I feel a few notes should be posted to either point me in the right direction for information or to better the product if my findings are correct.
    Current FEP 2010 findings:
    SCCM Integration:
    Only partial integration with SCCM (policies, collections, reports) Doesn't use the existing CM distribution points for definition distribution
    Scaling:
    Appears to be built for small to medium SCCM sites as the only automated definition delivery systems out of the box don't scale well.
    Automation relies on WSUS or Windows Update
    If you use UNC/DFS for definition updates you have to build the download and replication system - in this configuration there is no log of the definition transaction and its source on the clients. 
    WSUS and Windows Update implementations appear to be the only way to utilize delta definitions so UNC methods require full downloads.
    Alerting and Reporting:
    Email alerts don't give path and file nor accurate/full remediation detail, the only way to get detail is event log or SCOM
    No configuration for what information email alerts contain
    Alerts only once per 24 hour period per node without the ability to configure
    Alerts state action required even when the threat has been quarantined or deleted from the system and no additional malware or remediation is needed (specific test was with 22 malware components on the desktop,
    alureon file was one that showed this failure even though it never infected the system)
    Relies on SCOM for the optimal alerting and reporting
    Some built in reports don't appear to populate properly
    Policies:
    Although there are decent policy templates and CM integration, the policies aren't cumulative, they don't support layered/multiple policies
    XP Support:
    NIS (Network Inspection Service) requires WFP  = no Windows XP support
    Client Interface:
    In the client interface there is no way to view overrides or definition update configuration
    If UNC definition updates are used, the client interface doesn't update its last checked time

    This is old post and there have been several changes in FEP, now the successor of FEP is System Center Endpoint Protection (SCEP) and several things been improved. Try reproduce your issue in SCEP and if problem persist, please post it as a new question.
    I believe most of your issues been addressed in SCEP. However things like support for Windows XP is no longer available because support for Windows XP already ended.

  • FEP 2010 install on Windows server 2012 R2

    I am trying to install FEP 2010 client on Windows server 2012 R2  from 2007 Server ( SP2 R3)
    FEP deployment package fails to install. Error in execmgr is 
    Program exit code -2147156220.
    Is there a way of installing FEP 2010 client on Windows Server 2012 R2 from SCCM 2007 ?
    Thanks

    Hi,
    Are you running FEP 2010 update rollup 1?
    https://blogs.technet.com/b/configmgrteam/archive/2013/09/16/support-questions-about-win-8.1-and-winsvr-2012-r2-for-configmgr-and-endpoint-protection.aspx
    And the latest version of the FEpinstall.exe which is updated with this hotfix
    http://support.microsoft.com/kb/2907566/en-us
    Regards,
    Jörgen
    -- My System Center blog ccmexec.com -- Twitter
    @ccmexec

  • FEP 2010 installation on Windows server 2012

    Hi all,
    Is there any step- by step guide to install FEP 2010 on windows server 2012 R2?
    We need to have this in place till the time, we get our FEP upgraded.
    Regards

    Hi,
    It seems that you can only follow the official document to install FEP on Windows server 2012 R2.
    Please verify that your environment meets the prerequisites before installation.
    http://technet.microsoft.com/en-us/library/gg412482.aspx
    Best Regards,
    Joyce
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • How to enable the Exchange 2010 Admin Audit logs in Event Viewer

    How to enable the Exchange 2010 Admin Audit(Mailbox Auditing) logs in Event Viewer.
    - Sivashankar. Please mark as answer/useful if my contribution is helpful

    Hi Siva,
    We could execute the command below to view Administrator Audit Logging settings:
    Get-AdminAuditLogConfig
    If it is not enabled, please run the command below:
    Set-AdminAuditLogConfig -AdminAuditLogEnabled $True
    In addition, here are some references for you to utilize this feature:
    Configure Administrator Audit Logging :
    http://technet.microsoft.com/en-us/library/dd335109(v=exchg.141).aspx
    Search the Administrator Audit Log :
    http://technet.microsoft.com/en-us/library/ff459262(v=exchg.141).aspx
    Regards,
    Rebecca Tu
    TechNet Community Support

  • Using SharePoint 2013 Document Library for Office 2010 Workgroup Templates

    Dear all,
    we are about to introduce SharePoint 2013 and are looking for a way to use it as location for our Office 2010 workgroup templates. But when I try to configure it with in Word options it tells me that URLs are not allowed here.
    I've searched this forum but saw no thread that has a solution so far.
    So I just want to know if anyone implemented this feature or even has an idea that could work...
    Thank you in advance,
    Uwe

    Hi,
    Based on my tested in my environment ( Word 2010 & Share Point 2013), we can't point to the SharePoint library URL directly with Workgroup Templates.
    Please try the workaround:
    Sync the SharePoint site libraries to local disk.
    http://office.microsoft.com/en-us/support/sync-onedrive-for-business-or-sharepoint-site-libraries-to-your-computer-HA102832401.aspx
    Set the Workgroup Template to a local drive (to create the reg key)
    Open regedit and set the location to the mapped drive:
    Setting Name: SharedTemplates (Type REG_SZ)
    Reg Key: HKEY_CURRENT_USER\Software\Microsoft\Office\14.0\Common\General
    Quote From:
    http://social.technet.microsoft.com/Forums/sharepoint/en-US/93f2e50b-9af7-43ac-8151-ea66072afc5b/how-do-i-get-ms-word-to-look-at-sharepoint-for-workgroup-templates?forum=sharepointadminlegacy
    http://sharepointfeaturesandfailures.blogspot.com/2010/11/mapping-office-shared-template-location.html
    http://www.experts-exchange.com/OS/Microsoft_Operating_Systems/Server/MS-SharePoint/Q_27950770.html
    http://www.endusersharepoint.com/EUSP2010/2010/07/01/consuming-sharepoint-content-types-in-office-2010/
    Please Note: Since the web site is not hosted by Microsoft, the link may change without notice. Microsoft does not guarantee the accuracy of
    this information.
    Regards,
    George Zhao
    TechNet Community Support
    It's recommended to download and install
    Configuration Analyzer Tool (OffCAT), which is developed by Microsoft Support teams. Once the tool is installed, you can run it at any time to scan for hundreds of known issues in Office
    programs.

  • FEP 2010

    Hi,
    I have few queries in FEP 2010
    1. Conficker virus is frequently reappearing on the FEP clients even after removal. How to get rid of this completely.
    2. Unable to specify the override on the policy as it says "the specified threat could not be found in the definitions. Verify that forefront endpoint protection has the most up to date definition" even though the definitions are up to date.
    3. Frequent failure of
    SQL Server Scheduled Job 'FEP_GetNewData_FEPDW_XXX' . as per the article
    http://blogs.technet.com/b/clientsecurity/archive/2011/01/24/fep-data-collection-job-fails-periodically.aspx  it says
    known issue. Does installing update rollup1 fix this issue.
    4. Reporting part- The subreports  (antimalware protection history) are showing when we select  report time span for
    DAY  but when we select it as WEEK its displaying with error "Subreport could not be shown". As seen from article
    http://blogs.technet.com/b/clientsecurity/archive/2011/05/19/forefront-endpoint-protection-fep-2010-fep-reports-may-not-display-properly.aspx  Does installing Cumulative Update Packages for Microsoft SQL Server 2008 solves this issue.

    Enforce an update and run a full system scan in those infected clients and if problem persist, use Windows Defender Offline and boot into those PCs and run a full system scan:
    http://windows.microsoft.com/en-US/windows/what-is-windows-defender-offline
    Make sure Windows Update is running and they are update.

  • FEP 2010 - Email alerts not sended (Test-Emails are Successful)

    Hello,
    I got a FEP 2010 environment that is integrated with SCCM 2007.
    The "Test email alert" is sent successfull. But there is no email-alert sent when a FEP-client gets MallWare. (The MallWare is only removed and this is shown in the event viewer of the client
    & the reports on the FEP Server).
    Worth to meantion is that the Alerts stopped to work after a reinstall of IIS and Reporting Services.
    In the Event Viewer of the server running FEP, the "Forefront Endpoint Protection" log keep saying:
    Error, FepSrv, 3004
    Alerts manager failed
    Error recieved:
    MalwareDetectionAlertResultComputerName
    And one/two minutes later it says:
    Information, FepSrv, 3005
    Alerts manager succeeded after failure
    I have tried the "FEP Best Practices Analyzer (BPA)" and I got the result "0 items NonCompliant" and it showed that Alerts where configured correctly.
    I don't know what more to troubleshoot, do you have any ideas?
    Best Regards,
    Anders

    Hi Jörgen,
    Thank you for the answer, but the SQL Agent is up and running and there's no errors.. 
    The workflow seems to work properly, except the "FEPSrv" who can't find events that would trigger alerts.
    (If I run a report on the FEP-server, the report contain info about the clients who's been exposed to MalWare - And MalWare info)
    The "Update Rollup 1 for forefront endpoint protection 2010" ( http://www.microsoft.com/en-us/download/details.aspx?id=26583 )  has not been implemented, can this be
    a possible reason to why the alerts not function properly?
    Regards,
    Anders

  • FEP 2010 in uninstalling on startup

    Hello, I've got a problem. When I start my computer, the FEP 2010 is completely disappearing from my computer. I scanned my computer with malwarebytes and scanbot, but they didn't find nothing. Can you help me?

    Hi,
    About event log.
    http://windows.microsoft.com/en-hk/windows/open-event-viewer#1TC=windows-7
    Best Regards,
    Joyce
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Office 2010 Administrative Templates - Missing Policies

    I have an Office 2010 GPO that needs to enable a policy called "Disable username and password" located at:
    Computer Configuration --> Admistrative Templates --> Microsoft Office 2010 (Machine) --> IE Settings
    It seems that policy, and any policy that should be there, does not exist.
    I have added the admistrative template (.adm) files  for the Office 2010 32-bit version. I have even added the .admx files to \\mydomain\sysvol\mydomain\Policies\PolicyDefinitions as well as added .adml files to "" ""\en-us.
    Is there a step that I missed? Any help would be appreciated!
    Thanks,
    Jasmin

    Hi Jasmin,
    Before going further, I want to confirm where we got the administrative template files. Besides, we can follow the path of the central store to open
    the admx file of Office 2010 to check whether some files are missing.
    Regarding Administrative Template files for Office 2010, the following article can be referred to for more information.
    Office 2010 Administrative Template files (ADM, ADMX, ADML) and Office Customization Tool
    http://technet.microsoft.com/en-us/library/cc178992(office.14).aspx
    In addition, we can try downloading the files from the following link.
    Office 2010 Administrative Template files (ADM, ADMX/ADML) and Office Customization Tool download
    http://www.microsoft.com/en-us/download/details.aspx?id=18968
    Best regards,
    Frank Shen

  • Why do my templates break whenever I load a stylesheet?

    My page templates break any time I load a stylesheet. If I don't use a template or use one that doesn't have a stylesheet attached to it my products and catalog show up just fine. What's going on?
    http://toffee01.businesscatalyst.com/order-test.html  This one uses a template that loads a stylesheet and the bc content doesn't render.
    http://toffee01.businesscatalyst.com/order2.html   This one doesn't use a template and the content renders.

    Hi Liam,
    Thanks for your response. I want to use the built-in e-commerce capabilities of bc. The onepoundbox.html page is simply a placeholder to guide me when I apply styles to the bc layout for products.
    When I try to use BC tags for the catalog or product {module_catalog,####} the dynamically-generated content doesn't seem to render if I have any stylesheet applied to the template.
    If I remove the template, the content renders.
    Here's the code in the editable region of my page:
      <h1>Catalog Page</h1>
      <p>{module_catalogue,192388}</p>
    When I load the page: http://toffee01businesscatalyst.com/catalog.html
    http://toffee01.businesscatalyst.com/catalog.html
    the catalogue doesn't show up. I don't understand why.

  • Template breaks when viewing Blog Post Details Layout

    I've made a new ECommerce site with my own template (HTML en CSS). On the Blog Post List is my new template. But when I click on the title or permalink, Then my template breaks and all I see is the text from my template and the blog post detail. What can I do?
    Regards,
    A.H. Bakker

    Yes, just as I suspected.  A lot of your CSS, JS and IMAGE assets are referenced incorrectly in your page template or page.
    Right now, in your page template you are referecing IMG elements with a "relative URL":
    <img src="images/myimage.jpg"/>
    That will work fine on the homepage and first-level pages like "/" and "/blog" because the browser will attempt to load:
    http://yoursite.com/images.myimage.jpg
    But, if like on your blog detail pages which are located deeper in the websites folder structure "/blog/nog-maar-eentje" since this URL places you on the "nag-maareetje" page inside the "blog" folder, your relative URL will lead the browser to try and load
    http://yoursite.com/blog/myimage.jpg
    That is not the correct location for our images folder which is directory in the site's root folder.  To avoid this issue, you need to update your references to all images that's SRC attribute start with "images/" and change it to a "site relative URL" simply by prepending a "/" at the beginnging of the SRC attribute:
    <img src="/images/myimage.jpg"/>
    You'lll need to replicate this process for your CSS and Javascript references too. CSS references will look like:
    <link href="css/style.css" rel="stylesheet" type="text/css" />
    Becomes:
    <link href="/css/style.css" rel="stylesheet" type="text/css" />
    And javascript:
    <script type="text/javascript" src="js/lib.js"></script>
    Becomes
    <script type="text/javascript" src="/js/lib.js"></script>
    Anywhere that a reference to a javascript, stylesheet or image starts without a slash, "/" and just begins with the folder or asset ("images/...", "myimage.jpg") are relative URLs. You'll also see URLs that are absolute and those are URLs in your code that start with "http://yoursite.com" or "http://yoursite.businesscatalyst.com". Those you don't have to worry about since they are absolute and won't get mucked up when you are trying to load those from page within your site.
    After you edit your page templates you might need to fix the same problem in your pages that are in a subfolder of your site.

  • Deploying SCEP 2012 over existing FEP 2010

    I need to upgrade FEP 2010 to SCEP 2012 through SCCM. FEP was installed via SCCM 2007, and machines will not upgrade to the SCEP client. New builds pick up SCEP without incident from Config Manager.
    I've read about a migration process from 2007 to 2012, but the docs aren't clear.
    I have build an Application using FEPInstall.exe, then used the Supersedence option to uninstall. The Application deploys to the workstation, but sits in a "Waiting for content" category under Monitoring with a status of "In Progress"
    Does anyone have any experience with this process, and can you share the steps involved with migrating?

    Hi,
    >>You mentioned the Forefront Endpoint Policy. Are you referring to SCCM policy, or a group policy?
    He is referring to SCCM Policy. SCCM Console->Administration -> Client Settings -> properties -> Endpoint Protection.
    >>As of this morning, the Software Center is now showing an Installation Status of Downloading. Sitting at 0%.
    Please check CAS.log, LocationServices.log, ContentTransferManager.log and DataTransferService.log on the client. (C:\Windows\CCM\Logs)
    Best Regards,
    Joyce
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

Maybe you are looking for