MBAM 2.0 SP1 Deployment for Windows 8.1 Non TPM machine

Hi ,
how can I use MBAM (all features of MBAM 2.0 SP1) for Windows 8.1 Non TPM Machines ?
Can anyone share the step by step Deployment guide as i am new to MDOP and i have to use MBAM for Windows 8.1 Non TPM machines...
Shailendra Dev

Are you using the Password protector then or are you putting the keys on a USB stick? None of these scenarios are supported by MBAM but you can use at least BitLocker with the password protector to enable BitLocker and get the BitLocker status reported back
to MBAM. However, the other benefits of using MBAM will not be available, such as recovering the keys from the central location using the help desk or self service portal, if needed.
Is there a reason why you do not use BitLocker with TPM enabled machines? All corporate range of Machines have had TPM chips for many many years.
Blogging about Windows for IT pros at
www.theexperienceblog.com

Similar Messages

  • Recovery key from MBAM for non TPM machines

    Hi,
    Since long time am trying to find answer about below query but unlucky , can some one guide me if this is feasiable or not?
    1. I have non TPM Machines and want to use Bitlocker with MBAM.
    2. if I will use the USB flash driver as start-up key during machine start-up than can we get the recovery key from MBAM (self service or helpdesk portal) if I lost the USB flash drive ?
    Shailendra Dev

    Hi,
    For Windows 7 computers TPM is a requirement for Windows 8 / 8.1 it is not, so it depends in what client OS you want to manage.
    See the documentation:
    http://technet.microsoft.com/en-us/library/dn145046.aspx
    Regards,
    Jörgen
    -- My System Center blog ccmexec.com -- Twitter
    @ccmexec

  • Win 7 SP1 Deployment for OEM kind of product.

    HI,
     Got a requirement for Deploying of Win 7 SP1 deployment on new product. Currently We planned to sysprep on refrence image and apply the image . On System boot it ask for Licence and user detail. Is this is right way to Deploy OS for product with proper
    license or some other better way is available.
    Thanks.

    Hi,
    When you run the sysprep /generalize command, the activation clock will automatically reset. You can bypass resetting the activation clock by using the SkipRearm setting in the
    Microsoft-Windows-Security-SPP component. This enables you to run the Sysprep command multiple times without resetting the activation clock.
    What you need to do is make sure your machine is activated prior to sysprep. Then using Windows SIM add the key
    Microsoft-Windows-Security-SPP\SkipRearm to the Generalize phase and set the value to 1 for your unattend.xml file.
    Once you have this key set, you can use sysprep /generalize /oobe /shutdown /unattend:unattend.xml command, and at this time, the SkipRearm key will prevent the activation from being reset.
    For more information about this settings, please refer to
    http://technet.microsoft.com/en-us/library/ff716063(WS.10).aspx
    Andy Altmann
    TechNet Community Support

  • Windows Intune support deployment for windows phone (8.1) *.appx files

    Hi
    We are trying to deploy a windows phone 8.1 appx file with intune (over sccm console). the appx file is signed with a valid symantec certificate.
    the installation of the app fails, either when we upload the file as "Required" (so pushing it automatically to the devices) or when we make the app on the company portal app available. 
    in the sccm console the deployment status says failed -> unkonwn error.
    when we use .xap file of an windows 8.0 app, it works like a charm and the xap file is signed with the same certificate.
    My question is, is there no support for publishing windows phone 8.1 appx files on Intune? Or what can it be?
    Thanks for any hints

    UPDATE
    According to these links and the comments from Mitch Denny, can somebody confirm that .appx files (company apps) cannot be deployed/installed on windows phone 8.1 yet?
    http://blogs.technet.com/b/windowsintune/archive/2014/05/12/what-s-coming-next-with-windows-intune.aspx
    http://blogs.technet.com/b/windowsintune/archive/2014/04/28/availability-of-update-to-windows-intune-for-windows-phone-8-1-and-samsung-knox-standard.aspx
    I would really appreciate if someone can confirm me this, because im struggling with this since days and there is no official statement from MS.
    Thanks

  • MBAM Options for Non TPM Machines

    Hi there,
    We have just installed MBAM 2.5. We also have SCCM 2012 R2 in our environment. We are looking to use Bitlocker on around 500 laptops which are currently a mixture of Windows 7 and Windows 8.1 but with no TPM. (we should begin receiving TPM laptops from next
    year).
    Could someone please point me in the direction of what our options are both for Windows 7 and Windows 8.1 with no TPM as I am not clear on this.
    Many thanks,
    Jay

    Hi,
    for Windows 7 Computers and MBAM they must have a TPM to be managed for a windows 8 / 8.1 you can use MBAM on computers without TPM.
    http://technet.microsoft.com/en-us/library/dn645378.aspx
    Regards,
    Jörgen
    -- My System Center blog ccmexec.com -- Twitter
    @ccmexec

  • MDT Deployment for Windows 8 (Sysprep failes with generalization setting)

    Here's my issue...
    I'm trying to capture and redeploy Windows 8.  In of itself, the capturing and deploying works well.  Except for one thing, I can't default the desktop nor can I default the Start Tiles for the start tiles.  Upon a visit with Microsoft and
    confirmation of a few colleagues, I tried the tutorial listed here, http://msdn.microsoft.com/en-us/library/jj134269, using method 1 the copyprofile.
    I have this set up for the unattended on the MDT deployment, but my problem is the issue that I'm running into which is the failure in sysprep running the /generalize tag.  Whether I use OOBE or Audit results in the same thing.  I have built a
    couple of fresh images as well and sysprep keeps failing.  I've attached the error log below.  So far research has come up with nada, so I can't even getting started on troubleshooting the error. 
    Here's the error log below.
    2012-10-03 14:36:09, Error                 SYSPRP Package Microsoft.VCLibs.110.00_11.0.50727.1_x86__8wekyb3d8bbwe was installed for a user, but not provisioned for all users.
    This package will not function properly in the sysprep image.
    2012-10-03 14:36:09, Error                 SYSPRP Failed to remove apps for the current user: 0x80073cf2.
    2012-10-03 14:36:09, Error                 SYSPRP Exit code of RemoveAllApps thread was 0x3cf2.
    2012-10-03 14:36:09, Error      [0x0f0082] SYSPRP ActionPlatform::LaunchModule: Failure occurred while executing 'SysprepGeneralize' from C:\Windows\System32\AppxSysprep.dll; dwRet = 0x3cf2
    2012-10-03 14:36:09, Error                 SYSPRP ActionPlatform::ExecuteAction: Error in executing action; dwRet = 0x3cf2
    2012-10-03 14:36:09, Error                 SYSPRP ActionPlatform::ExecuteActionList: Error in execute actions; dwRet = 0x3cf2
    2012-10-03 14:36:09, Error                 SYSPRP SysprepSession::Execute: Error in executing actions from C:\Windows\System32\Sysprep\ActionFiles\Generalize.xml; dwRet = 0x3cf2
    2012-10-03 14:36:09, Error                 SYSPRP RunPlatformActions:Failed while executing SysprepSession actions; dwRet = 0x3cf2
    2012-10-03 14:36:09, Error      [0x0f0070] SYSPRP RunExternalDlls:An error occurred while running registry sysprep DLLs, halting sysprep execution. dwRet = 0x3cf2
    2012-10-03 14:36:09, Error      [0x0f00a8] SYSPRP WinMain:Hit failure while processing sysprep generalize internal providers; hr = 0x80073cf2

    Did you ever figure out how to make this work?
    I have the same problem with my Win8 64 image -- as soon as I installed the 11 Microsoft Metro app updates from "Store", I can no longer sysprep my image without getting the same "fatal error" (with the exact same log -- except for a different "Package"
    listed):
    2012-10-10 15:58:47, Error                 SYSPRP Package Microsoft.WinJS.1.0_1.0.9200.20512_neutral__8wekyb3d8bbwe
    was installed for a user, but not provisioned for all users. This package will not function properly in the sysprep image.
    2012-10-10 15:58:47, Error                 SYSPRP Failed to remove apps for the
    current user: 0x80073cf2.
    2012-10-10 15:58:47, Error                 SYSPRP Exit code of RemoveAllApps thread
    was 0x3cf2.
    2012-10-10 15:58:47, Error      [0x0f0082] SYSPRP ActionPlatform::LaunchModule: Failure occurred while executing
    'SysprepGeneralize' from C:\Windows\System32\AppxSysprep.dll; dwRet = 0x3cf2
    2012-10-10 15:58:47, Error                 SYSPRP ActionPlatform::ExecuteAction:
    Error in executing action; dwRet = 0x3cf2
    2012-10-10 15:58:47, Error                 SYSPRP ActionPlatform::ExecuteActionList:
    Error in execute actions; dwRet = 0x3cf2
    2012-10-10 15:58:47, Error                 SYSPRP SysprepSession::Execute: Error
    in executing actions from C:\Windows\System32\Sysprep\ActionFiles\Generalize.xml; dwRet = 0x3cf2
    2012-10-10 15:58:47, Error                 SYSPRP RunPlatformActions:Failed while
    executing SysprepSession actions; dwRet = 0x3cf2
    2012-10-10 15:58:47, Error      [0x0f0070] SYSPRP RunExternalDlls:An error occurred while running registry
    sysprep DLLs, halting sysprep execution. dwRet = 0x3cf2
    2012-10-10 15:58:47, Error      [0x0f00a8] SYSPRP WinMain:Hit failure while processing sysprep generalize
    internal providers; hr = 0x80073cf2
    The app updates are *coming from Microsoft* -- so why would I need to provision them (according to that article?)  
    This seems like a bug...
    (The workaround, of course, is to just not update Metro apps on my main image, but that seems rather silly to not be
    allowed to do that...)

  • Is this configuration fine for Windows and Mac on same machine?

    I have a MacBook, which I use for most everything except developing Windows software, which I have an HP desktop Vista 64bit machine for. Windows is such an inferior environment along with extremely poor tech support (hardware/software) that I want to ditch the HP for a Mac Pro. The MP will run Parallels so that I can keep developing Windows software. I also want to watch DVDs from this machine, maybe some graphics editing and XCode writing. The Windows software development environment will need at least 2GB RAM and would be nice to put it on a dedicated HD. The Mac environment is probably fine with 2GB RAM. The following will always be running:
    - Parallels with Windows development environment loaded
    - DVD program
    - Safari
    - Not sure what else at this point. Hopefully not much. Maybe just extra horsepower as needed.
    Does the following configuration sound reasonable for the above?
    $3149
    One 2.8GHZ Quad-Core Intel Xeon
    4GB (4x1GB)
    500GB 7200-rpm Serial ATA 3Gb/s
    500GB 7200-rpm Serial ATA 3Gb/s
    ATI Radeon HD 2600 XT 256MB
    One 16x SuperDrive
    Apple Wireless Mighty Mouse
    Apple Wireless Keyboard (English) + User's Guide
    AirPort Extreme Card (Wi-Fi)
    Is Leopard included with a Mac Pro? I see Mac OS X Server v10.5 as an option for $500, which I don't need.
    There will probably be a 1TB Time Capsule on the network as well. Thanks.

    The Mac Pro does need more memory than the laptop (MacBook) or desktop (iMac) to feed the system. The ideal is to fill all 8 DIMM slots to optimize memory bandwidth. The next model (mid 2009? we expect an announcement in January) will likely support DDR3, meaning 6GB. 4GB is just minimum and for graphics or to get the most out of it, 8GB and even more. This isn't XP or even Vista 64-bit, when it comes to memory, it gets put to use, CS3 or CS4 make great use in improving performance.
    OWC is OtherWorldComputing and known as http://www.macsales.com great Mac support and prices on memory and drives (and memory MUST be Mac Pro certified). All of the upgrades except cpu are "DIY" and very very easy.
    Hard drive options:
    http://eshop.macsales.com/item/Western%20Digital/WD1001FALS/
    http://eshop.macsales.com/item/Western%20Digital/WD3000HLFS/
    http://eshop.macsales.com/item/Western%20Digital/WD6400AAKS/
    http://www.barefeats.com/harper14.html
    http://www.barefeats.com/hard103.html
    Memory:
    http://www.barefeats.com/harper3.html
    http://eshop.macsales.com/shop/memory/Mac-Pro-Memory
    Guide to Mac Pro configuration and performance:
    http://macperformanceguide.com/
    Support article and manuals:
    http://www.apple.com/support/macpro/
    http://support.apple.com/manuals/#macpro

  • Adobe Flash Player - No Sound in Video - Internet Explorer Flash Player for Windows 8.1 (64-bit machine)

    I have tried using volume on other video types, such as YouTube, and it works fine, but Flash volume on ads and other sites does not work. What is the Adobe-recommended solution to the problem? Thank you.

    Hi, We could not reproduce the issue. Which Flash version are you using?

  • Where are the T440s NFC drivers for windows 7?

    There are NFC drivers for windows 8, but none listed for windows 7. Is this something that will be corrected soon, or is it just not supported on windows 7?

    Download the pdf version of the manual.
    Much easier to find stuff than the online version.
    Top right corner:
    http://help.adobe.com/en_US/PremierePro/4.0/index.html?trackingid=DYNQG
    The Preferences are located under Edit.
    Message was edited by: Ann Bens

  • ETA for Windows 8 Thinkvantage software and drivers?

    Hello,
    I realize Windows 8 just went gold at the beginning of the month, but what is the release plan for drivers and software for the ThinkPads?  I'll have the released product next Wednesday when it hits the MSDN download center.
    Are we going to have to wait until general availability + 30 days or what?  That would be after Thanksgiving.
    I am mostly interested in Power Manager, power management driver, hotkey support, and a few other things. What is Lenovo shooting for as a release plan?
    Thanks,
    Thor

    Blue_Frog wrote:
    Well the Power Manager for Windows 8 looks to have gone to the released stage for Windows 8.  (non-beta)
    http://support.lenovo.com/en_US/downloads/detail.page?&LegacyDocID=MIGR-70967 
    Hopefully more to follow soon.
    -Blue Frog
    For ThinkCentres, at least. ;-)
    English Community   Deutsche Community   Comunidad en Español   Русскоязычное Сообщество
    Community Resources: Participation Rules • Images in posts • Search (Advanced) • Private Messaging
    PM requests for individual support are not answered. If a post solves your issue, please mark it so.
    X1C3 Helix X220 X301 X200T T61p T60p Y3P • T520 T420 T510 T400 R400 T61 Y2P Y13
    I am not a Lenovo employee.

  • Username and password for Windows doesn't work for Safari

    I just installed Safari 3.0.3 for windows under WindowsXP on local machine. But I have problem access local IIS.
    Here is what I did:
    1. type http://localhost in Safari
    2. I get a pop up login window says "To view this page, you need to log in to area localhost on localhost:80",
    3. I entered my username and password to Windows, then "Enter"
    4. The pop up window comes back, it says "the name and password entered for are localhost on localhost:80 is incorrect."
    I don't see this problem in IE or Firefox on the same machine. In Firefox, it pops a similar window ask for username and password, I entered the same username and password to Windows, it works. But in Safari, it doesn't.
    I am wondering if anyone knows how to solve this problem. thanks.

    Hi,
    i've couple of ideas that might help...
    1:
    just wandering are either of you guys accessing the internet via a proxy server? if so i suspect that Safari is not by bypassing local addresses and hitting the proxy server first.
    if this is the case, Safari should respect the same settings that IE does, so try setting IE and/or FF to bypass the proxy for local address/servers - and see if Safari now works...
    2:
    also, the text box that ask's you for your password, does it say on it somewhere, something like, "password will be sent clear" or "password will be sent encrypted"
    i seem to get a similar problem, but with accessing our work ISA server, my localhost is fine btw. Anyway it might be the case the safari is trying to send a clear text password to an encrpyted password request or vica-verca (sp?) - soooo try setting your IIS to accept clear/basic authentation as well at NT Auth/Encrypted
    ok, hope that helps, and make sense

  • Back up for windows

    is it possible to make automatic backups for windows-based computers with time machine?

    TIme Machine is Mac only software. It is the smarts of the whole Mac backup system. The TC is the dumb as a board hard disk inside a wireless router. If you mean Time Capsule, yes, you can do automatic backups to Time Capsule.
    You need to get the computer setup to access the TC as a network drive. This can be problematic with Windows 8.. do this part before worrying about the other parts.
    Once you have network access to the TC disk.. you need a software for auto backup. Home edition OS since vista do not have the ability to use network drives for the built in MSbackup. Only pro and ultimate versions. This brilliant piece of marketing bought to you by a company who cares about your data.. cough.. gollum.. gollum.. !
    Windows 8 I have no idea.. it is and hopefully will remain a mystery to me. I abandoned ship at vista.. any company prepared to ship that rubbish... !!
    Anyway.. buy a network enabled backup software for windows.. there is probably 10,000 of them on the market. I use Macrium Reflect .. free to do full disks..
    Genie time line is a Time Machine like backup but pricey.

  • Configuration Manager 2012 SP1 for Windows XP\Win 7\Win 8\Win 8.1 to Windows 8.1 Update 1

    Hi Team,
    We have Configuration manager 2012 SP1 and we have requirement to migrate winXP\Win7\Win8\Win8 systems to Windows 8.1 update 1. We are looking for supporting replace, refresh and baremetal OS deployments. Can anyone give some pointers for things we need
    to take care while planning approach for migrations. OS image for windows 8.1 update 1 are created through MDT 2013 and we are planning to use Config manager 2012 SP1 for deploying these images with above scenarios.
    Regards,

    More info:
    Operating System Deployment in Configuration Manager
    http://technet.microsoft.com/en-us/library/gg682018.aspx
    OSD in System Center 2012 Configuration Manager
    http://www.microsoft.com/en-us/download/details.aspx?id=42959
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • SP1 for Windows 7 via Software Update (SCCM)

    Hi,
    I was wondering if there are any known issues of deploying Service Pack 1 for Windows 7 via Windows Updates? I was planning to deploy SP1 but wanted to make sure if there are not any potential issues in doing that.
    Thanks

    There is nothing wrong with using the software updates feature for deploying service packs, as it will simply do its job. It's more that I prefer to keep service packs out of the software updates to prevent any issues with (accidental) deployments.
    My Blog: http://www.petervanderwoude.nl/
    Follow me on twitter: pvanderwoude

  • System task 'policyevaluator_unlock ' returned error code 0x8000fff in windows pacth deployment on windows 7 by sccm 2012 Sp1

    hi All,
    I have faced mentioned error in Win7's ccmexec.log file doing windows pacth deployment on windows 7 by sccm 2012 Sp1
    system task 'policyevaluator_unlock ' returned error code 0x8000fff
    Kirpal Singh

    Thanks for reporting this symptom. We investigated and found that this error occurs when user unlocks the workstation. Due to this error, ccmexec service doesn’t request for user required policies when user
    unlocks the workstation. We will investigate and address this symptom. Other than user unlock, all other user policy scenarios will be functioning as expected. The client will process user policies when user logs on as well as in the regular user policy polling
    schedule”.
    BC

Maybe you are looking for

  • Is there a way to extract information from a registered schema ?

    Hello, with the aid of the XSOM project in java.net, and using the following after I loaded the appropriate jars and creating the wrapper PL/SQL CREATE OR REPLACE AND RESOLVE JAVA SOURCE NAMED GMS10.XSOMNAVIGATOR AS import java.util.Vector; import co

  • Graphical message mapping

    Hello Expert I am woking in IS retail Outbound Scenario for article master  where enhancement segment E1WXX01 repeat multiple time and contain different -2 value  and I want to collect that different value in different Target filed  Suppose When firs

  • Debugging mode only

    I'm new in flash and am having a problem with an mpeg file. I downloaded a music video from lth web and encoded it using Flash 8 video encoder. then loaded the file into flash 8. First, the video plays with no sound. 2nd, if I debug the video I get b

  • Add user in ACS with limited access

    Dear I have low experiance with cisco ACS So kindly i need help to add user to The ACS which has limited access to my network Switches ( As Show only not to change configuration ) Also how to take backup for the ACS Database Thanks,

  • Embed command and Connect and Captivate solutions

    1.    How do I reference a Connect address (asset) such as from the Connect server that don't end in an html file using the embed command in html so that the content shows on my web page? a.    I tried the flash object and movie in dreamweaver CS3 bu