SCCM 2012 R2 - Bitlocker PIN not Suspending when performing patching

Hello,
After upgrading to R2 version of SCCM, when applying
patching to our client machines, even with the "Suspend Bitlocker PIN
entry on restart" "Always" on, Bitlocker is not suspending.
This worked perfectly in SCCM RTM and SP1 versions.
Is there any configuration or patch to solve this issue?
Regards,
Eduardo Sousa

Take a look at rebootCordinator.log. The reboot must be triggered by SCCM client and the policy must already be applied to Client.
Juke Chou
TechNet Community Support

Similar Messages

  • [SOLVED]Gnome 3.4 is not suspending when the lid is closed.

    Hey..
    Since upgrading to gnome 3.4.1, my laptop does not suspend when the lid is closed.
    I have read this this thread without getting a clear answer...
    I have checked the setting in gnome tweak tool, and they are both set to "Suspend"
    The laptop has no problem suspending, if i run the command, or choose the option in the menu to the right.
    Is this a bug ?
    What can i do to fix it. ?
    Last edited by Munken (2012-06-20 05:54:08)

    See this thread for updates on the problem.

  • SCCM 2012 Software Metering is not working

    SCCM 2012 Software Metering is not working in our environment. Other than software metering, reports work just fine.
    I have created a few simple software metering rules with “Acrobat.exe” and “Outlook.exe”. Rules are enabled. Rules were on at least 6 months.
    When I go to software metering reports, Month parameter value is empty and I can’t choose any value.
    I ran runmetersumm.exe on our server, it did not work as intended. :
    Summarizing data up to 0 hours old.
    File Usage Summary added -1 rows in 0 seconds.
    Monthly Usage Summary added -1 rows in 0 seconds.
    I am stumped. Why would it add minus rows?
    Any ideas how I can make software metering work on our environment?
    Thank you

    Finally figured it out.
    mtrmgr.log did not find any rules when I ran executables. So I knew it wasn't working on the server side.
    After searching for a while, I found the solution from the link below:
    http://social.technet.microsoft.com/Forums/en-US/8f048512-c357-437e-89ec-cee5356a10b1/software-metering-reports-empty?forum=configmanagergeneral
    1. Deleted RULECHG.RTA under policypv.box folder
    2. Removed and recreated metering rules again.
    Everything is working again now.
    Thank you.
    I do wonder how to avoid those problems going forward though.

  • SCCM 2012 software update point not sync with Microsoft Updat,

    Hi 
    Recently my SCCM 2012 software update is not syncing with microsoft update, am getting below error.  can any one suggest/help me how to resolve this issue.
    WebException: The remote server returned an error: (500) Internal Server Error.
    at System.Net.HttpWebRequest.GetRequestStream(TransportContext& context)
       at System.Net.HttpWebRequest.GetRequestStream()
       at System.Web.Services.Protocols.SoapHttpClientProtocol.Invoke(String methodName, Object[] parameters)
       at Microsoft.UpdateServices.ServerSyncWebServices.ServerSync.ServerSyncProxy.GetAuthConfig()
       at Microsoft.UpdateServices.ServerSync.ServerSyncLib.InternetGetServerAuthConfig(ServerSyncProxy proxy, WebServiceCommunicationHelper webServiceHelper)
       at Microsoft.UpdateServices.ServerSync.ServerSyncLib.Authenticate(AuthorizationManager authorizationManager, Boolean checkExpiration, ServerSyncProxy proxy, Cookie cookie, WebServiceCommunicationHelper webServiceHelper)
       at Microsoft.UpdateServices.ServerSync.CatalogSyncAgentCore.SyncConfigUpdatesFromUSS()
       at Microsoft.UpdateServices.ServerSync.CatalogSyncAgentCore.ExecuteSyncProtocol(Boolean allowRedirect)

    am just trying to tracert catalog.update.microsoft.com
    from my wsus server but it is failed, would that be the reason/
    Regards,
    Madhan

  • SCCM 2012 R2 bitlocker reporting via "Computers running a specific service"

    I have searched the web for how to check how many clients have bitlocker enabled, via SCCM 2012 R2. All suggestions I find are SQL commands.
    I have not found anyone who suggest using the report Operating System -> Services - Computers running a specific service -> Bitlocker Drive encryption service
    Why is that? Is this report not trustworthy?
    Kthxbai

    Hi,
    The service is used for prompting user's actions or storing encrypted information. It does not mean BitLocker is enabled when the service is running or not. You can start it manually. I suggest you refer to the blog below to utilize DCM to check if the Bitlocker
    is enabled.
    http://adminnexus.blogspot.com/2012/11/using-dcm-in-sccm-2012-to-report-on.html
    Juke Chou
    TechNet Community Support

  • SCCM 2012 R2 Clients are not retrieving policy

    Hi - I know this question has been asked many times before - but I have tried almost everything and a no closer to solving the problem.
    Background: Recently a SCCM 2012 SP1 single stand-alone site was upgraded to SCCM 2012 R2. The site is a single stand-alone primary site with a single DP, single MP, using mixed mode
    (HTTP). The R2 upgrade ran without any problem and all SCCM components are showing as healthy.
    A few test SCCM 2012 SP1 clients were upgraded to the R2 client using client-push.
    However the upgraded clients are not retrieving policy from the Management Point. In the Actions Tab of the SCCM client, only Machine Policy Retrieval and User Policy Retrieval are available. But kicking of those actions does not
    result in any of the advertised applications, Task Sequences becoming available. Infact Custom Client Settings are not being set either (e.g. Organisation Name in software Center).
    I have checked and rechecked the following:
    The upgrade of the client completed successfully (checked ccmsetup.log) and the version number went from 5.00.7804.1000 (SP1) to 5.00.7958.1000 (R2).
    The MP health in the SCCM console is showing healthy.
    The MP access URL's load correctly when run from SCCm client computers
    “http://<ServerName>/sms_mp/.sms_aut?mplist” is ok
    “http://<ServerName>/sms_mp/.sms_aut?mpcert” is ok
    The SCCM clients are assigned to the site correctly – verified via the SCCM client and
    ClientLocation.Log
    ClientIDManager.Log is not showing any errors
    CCMExec.log and ExecMgr.log don't show any advertisements being executed (Execmgr.log is almost empty and only has "Software ditrbution site settings policy does not yet exist on the client). If the client is not yest
    registered this is expected behaviour")
    The SCCM clients are Approved and NOT Blocked in SCCM
    I have attempted to upgrade the SCCM client and also completely removed and reinstalled - and both have the same result (no client policy dpwnloaded)
    I have also deleted the above clients completely from SCCM, Run divoery again and pushed the client to the machines again ...with the same result (SCCM client installs, assigns to correct site and then no policy downloaded)
    SCCM 2012 Boundaries are configured correctly and assigned to Boundary Groups correctly
    The SCCM client’s do not have the firewall enabled
    Changed boundary from AD Site to Subnet to IP Address Range: Same issue exists
    Uninstalled MP role and reinstalled it: same Issue exists
    Tried to connect to SCCm client using 3rd party SCCM Client center tool but cannot connect
    ??? Not sure what else to try ???

    Hi all - sorry for the late response.
    We managed to resolve the issue after logging a job with Microsoft Support.
    The issue was that the SCCM 2012 R2 upgrade corrupted 2 tables in the SCCM Database - leading to corrupt SCCM client policies.
    I am pasting the resolution email from Microsoft below:
    (NOTE: This may not be the exact sypmtoms you are experiencing so do not implement this fix assuming it will fix your problem!)
    ISSUE: 
    - All clients are unable to download policies from the server
    CAUSE:
    - Bad policies in the Database
    RESOLUTION: 
    -Issue with PADbID - Run below query against SCCM DB to verify corrupt entries:
    SELECT * FROM
    ResPolicyMap WHERE machineid = 0 and PADBID IN (SELECT PADBID FROM PolicyAssignment WHERE BodyHash IS NULL)
    Confirmed Bad policies entries in the SCCM database
    Run below query to delete the bad policy after which we resolved the issue:
    Delete FROM ResPolicyMap
    WHERE machineid = 0 and PADBID IN (SELECT PADBID FROM PolicyAssignment WHERE BodyHash IS NULL)"

  • SCCM 2012 R2 Computer reports not displaying users and domain information for some systems.

    I have a recently deployed SCCM 2012 R2 server which has been running well so far.
    I have, however, noticed in the reporting (example: "Computers in a specific site" report) that some computers are not showing information like "User domain" and "User Name" (for about 500 of the 1500 computers).
    If I go to a collection, select such a computer and right click to properties and go to the general tab I can see that the below fields are blank:
    Last Logon User Domain
    Last Logon User Name
    All other fields are populated similarly for both affected and non-affected agents. Agent versions are the same as well. Hardware/Software inventory appears to be completing on all systems.
    Has anyone else seen this type of behavior and found a solution? Appreciate any advice. Thanks.
    Edit: Most agents have been installed for close to 2 months.
    Hardware inventory: Daily
    Software inventory: Weekly

    Hi,
    Those two values are populated by the Heartbeat agent and if no user is logged on when the heartbeat is sent, then the value is blank so I would say this would be as expected.
    If you want to know which user has been using a computer you should have a look at the assett Intelliengence reports with console usage, then you can see who has been using a computer most frequently.
    Regards,
    Jörgen
    -- My System Center blog ccmexec.com -- Twitter
    @ccmexec

  • SCCM 2012 R2 Report Viewer not working.

    I have recently upgraded to SCCM 2012 R2 and now when I go to the reports I get this message. Has anyone come across this?
    The
    DefaultValue expression for the report parameter ‘UserTokenSIDs’ contains an
    error: The encryption type requested is not supported by the KDC.
    (rsRuntimeErrorInExpression)

    I found the solution.
    http://www.netdavidic.com/2013/11/how-to-fix-sccm-2012-r2-reporting.html#!/2013/11/how-to-fix-sccm-2012-r2-reporting.html

  • SCCM 2012 application catalog items not showing up

    I have an SCCM 2012 package which is being deployed to a device collection
    The users are not seeing this package appear in the application catalog, nor is it appearing in the software centre
    Can we no longer deploy (advertise) to device collections for the users to install when needed?

    If it is not appearing in Software Center, then either the deployment policy has not been retrieved by the client, it is not in the target collection, or has been filtered out due to platform restrictions (or some other restriction like that). Or the client
    is not able to communicate with the MP, which would be a cause of the first option (the policy has not been retrieved by the client). You'd need to check to ensure that all is working on that end.
    Wally Mead

  • [SCCM 2012 SP1 W2K8R2] SUP not in Sync with WSUS settings (Language)

    Hi All,
    I have almost identical production and test SCCM environment.
    After I setup SUP on both production and test environment SUP Language settings are not replicated to WSUS and cause WSUS/SCCM to Sync all languages.
    SCCM 2012:
    WSUS:
    Any idea how to fix this?
    Thank you in advance.
    Regards,

    Hi,
    There is nothing to fix, it looks exactly the same in my environment. The updates are not downloaded using WSUS it is downloaded using either the SCCM console or the SCCM Primary Site server if you use and ADR and when you download the updates the settings
    are beeing honoured.
    So this is expected behaviour.
    Regards,
    Jörgen
    -- My System Center blog ccmexec.com -- Twitter
    @ccmexec

  • SCCM 2012 R2 CAS or not CAS

    Hi.
    Sorry for the noob question but here it goes:
    We are planning to implement SCCM 2012 R2 on our organization. We have offices across the country as well as web clients. We have multiple forests and domains that are going to have a 2-ways trusted rellation with a new domain where we're installing SCCM
    as well.
    The planned hierarchy is to install a primary site on each office, on a DMZ and on the new "mother" domain.
    My question is, can I run reports on a primary site and get the full view of the infrastrucure and all clients, software, etc..?
    Can I, from domain "A" site "A", get a report on the clients of site "B" domain "B" or is it better (or the only way) to get a CAS?
    Thanks in advance

    Just to reinforce the above: NO CAS!
    Nothing you have stated above requires a CAS and as pointed out, the *only* technical criteria that requires a CAS and multiple primary sites is a managed client/device
    count of 100,000+.
    ConfigMgr does not in any way care that a client is in a different forest (trusted or untrusted -- the only exception is for user targeted deployments in untrusted forests because ConfigMgr has no way to know about those users).
    Jason | http://blog.configmgrftw.com

  • Sccm 2012 R2 - Windows 7 not listening on Port 80

    Hello,
    In looking through smsts.log and IIS logs I saw a lot of error communicating on Port 80.  When  tried to telnet from a pc to our sccm 2012 server using port 80, it goes through fine. But when I tried it the other way around, it fails.  When
    I ran netstat -an |find /i  "listening" on my pc and others around me, I discover port 80 isn't listening. The firewall is off on both the pcs and sccm primary server.  Port 80 isn't blocked on the network.
      TCP     0.0.0.0:135            0.0.0.0:0              LISTENING
      TCP     0.0.0.0:445            0.0.0.0:0              LISTENING
      TCP     0.0.0.0:1025           0.0.0.0:0              LISTENING
      TCP     0.0.0.0:1026           0.0.0.0:0              LISTENING
      TCP     0.0.0.0:1027           0.0.0.0:0              LISTENING
      TCP     0.0.0.0:1028           0.0.0.0:0              LISTENING
      TCP     0.0.0.0:1036           0.0.0.0:0              LISTENING
      TCP     0.0.0.0:1041           0.0.0.0:0              LISTENING
      TCP     0.0.0.0:1057           0.0.0.0:0              LISTENING
      TCP     0.0.0.0:3389           0.0.0.0:0              LISTENING
      TCP     0.0.0.0:5357           0.0.0.0:0              LISTENING
      TCP    127.0.0.1:5020          0.0.0.0:0              LISTENING
      TCP     127.0.0.1:5354         0.0.0.0:0              LISTENING
      TCP     127.0.0.1:27015        0.0.0.0:0              LISTENING
      TCP     127.0.0.1:62522        0.0.0.0:0              LISTENING
      TCP     172.24.94.131:139      0.0.0.0:0              LISTENING
      TCP     172.24.102.23:139      0.0.0.0:0              LISTENING
      TCP     [::]:135               [::]:0                
    LISTENING
      TCP     [::]:445               [::]:0                
    LISTENING
      TCP     [::]:1025              [::]:0                
    LISTENING
      TCP     [::]:1026              [::]:0                
    LISTENING
      TCP     [::]:1027              [::]:0                
    LISTENING
      TCP     [::]:1028              [::]:0                
    LISTENING
      TCP     [::]:1036              [::]:0                
    LISTENING
      TCP     [::]:1042              [::]:0                
    LISTENING
      TCP     [::]:1057              [::]:0                
    LISTENING
      TCP     [::]:3389              [::]:0                 LISTENING
      TCP     [::]:5357              [::]:0                
    LISTENING
    I was told something has to initiate port 80 being open on win7.  Is this true? If so, any idea why sccm isn't doing this? I could switch to port 8530 (have to do this for wsus too), but would think networking would have to open this port and then again,
    would the pc listen for it?
    PS, The sccm position before this one,  dealt with Servers, that must have had port 80 listening.

    After installing SCCM client via Task Sequence, and rebooting, the Self-signed certificate never comes down so the other Action items in Cinfiguration Manager Properties never come down.  The only way I can get the Certificate to come down (seen in
    MMC) is to give full permission (No one had rights initially) to rsa keys folder, delete smscfg.ini file and restart the sms host service.  But if you go into configuration manager properties the client certificate is still shown as None. The locationServices.log
    shows :failed to send management point list location request message to Primary Server/MP. If try
    http://PrimaryServer it fails to connect from a pc. But if I try it from the primary server sccm01 it works fine. Port 80 is open on the network. 
    smsts shows:
     Sending with winhttp Failed; 80072ee2  and also socket connect failed; 8007274c
    Is there any other logs I can send you to help resolve this?
    Again, Thanks so much for all of your help!!!
    Mark

  • SCCM 2012 R2 - Site is not active

    Good day,
    Hope all is well.
    We currently have a CAS Server, after we upgraded to 2012 R2 replication does not work anymore.
    Can anyone assist me please.
    I get the following errors, also tried multiple fixes.
    Checking if initialization request is needed for replication group Hardware_Inventory_23 from site DTS.  $$<SMS_REPLICATION_CONFIGURATION_MONITOR><04-10-2014 07:51:47.029-120><thread=6788 (0x1A84)>
    AND
    The current site status: ReplicationMaintenance.  $$<SMS_REPLICATION_CONFIGURATION_MONITOR><04-10-2014 07:50:32.483-120><thread=8320 (0x2080)>
    AND
    Error: Failed to create drs init stored proc  $$<SMS_REPLICATION_CONFIGURATION_MONITOR><04-10-2014 07:50:38.381-120><thread=6788 (0x1A84)>
    Error: Exception message: [Cannot drop type 'SCCM_DRS_TIME_ZONE_DATA_TYPETEMP' because it is being referenced by object 'spUpsertTIME_ZONE_DATA'. There may be other objects that reference this type.]  $$<SMS_REPLICATION_CONFIGURATION_MONITOR><04-10-2014
    07:50:38.381-120><thread=6788 (0x1A84)>
    Error: Could not create Drs initialization stored procedures or functions for table TIME_ZONE_DATA, will retry on next cycle.  $$<SMS_REPLICATION_CONFIGURATION_MONITOR><04-10-2014 07:50:38.382-120><thread=6788 (0x1A84)>
    Hope to hear from you soon,
    Thank you

    Duplicate. See
    http://social.technet.microsoft.com/Forums/en-US/fbf77346-885d-4683-97ac-0b433581ae25/sccm-2012-r2-the-current-site-status-replicationmaintenance?forum=configmanagergeneral#fbf77346-885d-4683-97ac-0b433581ae25
    Locking thread.
    Torsten Meringer | http://www.mssccmfaq.de

  • Copy diagram to clipboard for sql server 2012 the row did not appear when paste in paint

    hello,
    i've been trying to create database diagram on my database on sql server 2012 platform. i can create the diagram, but when copy it to clipboard and try to paste it on paint, only the tables name appear without all the columns name. any idea how can i paste
    it to have information for both tables name and columns name as well.i've no issue creating diagram and paste on paint for my sql server 2008.
    Thanks in advance.
    kneeah

    Hi kneeah,
    According to your description, SQL 2012 database diagram is not printed correctly and several of column names are missed. There are some suggestions for troubleshooting this issue, you can refer to the following steps.
    1. We recommend you can copy database diagram to Word and check if it will print correctly.
    2. When printing database diagrams, several of the tables contain large grey squares instead of the column names. We recommend switch Windows XP computer from Classic theme to Windows XP theme, and check if it can print correctly.
    There is more similar issue about printing database diagram, you can review the following posts.
    http://social.msdn.microsoft.com/Forums/sqlserver/en-US/267da892-c470-4269-854f-c1327746b16c/problem-with-printing-database-diagrams
    http://forums.asp.net/t/1190828.aspx
    Thanks,
    Sofiya Li
    Sofiya Li
    TechNet Community Support

  • SCCM 2012: F8 debug widow not working (At-least not visible) after entering into the "Currently installed Windows 7 Image": F8 works in winPE

    F8 debug widow not working (At-least not visible) after entering into the "Currently installed Windows 7 Image"
    F8 option turned on in the boot image.
    F8 debug window works in Windows PE.
    F8 debug window does not show-up on F8 key-press after entering the 'Currently installed Windows 7 Image" all the way to the end of the task sequence.
    But after a 'Restart Step' (and if F8 was pressed) the Task Sequence tends to pause indefinitely as if the
    F8 debug screen is open in the background.
    I am using SCCM 2012 SP1 (CU 1 is
    not an option at the moment).
    Any ideas as to how I could get the debug F8 option back?

    There have been a couple reported occurrences of this (or something similar) to my knowledge with no resolution in the forums. Your best bet may be to open a case with CSS.
    Also note that if you were going to do a CU, why would you pick CU1 instead of CU4? And, can I ask why it's not an option out of curiosity?
    Jason | http://blog.configmgrftw.com

Maybe you are looking for

  • Drill down report update

    Hi, How to add several currency value (USD, LKR) in drill down report - in Due Date Analysis for open Item report (S_ALR_87012168) Thanx.

  • Database Adapter Logical Delete Not Working....

    Hi, I have an issue with the DB Adapter under BPEL GA 10.1.3.1. I'm trying to do a logical delete on a table however the logical delete isn't updating the records to show that they've been processed. I've created a simple test case with a 3 column ta

  • When I open a music in itunes got a message "connecting to apple tv" and got no sound from my mac

    When I open a music in itunes got a message "connecting to apple tv" and got no sound from my mac.

  • Reg .war file

              Hi           How to covert a .jsp file into .war file? How to create this .war file?           I am using Weblogic Personalisation Server 3.1           Thank U very much.           Regards           Antony Kumar           

  • How can i get the JAIN ISUP API

    Does someone knows what can i do to get the JAIN ISUP API for a VoIP project which i am working for? Thanks a lot Regards Waldo Masuero