SCCM 2012 R2 - Endpoint Protection is greyed out

Somehow the Endpoint Protection menu is greyed out for me. It was setup and we use it to do a quick scan on user's machine when needed. All of the sudden, it's being greyed out. Does anyone knows how to fix this problem?

Hi,
Have you seen this thread?
Right click on a server endpoint greyed out
http://social.technet.microsoft.com/Forums/en-US/efe34496-8cf2-4fe7-9074-83221bf8bf9e/right-click-on-a-server-endpoint-greyed-out?forum=configmanagersecurity
We
are trying to better understand customer views on social support experience, so your participation in this
interview project would be greatly appreciated if you have time.
Thanks for helping make community forums a great place.

Similar Messages

  • Using the pre-configured SCCM 2012 SP1 endpoint protection templates for Exchange 2010?

    I am looking to update the exclusions for SCCM Endpoint Protect clients performing server AV protection on Exchange 2010 nodes.
    Within SC there are a number of pre-defined templates, including ones for Exchange 2007 / 2010. However when I analyse these they do not appear to list all the exclusions that the Exchange product team define on TechNet -
    http://technet.microsoft.com/en-us/library/bb332342(v=exchg.141).aspx
    So do I;
    1 - Use the template as it has been verified by Microsoft for using with Exchange 2010 and it covers all I need to exclude?
    2 - Edit the template, adding in the additional exclusions as defined by the Exchange product team?
    Would whichever logic I use apply to other templates, such as SQL, SharePoint, etc as well?
    Thank you
    Alan

    As I cut and pasted the xml file I noticed the following comment that I had missed before..........
            <!-- Exchange -->
            <!-- Exchange Server 2010 exclusions are defined in TechNet bb332342 -->
            <!-- Although the exclusions defined in the article work, testing showed that they exceed what is necessary-->
    Still going with adding the full recommended list from TechNet though

  • Integrating SCCM 2012 SP1 Endpoint Protection Manager with SIEM

    Team,
    Does anyone know how to expose the central SCCM antimalware reporting data to external sources?  I would like to take all centrally collated security events and load the data into Arcsight express, e.g. client malware detection events.  Are all
    client security events logged in a file on the SCCM server before being copied to the SQL database?  Or do I have to read a SQL table to get this information?  Any help greatly appreciated.
    Cheers
    Rod

    Hi,
    You will have to read that from the ConfigMgr database views, start by having a look a the SCCM_EXT.vex_EP_AntimalwareInfectionStatus view.
    Regards,
    Jörgen
    -- My System Center blog ccmexec.com -- Twitter
    @ccmexec

  • VS 2012 report project query designer greyed out

    The graphical editor stopped working while editting a report project dataset. Now it shows all the button greyed out. It now only works in "Edit as Text" mode. I can't seem to find a fix.

    I opened an issue with Microsoft here.
    http://connect.microsoft.com/VisualStudio/feedback/details/816149/vs-2012-report-query-designer-toolbar-greyed-out
    Here is the text if the link doesn't work.
    Hello
    Thank you for submitting this feedback. After carefully evaluating all of the bugs in our pipeline, we are closing bugs that we will not fix in the current or future versions of Visual Studio. The reasons for closing these bugs are following:
    1.     The fix is risky to implement in the current version of the product
    2.     Scenarios reported in the bug are not common enough
    3.     A viable workaround is available.
    If the issue is a critical business interruption, please call CSS (Customer Support Services).
    Thanks again for reporting the product issue and continued support in improving our product.
    Mariusz Cichomski
    Program Manager
    Microsoft

  • SCCM and ForeFront Endpoint Protection point site system role

    Thanks for looking at this......I am working with SCCM 2012, and ForeFront Endpoint Protection has been set up as an Endpoint Protection point site system role.  Up to now we just haven't had to mess with it much, it just has worked.  I
    have been busy packaging applications for the eager public. I have one pc that has had the Endpoint client self destruct.  Had to remove it via the control panel.  I next did a machine policy retrieval and evaluation cycle (among others) and sccm
    shows that it is aware that this particular machine needs FEP. It lists it as "To Be Installed".  How long will this take?  I have things set for "as soon as possible".   Am I at the mercy of Sccm?  Also, is there
    a way to force the install?  Thanks for any light you can shed on this!

    This will depend on your SCCM client policy settings to allow SCEP installation outside of maintenance windows (if you have any).
    It will also depend if you are using 2 hour deployment "randomizer" option in your SCCM client policy.
    Lastly, you can install it with BITS that have already been downloaded with SCCM client install.
    c:\windows\ccmsetup\scepintall.exe

  • How Does Configuration Manager 2012 R2 Endpoint Protection Stack Up to the Competition (Bit9, Symantec, McAfee, etc.)?

    I have a client in the financial services sector that owns System Center 2012 R2 (just Operations Manager 2012 R2 deployed so far) that is being courted by Bit9 for its "superior" endpoint protection. Can anyone point me to some credible resources
    for comparing Microsoft's Endpoint Protection (component of Configuration Manager 2012 R2) to the competition (Bit9, Symantec, McAfee, etc.)?
    If Microsoft's Endpoint Protection is "good enough" (and has a credible long term product roadmap), it probably makes sense to deploy that since it has already been purchased/licensed.  Any feedback is much appreciated.
    Thanks in advance.
    Bill Thacker

    Check out this page :
    http://www.microsoft.com/security/portal/mmpc/research/awards-and-certifications.aspx
    Under "Highlight" 
    There are many awards and certification programs across the IT security industry. Detailed below are some of the most widely recognized programs and testing
    bodies.
    Benoit Lecours | Blog: System Center Dudes

  • MDT 2012 & Symanted Endpoint Protection & Samba

    I have had this problem through all betas of MDT 2012 and it still exists in the final release.
    Conditions:
    Windows 7 Professional wSP1 x64 installed using all default settings.
    Installing Symantec Endpoint Protection 12 R1
    Connecting to any SAMBA computer (specifically Mac OSXS.
    If I install the OS using MDT 2012 (there is no issue with MDT 2010) once I install SEP the computer can no longer connect to SAMBA computers. Specifically tested with Mac OSXS but also tested with CentOS. The OS can connect with no issues before installing
    but once SEP touches the computer (uninstalling SEP does not fix the problem) it can no longer connect to SAMBA machines. When attempting to connect I get "The specified server cannot perform the requested operation.".
    I can not find anything in the documentation or changelog for 2012 that would lead to this issue. Also this is *NOT* a problem with SEP as there are zero issues with MDT 2010.

    Spent most of the morning on this but think I have found the answer.
    New to MDT 2012 is a feature called "Apply Local GPO Pack". This feature is part of the SystemRestore section of the default Task Sequence.
    Following deployment of a computer by MDT 2012, this step is run - and it modifies Security Options in the Local Security Policy. If these same settings are not configured or not defined in your Group Policy (in an AD environment) then the Local Security
    Policy wins.
    Specifically there are some options regarding LM and NTLM that get changed and a setting for "Require Secure Communications Always". Both of these settings cause connections to SAMBA shares to be disabled - there are lots of settings that get changed, including
    the default cached credential count, which I mentioned.
    To disable this from happening when you deploy your images in MDT 2012 you can go into the Task Sequence - right click Properties. Click on the Task Sequence tab and locate the "Apply Local GPO Package" item in the "SystemRestore" section.
    Then, click on the Options tab and select "Disable this step".
    Alternatively, add ApplyGPOPack=NO to your customsettings.ini
    http://social.technet.microsoft.com/Forums/en/w7itproinstall/thread/d93ce842-184c-414c-b2c6-bc4a7272d814
    Full list of settings changed by this feature available here (see Excel attachment)
    http://blogs.technet.com/b/deploymentguys/archive/2011/12/02/mdt-2012-new-features-gpo-packs.aspx
    I don't understand why Microsoft decided to have this set by default in their task sequences. It makes more sense to deploy a default installation of Windows 7 and then have the option of enabling the additional security options.
    I hope this helps with your issue or points you in the right direction.

  • SCCM 2012 NAP Agent goes in and out of compliance approx every 2 min.

    I have deployed the SCCM 2012 NAP Agent on a few clients and it goes in and out of compliance approx every 2 min.
    So its compliant for 2 min then uncompliant for about 30 sec then compliant again. If I uninstall the single software update I have enforced with NAP on SCCM the update is remediated properly by NAP/SCCM but the cycling in and out of compliance continues.
    I did have the agent in sccm set to 2 min evaluation cycle for testing purposes but have now reverted it back to one day.  The Health Validation Point is set to 26hrs.
    tconners

    I reset the sccm NAP evaluation cycle again to 1 day and it took this time.
    I cant explain why it was still stuck on 2 min.
    tconners

  • Configuring SMTP account for Endpoint protection alerts

    Hi all
    I am using SCCM 2012 R2 Endpoint protection. I want to configure email alerts for Endpoint protection. I have mail server in Windows 2008 R2 server in a WORKGROUP. Since mail server is not in domain , how can i configure SMTP server setting. What account
    i need to use for SMTP?

    You can get advice from others on the forum Ashok but ultimately you are the only one that will be able to figure this out. You need to look at your mail server (or talk to the person that manages it) and see how it is configured to allow email relay from
    the firewall, for example. It could be that the mail server is configured with a rule to allow relays anonymously from that specific IP address.
    You then need to configure the email server to allow the requests from the ConfigMgr server in exactly the same way. It might be as simple as adding the IP address to the above rule. You will NOT need to configure an Endpoint Protection SMTP Server Connection
    Account. As Joyce says this is only required if the mail server REQUIRES authenticated access (but you can configure the rule so that it doesn't).
    "they just use SMTP server and a email address for authentication"
    This isn't the case Ashok. This is not authentication. The email address is just a label so that you can see where the alert is coming from.
    I hope this is all clear. This isn't a ConfigMgr issue as such. It's email relaying so is specific to the email product you use.
    Gerry Hampson | Blog:
    www.gerryhampsoncm.blogspot.ie | LinkedIn:
    Gerry Hampson | Twitter:
    @gerryhampson

  • SCCM 2012: howto switch from available to mandatory deploy?

    Hi,
    If we have some software we need to deploy, we always deploy (package) it as available at first, so testers can check whenever it suits them.
    When ok, we push the same install mandatory to a collection. Here we want to prevent a reinstall from happening but the mandatory instal also triggers an install for the already installed pc's.
    In SCCM 2007 we could change the available install to mandatory, in SCCM 2012 the deploy option is greyed out.
    Please advise howto have the same functionality in SCCM 2012.
    J.
    Jan Hoedt

    You can't change the deployment behavior once the deployment is created.
    Creating a new deployment should not be a problem, not even with old-school package. That's because the combination of the package id and the program name are used to be determine if a program is installed (and not the deployment itself).
    My Blog: http://www.petervanderwoude.nl/
    Follow me on twitter: pvanderwoude

  • SCCM 2012 EndPoint Protection migration

    I have the old ConfigMgr 2012 name " BACKOFFICE" it is currently managing all the EndPoint Protection for all workstations/servers.
    I now have new ConfigMgr 2012 called "SCCM"  I just installed ForeFront EndPoint Protection and configured the Custom Client Deviec EndPoint Protection to roll out to workstations. What is the best practice to remove old ForeFront EndPoint
    Protection client from old site name and install new one?
    1. Do I have to manually uninstall EndPoint Client in control panel for each computer? or is there a way to just uninstall for all computers using the old COnfigMgr 2012 "BACKOFFICE"
    Thanks for your help!

    Hi !
    You have to reassign the desired clients.
    It can be scripted:
    http://msdn.microsoft.com/en-us/library/cc146558.aspx
    Otherwise, you could install again the client on your targets, with the following options: force install and site assignement.
    You can refer to this link:
    http://technet.microsoft.com/en-us/library/gg712298.aspx
    Hope this helps.
    Note: This posting is provided 'AS IS' with no warranties or guarantees, and confers no rights. Please take a moment to "Vote as Helpful" and/or "Mark as Answer", where applicable. This helps the community, keeps the forums tidy, and
    recognises useful contributions.

  • SCCM 2012 R2 not show Threat item in Malware Detected Report.

    I had no "Malware detected" items fount.
    There are no report abount virus that Endpoint Protection client finds.
    I try to test be creating file with this test content: "X5O!P%@AP[4\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H*", my Endpoint Protection find this file, logging it in its journal, but SCCM not show this Theat. 
    My computer was discovered, Endpoint Protection was automatic installed, Antimalware Policies work fine...
    ....but in "Monitoring/Endpoint Protection Status/System Center 2012 R2 Endpoint Protection Status" my collection with my computer(this is test collection), show me: "Endpoint Protection agent
    not yet installed: 1"
    There are many collection with many devices, but no one give me report about "Malware Detected", but virus was found in our company.
    SCCM 2012 R2 was upgrade from older version(i have not this information).
    What log must i fount about this issue?
    What cat i do to fix this problem?

    SCEP client is installed by policy successfull.
    Policy applied succesfull too.
    but i guess that data do not copy from SCEP to SCCM 
    or data do not inserted in database.
    CcmMessaging.log:
    Raising event:
    instance of CCM_CcmHttp_Status
    ClientID = "GUID:EFA60F96-CEE9-470B-8A3D-FD8453D1D7C2";
    DateTime = "20140410103213.874000+000";
    HostName = "SCCM2012.DOMAIN.LOC";
    HRESULT = "0x00000000";
    ProcessID = 2764;
    StatusCode = 0;
    ThreadID = 12908;
    Could not load logging configuration for component CcmTask. Using default values.
    Could not load logging configuration for component FileSystemFile. Using default values.
    Supplied sender token is null. Using GetUserTokenFromSid to find sender's token.
    mpfdm.log:
    PULL:Worker thread [Site System Status Summarizer] checking for *.SUM files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\sitestat.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:17 12200 (0x2FA8)
    PULL:Worker thread [Discovery Data Manager (Trusted)] checking for *.UDR files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\ddr.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:17 25480 (0x6388)
    PULL:Worker thread [State System (Incoming - high priority)] checking for *.SMX files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\statemsg.box\high.
    SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:42:17 5660 (0x161C)
    PULL:Worker thread [Status Manager] checking for *.SVF files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\stat.box. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014
    16:42:17 30604 (0x778C)
    PULL:Worker thread [State System (Incoming - low priority)] checking for *.SMX files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\statemsg.box\low.
    SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:42:17 12176 (0x2F90)
    PULL:Worker thread [Software Metering Processor Usage (Site)] checking for *.MUX files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\swm.box.
    SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:42:17 17576 (0x44A8)
    PULL:Worker thread [State System (Incoming - high priority)] checking for *.SME files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\statemsg.box\high.
    SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:42:17 10552 (0x2938)
    PULL:Worker thread [Successful Policy Requests] checking for *.POL files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\polreq.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:17 19480 (0x4C18)
    PULL:Worker thread [Notification Manager] checking for *.BOS files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\bgb.box. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014
    16:42:17 11276 (0x2C0C)
    PULL:Worker thread [Software Inventory Processor (Site Trusted)] checking for *.SI? files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\sinv.box.
    SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:42:17 23188 (0x5A94)
    PULL:Worker thread [Notification Manager] checking for *.BTS files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\bgb.box. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014
    16:42:17 17444 (0x4424)
    PULL:Worker thread [State System (Incoming - low priority)] checking for *.SME files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\statemsg.box\low.
    SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:42:17 18876 (0x49BC)
    PULL:Worker thread [Discovery Data Manager (Trusted)] checking for *.DDR files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\ddr.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:17 9008 (0x2330)
    PULL:Worker thread [Hierarchy Manager (Forwarding messages)] checking for *.MCM files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\MCM.box.
    SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:42:17 29416 (0x72E8)
    PULL:Worker thread [Asset Intelligence KB Manager] checking for *.AR? files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\AIKbMgr.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:17 3960 (0x0F78)
    PULL:Worker thread [Discovery Data Manager (Registration)] checking for *.RDR files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\rdr.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:17 11744 (0x2DE0)
    PULL:Worker thread [Endpoint Protection Manager] checking for *.EPP files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\EPMgr.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:17 25272 (0x62B8)
    PULL:Worker thread [SMS_AMT_PROXY_COMPONENT] checking for *.APX files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\amtproxy.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:17 26296 (0x66B8)
    PULL:Worker thread [State System (Incoming)] checking for *.SME files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\statemsg.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:17 25908 (0x6534)
    PULL:Worker thread [State System (Incoming)] checking for *.SMF files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\statemsg.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:17 25468 (0x637C)
    PULL:Worker thread [State System (Incoming)] checking for *.SMX files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\statemsg.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:17 10148 (0x27A4)
    PULL:Worker thread [SMS_AMT_PROXY_COMPONENT] checking for *.OTP files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\amtproxy.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:17 30220 (0x760C)
    PULL:Worker thread [Distribution Manager (Incoming)] checking for *.STA files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\distmgr.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:18 13872 (0x3630)
    PULL:Worker thread [Distribution Manager (Incoming)] checking for *.DMD files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\distmgr.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:18 30448 (0x76F0)
    PULL:Worker thread [Site Server Inventory Collection] checking for *.NHM files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\hinv.box. SMS_MP_FILE_DISPATCH_MANAGER
    10.04.2014 16:42:18 27100 (0x69DC)
    PULL:Worker thread [Data Loader (Trusted)] checking for *.MIF files in \\SQLSRV.DOMAIN.LOC\D$\SMS\MP\OUTBOXES\hinv.box. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014
    16:42:18 2452 (0x0994)
    The machine account will be used for ["Display=\\NV-WSUS.DOMAIN.LOC\"]MSWNET:["SMS_SITE=EKB"]\\NV-WSUS.DOMAIN.LOC\. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014
    16:43:43 5316 (0x14C4)
    Successfully made a network connection to \\NV-WSUS.DOMAIN.LOC\ADMIN$. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:43:43 5316 (0x14C4)
    NV-WSUS.DOMAIN.LOC is pushing files. Mode must be push. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:43:43 5316 (0x14C4)
    Cancelling network connection to \\NV-WSUS.DOMAIN.LOC\ADMIN$. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:43:43 5316 (0x14C4)
    Successfully logged on user DOMAIN.LOC\sccm-installer (Token = 00000000000032FC) and impersonated for accessing ["Display=\\SQLSRV.DOMAIN.LOC\"]MSWNET:
    ["SMS_SITE=EKB"]\\SQLSRV.DOMAIN.LOC\. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:43:43 5316 (0x14C4)
    Successfully made a network connection to \\SQLSRV.DOMAIN.LOC\ADMIN$. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:43:43 5316 (0x14C4)
    Pulling files from SQLSRV.DOMAIN.LOC. Mode must be pull. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:43:43 5316 (0x14C4)
    Cancelling network connection to \\SQLSRV.DOMAIN.LOC\ADMIN$. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:43:43 5316 (0x14C4)
    Reverting current impersonation. SMS_MP_FILE_DISPATCH_MANAGER 10.04.2014 16:43:43 5316 (0x14C4)
    statesys.log:
    CMessageProcessor - Processing file: g1a2vm9n.SMX SMS_STATE_SYSTEM 10.04.2014 16:43:13 25096 (0x6208)
    *** *** Unknown SQL Error! SMS_STATE_SYSTEM 10.04.2014 16:43:13 25096 (0x6208)
    CMessageProcessor - Encountered a non-fatal SQL error while processing SMS_STATE_SYSTEM 10.04.2014 16:43:13 25096 (0x6208)
    CMessageProcessor - Non-fatal error while processing g1a2vm9n.SMX SMS_STATE_SYSTEM 10.04.2014 16:43:13 25096 (0x6208)
    STATMSG: ID=6104 SEV=E LEV=M SOURCE="SMS Server" COMP="SMS_STATE_SYSTEM" SYS=SCCM2012.kontur SITE=EKB PID=6388 TID=25096 GMTDATE=Чт апр 10 10:43:13.059 2014
    ISTR0="g1a2vm9n.SMX" ISTR1="" ISTR2="" ISTR3="" ISTR4="" ISTR5="" ISTR6="" ISTR7="" ISTR8="" ISTR9="" NUMATTRS=0 SMS_STATE_SYSTEM 10.04.2014 16:43:13
    25096 (0x6208)
    Thread "State Message Processing Thread #0" id:25096 was unable to process file "C:\Program Files\Microsoft Configuration Manager\inboxes\auth\statesys.box\process
    \g1a2vm9n.SMX", moving to corrupt directory. SMS_STATE_SYSTEM 10.04.2014 16:43:13 25096 (0x6208)

  • Top 4 basic issues that are encountered in SCOM 2012 and SCCM 2012

    HI,
    I need to give a presentation on the basic issues that are encountered in SCOM 2012 and SCCm 2012.
    Can anyone help me out with this?
    Thanks in advance
    Rohith Kumar

    Hi,
    I am not familiar with SCCM, so I will give some issue I encounterred in SCOM:
    1. Not monitored and grey agent, here is an article for your reference:
    http://technet.microsoft.com/en-us/library/hh212723.aspx
    2. Failed to discover and install agents, this may caused by the action account or install account does not have proper permissions to install the agents. Some time maybe the discovery rule is not enabled.
    3. Failed to import Management Pack, this may caused by references MPs are not imported to the management group, or sometime the proper referenced MPs are imported, but there may be incorrect typing in the XML file which defines the management pack.
    4. Runas account and Action account fail. If you change password for action account, you may also need to change the password everywhere the account is used in SCOM. For run as account, if the account does not have enough right to run some tasks, we may
    encounter errors. You may refer to the below link which take SQL mp for example:
    http://blogs.technet.com/b/kevinholman/archive/2010/09/08/configuring-run-as-accounts-and-profiles-in-r2-a-sql-management-pack-example.aspx
    Regards,
    Yan Li
    Regards, Yan Li

  • Help with Application for Endpoint Protection

    I created an application to install System Center Endpoint Protection, because we are using Symantec Endpoint Protection 12.1.3, which is unsupported for SCEP to remove.  With the application I set it to supersede our SEP 12.1 client and remove
    any previous software. I created a previous thread, located here:
    http://social.technet.microsoft.com/Forums/en-US/38a476b3-0e71-4e80-b348-81143fa5cefe/creating-an-application-for-sc-endpoint-protection?forum=configmanagergeneral.
    The initial test works, our SEP is removed and SCEP is installed, however the client takes anywhere from 3-5 hours before SCEP pulls down the correct Anti-Malware policy and applies the latest definitions.  The time frame for this is longer then
    we want, rebooting the computer or going into the SCCM client and running the actions does not seem to speed up the process.
    At the moment, the command that works is "scepinstall.exe" /s /q, 
    what I attempted to do was export the current anti-malware policy and run the command
    "scepinstall.exe" /s /q /policy "Malware.xml", however this does not seem to work, in SCCM or running the command via a command prompt.  The only way it would is if I fully defined the path the of the xml such
    as, scepinstall.exe /s /q /policy C:\Windows\CCMCache\2\malware.xml, but this command does not work in SCCM, only via the command prompt.  As well defining the policy doesn't seem to do anything, when I open SCEP, I cannot enter the history
    or settings tab. Even if it did I could not guarantee that the path would remain constant. 
    It seems odd that it can take 3-5 hours before SCEP pulls down its policy, is this normal when installing without a defined policy?
    Is there a setting that I need to change somewhere that is defining when the client can check in for a new Anti-malware policy? The SCCM client is checking the default time of 60 mins.
    Is there a way to define the policy on the install any other way?
    Is there something I am missing? 

    Hi,
    I normally use a custom task sequence when swithing the antivirus, here is a great way of doing it solving the initial download of the definition updates as well from a package works great for OSD as well.
    http://www.chrisnackers.com/2012/10/18/configuration-manager-2012-installing-endpoint-protection-during-a-task-sequence/
    using the cache\2 is not a really good idea as it will not be same between computer, put the command line in a .cmd file and use the %~dp0 variable for current directory "scepinstall.exe /s /q /policy %~dp0EPAMPolicy2.xml" .
    Regards,
    Jörgen
    -- My System Center blog ccmexec.com -- Twitter
    @ccmexec

  • System Center Endpoint Protection Licensing?

    Hi there,
    I want to implement System Center 2012 R2 Endpoint Protection in the business. We have a Silver membership, so we do have the license for System Center 2012 R2. What I don't get is if Endpoint protection is separate or not from a licensing point of view.
    Do we have to pay for subscriptions or not? And how much? It's just confusing because Microsoft doesn't make it clear. Sure I can install SCCM....but that is pointless if I can't use Endpoint Protection.
    Thx in advance

    Hi,
    About SCEP, it depends upon the client ML you purchased, is either included or additional.
    You could find more information from the following link.
    Server and cloud pricing and licensing
    http://www.microsoft.com/en-us/server-cloud/pricing-and-licensing.aspx
    Best Regards,
    Joyce
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

Maybe you are looking for

  • How to Export local security setting all filed name & value against filed.

    HI all, I am trying to export local security setting from local policy using bellow scrip. but it is showing only these are configured. I need expert help which allowed me to export all filed with value where it is configure or not. Please give me. $

  • DVD pauses right before credits Encore CS3

    Hello,      I am making a DVD and have burned a copy, everything is fine except when the video goes into the credits the video pauses for a second or so. Here are my steps in creating the DVD. 1. Edited movie in Premiere 2. In Premiere I went to Titl

  • Using SET DATEFIRST inside a function to call into a view

    Hi, I need to use the statement SET DATEFIRST inside a function. This operation is not available, but I need to use this command into a function to call inside a view. How can I solve this issue? Thanks

  • Contact problem in 6680

    hello: my inbox has reached the limit of 2100 sms. now whenever any sms comes into the inbox it displays the number of the contact instead of name of the contact. but when I switch sms memory from memory card to phone memory it again started to displ

  • HT1926 I am unable to open my itunes because of the new application.

    Itunes asked if I wanted latest version of itunes. uploaded and now not able to pull up anything. Keep getting error message MSVCR80.dll. Took it off completely and same issue.