SCEP 2012 definition source location
Hi!
Where i can find the exact log entry from where my client updated its last definition.
I saw some documentation where its pointing to MPlog and in that log i need to search for "signature updated via" in the MPlog but i dont have anything like that in MYlog. I want to see if my clients updated from my internal definitions server,
Ms site etc.
Thanks
Try C:\Windows\WindowsUpdate.log and search for "Definition Update for Microsoft Endpoint Protection" (or just "endpoint", for example). If it's coming from ConfigMgr, you should see something like
Agent: Installing updates [CallerId = CcmExec
and if it's coming directly from Microsoft, you should see the URL it's downloading from.
Similar Messages
-
SCEP 2012 definitions not updating on few clients
Hi!
The SCEP 2012 definitions are not updating on few clients. It works for all other machines.
In MPLog i can only see that Signature update on date but not a line saying Signature updated via ...
Its not telling me where it got the updates in past and why its not updating now..
The definitions are pushed via SCCM, WSUS and MS not unc shares.
Which log file i should look for to get some answers why its not updating.
ThanksHi,
You can check C:\Windows\WindowsUpdate.log file to find the related error information.
In addition, did you configure an automatic deployment rule to deliver definition updates? If yes, I recommend you to make sure that all the clients are in the collection.
Best regards,
Susie -
SCEP 2012 Definitions only updating 50% of servers
Hiya,
We have SCCM 2012 R2 installed with a SUP and use an ADR to deliver Definitions 3 times a day. We're gradually migrating servers from our existing WSUS infrastructure to SCCM for monthly patching/AV defs.
Since 27.04.14 about half the servers (around 200) have failed to update their AV definitions and are stuck on version 1.173.658.0 (the majority, but not all). I've been comparing servers with up to date defs and those without but I can't see why they're
not working. In C:\Windows\CCMcache I just see a folder created for 28.04.14 for the next def but no file in there.
The non-working servers have;
1. The same AM policies applied
2. The same client settings applied
3. They're in the same site/use same DP
4. The same SCEP version (4.3.220.0)
5. The same SCCM client (5.00.7958.1000 - SP2 client)
6. Checked they're in the collection the ADR applies to
7. Log files show they're pointing to SCCM server and have same GPO settings as working servers
8. WUAgent is the same version
I've trawled through the SCCM client logs, used MpCmdRun.exe
-getfiles and looked through those but can't see any errors.
Of note, the WUAHandler.log shows the last update getting installed but then subsequent scans run, complete and there are no further "Update (Missing): Definition Update for Microsoft Endpoint Protection" entries.
Any help gratefully received!
ThanksOk still no joy unfortunately.
Checked the CAS/ContentAccess/ContentTransferManager/DataTransferService logs on an updated server and non-updated server and the only difference I see is this on the non-updated server;
DataTransferService.log
QUEUE: Error restarting queued DTS job {0A28D485-63C0-4C43-B942-7ECD4BFAE938}. Code 0x87d00215
QUEUE: Error evaluating DTS job queue. Code 0x87d00215
Error sending callback notification for DTS job {76FF03FC-D576-4F1D-9F6E-0EB7F187A2B7}
Comparing the WUAHandler.logs shows below;
Working;
Successfully completed synchronous searching of updates.
1. Update: 0a5fbcd9-e403-44cd-9fd0-38a2a942d394, 200 BundledUpdates: 1
Update: fa5965dd-4c94-4564-982b-6d1d1dd6e688, 200 BundledUpdates: 0
1. Update (Missing): Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.646.0) (0a5fbcd9-e403-44cd-9fd0-38a2a942d394, 200)
Async installation of updates started.
Update 1 (0a5fbcd9-e403-44cd-9fd0-38a2a942d394) finished installing (0x00000000), Reboot Required? No
Async install completed.
Installation of updates completed.
Non-working;
Successfully completed synchronous searching of updates.
1. Update: 0a5fbcd9-e403-44cd-9fd0-38a2a942d394, 200 BundledUpdates: 2
Update: fa5965dd-4c94-4564-982b-6d1d1dd6e688, 200 BundledUpdates: 0
Update: 484f6b32-9a1f-41b8-9044-d6da29c13279, 200 BundledUpdates: 0
1. Update (Missing): Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.173.646.0) (0a5fbcd9-e403-44cd-9fd0-38a2a942d394, 200)
Failed to find update (fa5965dd-4c94-4564-982b-6d1d1dd6e688) with binary in update collection from WUA. Continuing with download.
Async installation of updates started.
Update 1 (0a5fbcd9-e403-44cd-9fd0-38a2a942d394) finished installing (0x00000000), Reboot Required? No
Async install completed. Installation of updates completed.
I Couldn't find much on the "Failed to find update" error but from this point i don't see any "1. Update (Missing): Definition Update.." entries since 26.04.14 for the non-updating servers, but it does show the async searching and scans
completing.
Also, working machines have 2 or 3 folders per ADR deployment in the C:\Windows\CCMcache containing files called AM_Delta_Patch_1.173.1491.0.exe etc. but non-working ones have folders with one AM_Delta.exe and 5 or 6 empty folders with the same date.
Was thinking i'd locate the old defs in All Software Updates but they only go back as far as defs released on 30.04.14 so am a bit stumped!
Thanks -
SCEP 2012 definition flow check via client logs
Hi!
I am looking for some documentation that contains detail information how definitions looks in the logs when client is updating definitions.
ThanksHere's a recent blog post that gives a high-level view of the Windows Update process from a ConfigMgr client's view utilizing a software update point. It's relevant to any software update, but the specific example used in the screenshots is for a SCEP definition
update, so it might be more along the lines of what you are looking for:
http://blogs.technet.com/b/configmgrdogs/archive/2014/06/30/configmgr-2012-windows-update-client-process.aspx
The key log is the WindowsUpdate.log because it will show you the source of update, whether it is coming from ConfigMgr or directly from Microsoft via the Internet (for example). -
SCEP 2012 definition updates makes no sense
Hi, i´m trying to figure out how SCEP updates are working, we are evaluating SCEP on some servers and workstations at the moment and some clients have the latest updates, some have one version old, and som have even older.
For example.
This morning at 04:00 we had an SUP sync and a ADR was created at 04:02 with definition version 1.169.1999.0.
Today at 10:27 one of the clients updated its definition, but to version 1.169.1904.0. Why did it choose an old update? Several clients had already updated to the .1999 version. And why so late? Our antimalware policy is set to check for updates every 1 hour.
The computer powered on at 07:45.
I have looked in the MPlog.log file, but it doesnt make sense either, according to one machine it updated to definition v.1.169.1258.0 mars 31. it is the latest record, but when i check SCEP gui on that machine it have updated to 1.169.2028.0 today.
What am i missing?
Regards Erik1: And with this configuration all your clients gets all definitions that MS releases during a day?
It looks to me with that config that you will only get definitions that releases before 5AM and then if it arrives 2 more definitions that day you will not recieve them until the next day. is that correct?
2&3: Yeah, i need to do more trouble shooting, yesterday before I went home i made sure that we used Client Notification and that the FW port was open. I set antimalware policy to: update interval: 0. Two sources (configmgr and ms update). Daily update
check at 12 AM. And force to look outside ConfigMgr if no definitions have come within 24 hours from the last update.
It still goes outside to update definitions from MS Update.
I have now set "If ConfigMgr is used as a source for definition updates, clients will only update form alternative source if a definition is older than _ hours" to 720, so hopefully it will start getting updates from only ConfigMgr so i see that it
works.
5: The SCEP ADR is targeted to a collection that includes two other collections.
Client collection: A query that gets all windows 8.1 workstations.
Server collection: A query that gets group membership from Active Directory
6: One more thing, how is it about multiple antimalware policys? we have the default policy at order 10000 and then we have an others at order 1 and 2. For server the default and the one at order 2 active. both have different definition updates entries, but
the one i want to win is in the policy with order 2. the policy with order 2 will always win, right? -
SCEP 2012 Definition Updates for Linux machines thru SCCM
We have a situation where SCEP definition needs to be updated on Linux machines which don't have access to internet.
All I have read is that SCEP functions as stand alone for Linux & Mac machines. Can someone guide thru how do SCEP definitions get updated on Linux machines that are not connected to internet.Pls check the below link
http://www.niallbrady.com/2013/02/22/how-can-i-deploy-system-center-2012-endpoint-protection-definition-updates-from-a-unc-file-shares/
Thanks, Prabha G -
SCEP 2012 manual definitions update for use in OSD
So I am setting up to deploy SCEP 2012 4.5.0216.0 during my OSD task sequence. I am following the guidelines laid out by the blog post:
http://blogs.technet.com/b/configmgrteam/archive/2012/04/12/operating-system-deployment-and-endpoint-protection-client-installation.aspx. I have created a package with the scepinstall.exe, EPAMPolicy.xml, and Install.cmd.
Note: I got the EPAMPolicy.xml from a client I let install SCEP the "normal way" by deploying client settings that said to install and manage the client.
I added to the EPAMPolicy.xml file:
<AddValue Name="DisableUpdateOnStartupWithoutEngine" Disabled="false" Type="REG_DWORD">1</AddValue>
Added it between:
<AddValue Name="AuGracePeriod" Type="REG_DWORD" Disabled="false">4320</AddValue>"I ADDED THE CODE RIGHT HERE"<AddValue Name="SignatureUpdateInterval" Type="REG_DWORD" Disabled="false">8</AddValue>
The "Install.cmd" contains:
"%~dp0scepinstall.exe" /s /q /NoSigsUpdateAtInitialExp /policy "%~dp0EPAMPolicy.xml"
So these things together install SCEP 2012 version 4.5.0216.0 and
cancels any definition updates when done installing and when the service first starts up. When the install finishes the client is RED since I cancelled all updates. This is WORKING FINE.
Now I have a package that contains the definition updates "mpam-fe.exe" and "nis_full.exe" as described in the linked blog. Running the proper 32/64 version of the mpam-fe.exe effectively updates the client Anti-malware definitions
to the version I have downloaded for that day. The client now turns GREEN. This is WORKING FINE.
The part that is not working is running the Network Inspection Service definitions, "nis_full.exe". It goes right through like it was fine when run manually, but when you check event log you see it put two errors in Event
Log. It also is causing my Task Sequence to fail.
I questioned how valid the nis_full.exe was anymore since the blog post is not real new...so I found:
http://support.microsoft.com/kb/935934. It is titled, "How to manually download the latest antimalware definition updates for Microsoft Forefront Client Security, Microsoft Forefront Endpoint
Protection 2010 and Microsoft System Center 2012 Endpoint Protection". I verified by downloading using the links given in that article that my files matched hash for hash.
In that article it does say if running SCEP 2012 to also install the nis_full.exe as administrator.
This is not working!
Any assistance is appreciated. Any better way to deploy SCEP during task sequence and definitions WITHOUT scanning for updates during "Install Software Updates" task or letting client go to
internet?
Find this post helpful? Does this post answer your question? Be sure to mark it appropriately to help others find answers to their searches.Using the supplied EPAMPolicy2.xml did not resolve the issue. I still get an "0x80004005" error when I try to deploy the "nis_full.exe" during my task sequence. The client and malware definitions work as intended and install successfully. The NIS definitions
fail though.
Snippet of my SMSTS.LOG:
<![LOG[!--------------------------------------------------------------------------------------------!]LOG]!><time="09:37:58.886+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="instruction.cxx:804">
<![LOG[Successfully completed the action (Install SCEP 2012 Anti-malware Defs) with the exit win32 code 0]LOG]!><time="09:37:58.886+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="instruction.cxx:830">
<![LOG[MP server https://SCCMSRV.domain.local. Ports 80,443. CRL=false.]LOG]!><time="09:37:58.886+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="utils.cpp:5881">
<![LOG[Setting authenticator]LOG]!><time="09:37:58.901+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="utils.cpp:5903">
<![LOG[Set authenticator in transport]LOG]!><time="09:37:58.901+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="libsmsmessaging.cpp:7734">
<![LOG[Sending StatusMessage]LOG]!><time="09:37:58.917+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="libsmsmessaging.cpp:4023">
<![LOG[Setting message signatures.]LOG]!><time="09:37:58.932+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="libsmsmessaging.cpp:1295">
<![LOG[Setting the authenticator.]LOG]!><time="09:37:58.932+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="libsmsmessaging.cpp:1325">
<![LOG[CLibSMSMessageWinHttpTransport::Send: URL: SCCMSRV.domain.local:443 CCM_POST /ccm_system_AltAuth/request]LOG]!><time="09:37:58.932+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="libsmsmessaging.cpp:8604">
<![LOG[In SSL, but with no client cert]LOG]!><time="09:37:58.932+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="libsmsmessaging.cpp:8738">
<![LOG[Request was successful.]LOG]!><time="09:37:58.964+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="libsmsmessaging.cpp:8939">
<![LOG[Set a global environment variable _SMSTSLastActionRetCode=0]LOG]!><time="09:37:58.964+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:668">
<![LOG[Set a global environment variable _SMSTSLastActionSucceeded=true]LOG]!><time="09:37:58.964+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:668">
<![LOG[Clear local default environment]LOG]!><time="09:37:58.964+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:807">
<![LOG[Updated security on object C:\_SMSTaskSequence.]LOG]!><time="09:37:59.026+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="utils.cpp:1704">
<![LOG[Set a global environment variable _SMSTSNextInstructionPointer=15]LOG]!><time="09:37:59.026+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:668">
<![LOG[Set a TS execution environment variable _SMSTSNextInstructionPointer=15]LOG]!><time="09:37:59.026+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:386">
<![LOG[Set a global environment variable _SMSTSInstructionStackString=10 12]LOG]!><time="09:37:59.026+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:668">
<![LOG[Set a TS execution environment variable _SMSTSInstructionStackString=10 12]LOG]!><time="09:37:59.026+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:414">
<![LOG[Save the current environment block]LOG]!><time="09:37:59.026+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:833">
<![LOG[Successfully save execution state and environment to local hard disk]LOG]!><time="09:37:59.182+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="engine.cxx:254">
<![LOG[Start executing an instruction. Instruction name: Install SCEP 2012 NIS Defs. Instruction pointer: 15]LOG]!><time="09:37:59.182+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="engine.cxx:116">
<![LOG[Set a global environment variable _SMSTSCurrentActionName=Install SCEP 2012 NIS Defs]LOG]!><time="09:37:59.182+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:668">
<![LOG[Set a global environment variable _SMSTSNextInstructionPointer=15]LOG]!><time="09:37:59.182+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:668">
<![LOG[Set a local default variable _SMSSWDProgramName]LOG]!><time="09:37:59.197+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:700">
<![LOG[Set a global environment variable _SMSTSLogPath=C:\Windows\CCM\Logs\SMSTSLog]LOG]!><time="09:37:59.197+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:668">
<![LOG[Expand a string: smsswd.exe /pkg:PR100043 /install /basevar: /continueOnError:]LOG]!><time="09:37:59.197+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:782">
<![LOG[Expand a string: ]LOG]!><time="09:37:59.197+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:782">
<![LOG[Command line for extension .exe is "%1" %*]LOG]!><time="09:37:59.197+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="commandline.cpp:228">
<![LOG[Set command line: smsswd.exe /pkg:PR100043 /install /basevar: /continueOnError:]LOG]!><time="09:37:59.197+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="commandline.cpp:731">
<![LOG[Start executing the command line: smsswd.exe /pkg:PR100043 /install /basevar: /continueOnError:]LOG]!><time="09:37:59.197+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="instruction.cxx:722">
<![LOG[!--------------------------------------------------------------------------------------------!]LOG]!><time="09:37:59.197+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="instruction.cxx:751">
<![LOG[Expand a string: FullOS]LOG]!><time="09:37:59.197+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:782">
<![LOG[Executing command line: smsswd.exe /pkg:PR100043 /install /basevar: /continueOnError:]LOG]!><time="09:37:59.197+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="commandline.cpp:827">
<![LOG[[ smsswd.exe ]]LOG]!><time="09:37:59.587+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="main.cpp:289">
<![LOG[PackageID = 'PR100043']LOG]!><time="09:37:59.618+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="main.cpp:318">
<![LOG[BaseVar = '', ContinueOnError='']LOG]!><time="09:37:59.618+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="main.cpp:319">
<![LOG[ProgramName = 'Install NIS Definitions']LOG]!><time="09:37:59.618+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="main.cpp:320">
<![LOG[SwdAction = '0002']LOG]!><time="09:37:59.618+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="main.cpp:321">
<![LOG[GetExecRequestMgrInterface successful]LOG]!><time="09:37:59.650+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="installsoftware.cpp:187">
<![LOG[Retrieving value from TSEnv for '_SMSTSPolicyPR100043_Install NIS Definitions']LOG]!><time="09:37:59.650+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="installsoftware.cpp:85">
<![LOG[::DecompressBuffer(65536)]LOG]!><time="09:37:59.650+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="ccmzlib.cpp:739">
<![LOG[Decompression (zlib) succeeded: original size 3059, uncompressed size 39008.]LOG]!><time="09:37:59.650+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="ccmzlib.cpp:651">
<![LOG[ADV_AdvertisementID=PR120019]LOG]!><time="09:37:59.712+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:1151">
<![LOG[PKG_PSF_ContainsSourceFiles=TRUE]LOG]!><time="09:37:59.712+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:1170">
<![LOG[ResolveSource flags: 0x00000000]LOG]!><time="09:37:59.712+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="resolvesource.cpp:3201">
<![LOG[SMSTSPersistContent: . The content for package PR100043 will be persisted]LOG]!><time="09:37:59.712+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="resolvesource.cpp:3212">
<![LOG[The package PR100043 is found locally in the cache C:\_SMSTaskSequence\Packages\PR100043]LOG]!><time="09:37:59.712+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="resolvesource.cpp:3242">
<![LOG[SMS PkgID 'PR100043' resolved to location 'C:\_SMSTaskSequence\Packages\PR100043']LOG]!><time="09:37:59.712+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:145">
<![LOG[Start to compile TS policy]LOG]!><time="09:37:59.712+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="utils.cpp:3066">
<![LOG[Policy complied successfully in WMI 'root\ccm\policy\defaultmachine\requestedconfig' namespace]LOG]!><time="09:37:59.837+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="utils.cpp:3167">
<![LOG[End TS policy compilation]LOG]!><time="09:37:59.837+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="utils.cpp:3171">
<![LOG[getPointer()->ExecQuery( BString(L"WQL"), BString(pszQuery), lFlags, pContext, ppEnum ), HRESULT=80041017 (e:\nts_sccm_release\sms\framework\core\ccmcore\wminamespace.cpp,463)]LOG]!><time="09:37:59.837+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="wminamespace.cpp:463">
<![LOG[Failed to query CCM_SoftwareDistribution]LOG]!><time="09:37:59.837+240" date="05-30-2014" component="InstallSoftware" context="" type="2" thread="2136" file="installsoftware.cpp:729">
<![LOG[Get Install Directory for SMS Client]LOG]!><time="09:37:59.837+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="utils.cpp:4215">
<![LOG[Start to evaluate TS policy with lock]LOG]!><time="09:38:00.024+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="policyutil.cpp:10966">
<![LOG[Locked policy transaction lock successfully]LOG]!><time="09:38:00.039+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:8021">
<![LOG[Updating settings in \\.\root\ccm\policy\machine\actualconfig]LOG]!><time="09:38:00.039+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="policyutil.cpp:8024">
<![LOG[RequestedConfig policy instance(s) : 437]LOG]!><time="09:38:00.086+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7653">
<![LOG[Locked \\.\ROOT\ccm\Policy\Machine\RequestedConfig for source SMS:Client:Default:{8864FB91-94EE-4F16-A144-0D82A232049D} successfully]LOG]!><time="09:38:00.086+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7463">
<![LOG[Namespace: \\.\ROOT\ccm\Policy\Machine\RequestedConfig, Query: SELECT PolicyID FROM CCM_Policy_Policy5 WHERE (PolicySource = "SMS:Client:Default:{8864FB91-94EE-4F16-A144-0D82A232049D}") AND (PolicyState = "Active") AND (PolicyType = "Machine")]LOG]!><time="09:38:00.086+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="policyutil.cpp:7511">
<![LOG[There is no ccm_policy_policy instance, skipping addition to realinst map]LOG]!><time="09:38:00.086+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="policyutil.cpp:7512">
<![LOG[Unlocked \\.\ROOT\ccm\Policy\Machine\RequestedConfig for source SMS:Client:Default:{8864FB91-94EE-4F16-A144-0D82A232049D} successfully]LOG]!><time="09:38:00.086+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7660">
<![LOG[RequestedConfig policy instance(s) : 0]LOG]!><time="09:38:00.102+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7653">
<![LOG[Locked \\.\ROOT\ccm\Policy\Machine\RequestedConfig for source SMS:PR1 successfully]LOG]!><time="09:38:00.102+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7463">
<![LOG[Namespace: \\.\ROOT\ccm\Policy\Machine\RequestedConfig, Query: SELECT PolicyID FROM CCM_Policy_Policy5 WHERE (PolicySource = "SMS:PR1") AND (PolicyState = "Active") AND (PolicyType = "Machine")]LOG]!><time="09:38:00.102+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="policyutil.cpp:7511">
<![LOG[There is no ccm_policy_policy instance, skipping addition to realinst map]LOG]!><time="09:38:00.102+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="policyutil.cpp:7512">
<![LOG[Unlocked \\.\ROOT\ccm\Policy\Machine\RequestedConfig for source SMS:PR1 successfully]LOG]!><time="09:38:00.102+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7660">
<![LOG[RequestedConfig policy instance(s) : 0]LOG]!><time="09:38:00.102+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7653">
<![LOG[Locked \\.\ROOT\ccm\Policy\Machine\RequestedConfig for source CcmPortal successfully]LOG]!><time="09:38:00.102+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7463">
<![LOG[Namespace: \\.\ROOT\ccm\Policy\Machine\RequestedConfig, Query: SELECT PolicyID FROM CCM_Policy_Policy5 WHERE (PolicySource = "CcmPortal") AND (PolicyState = "Active") AND (PolicyType = "Machine")]LOG]!><time="09:38:00.102+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="policyutil.cpp:7511">
<![LOG[There is no ccm_policy_policy instance, skipping addition to realinst map]LOG]!><time="09:38:00.102+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="policyutil.cpp:7512">
<![LOG[Unlocked \\.\ROOT\ccm\Policy\Machine\RequestedConfig for source CcmPortal successfully]LOG]!><time="09:38:00.102+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7660">
<![LOG[RequestedConfig policy instance(s) : 0]LOG]!><time="09:38:00.117+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7653">
<![LOG[Locked \\.\ROOT\ccm\Policy\Machine\RequestedConfig for source Local successfully]LOG]!><time="09:38:00.117+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7463">
<![LOG[RequestedConfig policy instance(s) : 9]LOG]!><time="09:38:00.117+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7653">
<![LOG[Unlocked \\.\ROOT\ccm\Policy\Machine\RequestedConfig for source Local successfully]LOG]!><time="09:38:00.117+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7660">
<![LOG[RequestedConfig policy instance(s) : 15]LOG]!><time="09:38:00.133+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7653">
<![LOG[Locked \\.\ROOT\ccm\Policy\Machine\RequestedConfig for source CcmTaskSequence successfully]LOG]!><time="09:38:00.133+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7463">
<![LOG[Namespace: \\.\ROOT\ccm\Policy\Machine\RequestedConfig, Query: SELECT PolicyID FROM CCM_Policy_Policy5 WHERE (PolicySource = "CcmTaskSequence") AND (PolicyState = "Active") AND (PolicyType = "Machine")]LOG]!><time="09:38:00.258+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="policyutil.cpp:7511">
<![LOG[There is no ccm_policy_policy instance, skipping addition to realinst map]LOG]!><time="09:38:00.258+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="policyutil.cpp:7512">
<![LOG[Unlocked \\.\ROOT\ccm\Policy\Machine\RequestedConfig for source CcmTaskSequence successfully]LOG]!><time="09:38:00.258+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:7660">
<![LOG[Total RequestedConfig policy instance(s) : 461]LOG]!><time="09:38:00.336+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:8186">
<![LOG[Locked ActualConfig successfully]LOG]!><time="09:38:00.336+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:8199">
<![LOG[New/Changed ActualConfig policy instance(s) : 1]LOG]!><time="09:38:00.382+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:8278">
<![LOG[[1] Added/updated setting 'ccm_softwaredistribution:adv_advertisementid=it120019:pkg_packageid=it100043:prg_programid=install nis definitions'.]LOG]!><time="09:38:00.382+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:8307">
<![LOG[Unlocked ActualConfig successfully]LOG]!><time="09:38:00.382+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:8333">
<![LOG[Unlocked policy transaction lock successfully]LOG]!><time="09:38:00.382+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="policyutil.cpp:8339">
<![LOG[Raising event:
instance of CCM_PolicyAgent_SettingsEvaluationComplete
ClientID = "GUID:d69a4ca6-a93a-479d-89aa-c85113eaef67";
DateTime = "20140530133800.382000+000";
PolicyNamespace = "\\\\.\\root\\ccm\\policy\\machine\\actualconfig";
ProcessID = 1084;
ThreadID = 2136;
]LOG]!><time="09:38:00.382+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="event.cpp:715">
<![LOG[Successfully submitted event to the Status Agent.]LOG]!><time="09:38:00.398+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="event.cpp:733">
<![LOG[End TS policy evaluation]LOG]!><time="09:38:00.398+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="policyutil.cpp:10969">
<![LOG[Policy evaluation initiated]LOG]!><time="09:38:00.398+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="utils.cpp:4253">
<![LOG[Waiting for policy to be compiled in 'root\ccm\policy\machine' namespace ]LOG]!><time="09:38:00.398+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:383">
<![LOG[Query path = 'CCM_SoftwareDistribution.ADV_AdvertisementID="PR120019",PRG_ProgramID="Install NIS Definitions",PKG_PackageID="PR100043"']LOG]!><time="09:38:00.398+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:414">
<![LOG[Verified policy is compiled in 'root\ccm\policy\machine' namespace]LOG]!><time="09:38:00.445+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:439">
<![LOG[content location count = 1]LOG]!><time="09:38:00.507+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:231">
<![LOG[Checking if the active request handle: {66096B8A-60B8-4CC3-ABBA-D0CD624938C4} is valid.]LOG]!><time="09:38:00.507+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="utils.cpp:5052">
<![LOG[CoCreateInstance succeeded]LOG]!><time="09:38:00.507+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="utils.cpp:5074">
<![LOG[Active request handle: {66096B8A-60B8-4CC3-ABBA-D0CD624938C4} is valid.]LOG]!><time="09:38:00.507+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="utils.cpp:5082">
<![LOG[Invoking Execution Manager to install software ]LOG]!><time="09:38:00.507+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="installsoftware.cpp:246">
<![LOG[Installing software for PackageID='PR100043' ProgramID='Install NIS Definitions' AdvertID='PR120019' has started, jobID='{F528EBD4-1270-44E5-9539-5B5346BAE5A4}']LOG]!><time="09:38:00.803+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:268">
<![LOG[Setting TSEnv variable 'SMSTSInstallSoftwareJobID_PR100043_PR120019_Install NIS Definitions'='{F528EBD4-1270-44E5-9539-5B5346BAE5A4}']LOG]!><time="09:38:00.803+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:52">
<![LOG[Waiting for installation job to complete..]LOG]!><time="09:38:00.803+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:873">
<![LOG[CompleteExecution received]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="1524" file="installsoftware.cpp:580">
<![LOG[CompleteExecution processed]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="1524" file="installsoftware.cpp:593">
<![LOG[Received job completion notification from Execution Manager]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:923">
<![LOG[Installation completed with exit code 0x80004005]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:940">
<![LOG[Installation failed with error (0x80004005)]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="3" thread="2136" file="installsoftware.cpp:967">
<![LOG[Setting TSEnv variable 'SMSTSInstallSoftwareJobID_PR100043_PR120019_Install NIS Definitions'='']LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:52">
<![LOG[GetExecRequestMgrInterface successful]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="installsoftware.cpp:187">
<![LOG[Releasing job request, jobID='{F528EBD4-1270-44E5-9539-5B5346BAE5A4}']LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="installsoftware.cpp:339">
<![LOG[Releasing of Job Request successful]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:348">
<![LOG[CompleteJob successful]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="installsoftware.cpp:997">
<![LOG[ReleaseSource() for C:\_SMSTaskSequence\Packages\PR100043.]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="resolvesource.cpp:3564">
<![LOG[reference count 1 for the source C:\_SMSTaskSequence\Packages\PR100043 before releasing]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="resolvesource.cpp:3574">
<![LOG[Released the resolved source C:\_SMSTaskSequence\Packages\PR100043]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="1" thread="2136" file="resolvesource.cpp:3612">
<![LOG[pInstall->Install(sPackageID, sProgramName), HRESULT=80004005 (e:\nts_sccm_release\sms\client\osdeployment\installsoftware\main.cpp,361)]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="0" thread="2136" file="main.cpp:361">
<![LOG[Install Software failed, hr=0x80004005]LOG]!><time="09:38:03.033+240" date="05-30-2014" component="InstallSoftware" context="" type="3" thread="2136" file="main.cpp:361">
<![LOG[Process completed with exit code 2147500037]LOG]!><time="09:38:03.049+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="commandline.cpp:1123">
<![LOG[!--------------------------------------------------------------------------------------------!]LOG]!><time="09:38:03.049+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="instruction.cxx:804">
<![LOG[Failed to run the action: Install SCEP 2012 NIS Defs.
Unspecified error (Error: 80004005; Source: Windows)]LOG]!><time="09:38:03.049+240" date="05-30-2014" component="TSManager" context="" type="3" thread="540" file="instruction.cxx:895">
<![LOG[MP server https://SCCMSRV.domain.local. Ports 80,443. CRL=false.]LOG]!><time="09:38:03.049+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="utils.cpp:5881">
<![LOG[Setting authenticator]LOG]!><time="09:38:03.064+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="utils.cpp:5903">
<![LOG[Set authenticator in transport]LOG]!><time="09:38:03.064+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="libsmsmessaging.cpp:7734">
<![LOG[Sending StatusMessage]LOG]!><time="09:38:03.080+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="libsmsmessaging.cpp:4023">
<![LOG[Setting message signatures.]LOG]!><time="09:38:03.096+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="libsmsmessaging.cpp:1295">
<![LOG[Setting the authenticator.]LOG]!><time="09:38:03.096+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="libsmsmessaging.cpp:1325">
<![LOG[CLibSMSMessageWinHttpTransport::Send: URL: SCCMSRV.domain.local:443 CCM_POST /ccm_system_AltAuth/request]LOG]!><time="09:38:03.096+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="libsmsmessaging.cpp:8604">
<![LOG[In SSL, but with no client cert]LOG]!><time="09:38:03.096+240" date="05-30-2014" component="TSManager" context="" type="1" thread="540" file="libsmsmessaging.cpp:8738">
<![LOG[Request was successful.]LOG]!><time="09:38:03.111+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="libsmsmessaging.cpp:8939">
<![LOG[Set a global environment variable _SMSTSLastActionRetCode=-2147467259]LOG]!><time="09:38:03.111+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:668">
<![LOG[Set a global environment variable _SMSTSLastActionSucceeded=false]LOG]!><time="09:38:03.111+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:668">
<![LOG[Clear local default environment]LOG]!><time="09:38:03.111+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="executionenv.cxx:807">
<![LOG[Let the parent group (Install Endpoint Protection) decides whether to continue execution]LOG]!><time="09:38:03.111+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="instruction.cxx:1004">
<![LOG[Let the parent group (Setup Operating System) decide whether to continue execution]LOG]!><time="09:38:03.111+240" date="05-30-2014" component="TSManager" context="" type="0" thread="540" file="instruction.cxx:254">
<![LOG[The execution of the group (Setup Operating System) has failed and the execution has been aborted. An action failed.
Operation aborted (Error: 80004004; Source: Windows)]LOG]!><time="09:38:03.111+240" date="05-30-2014" component="TSManager" context="" type="3" thread="540" file="instruction.cxx:217">
<![LOG[Failed to run the last action: Install SCEP 2012 NIS Defs. Execution of task sequence failed.
Unspecified error (Error: 80004005; Source: Windows)]LOG]!><time="09:38:03.111+240" date="05-30-2014" component="TSManager" context="" type="3" thread="540" file="engine.cxx:213">
Find this post helpful? Does this post answer your question? Be sure to mark it appropriately to help others find answers to their searches. -
SCEP with SCCM 2012 - definitions don't update some PCs in Collection
Dear everybody,
I'm managing SCCM 2012 to deploy System Center Endpoint Protection 2012 definitions
Everything is normal until 22/11/2014 (Saturday)
Then, Some PCs cannot be updated definition by SCCM.
We have the collection named "Server" contains 57 servers, in which 22 Servers meet errors.
I will show you updatedeployments.log from one of PC has met error
Please help me to solve it
P/S: I suspect something that I mark highlight
Thanks
<![LOG[Starting forced trigger (TriggerEnforce) for assignment {d21314f1-87e3-49a7-8cae-c8b266ea9101}]LOG]!><time="23:58:29.660-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3948" file="updatesassignment.cpp:1056">
<![LOG[Detection job ({EEB410E8-3498-4067-AC06-0865D2F80EEB}) started for assignment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:29.676-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3948" file="updatesassignment.cpp:1196">
<![LOG[Progress received for assignment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:53.419-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3084" file="updatesassignment.cpp:1988">
<![LOG[DetectJob completion received for assignment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:53.700-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2640" file="updatesassignment.cpp:2113">
<![LOG[Update (Site_014D9B0A-06EE-4184-B2A9-766732D2CC81/SUM_720a2f5d-0efd-470a-b4d2-1ce4d988aba7) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.189.378.0)) ArticleID (2461484) added to the targeted list of deployment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:53.715-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2640" file="updatesmanager.cpp:420">
<![LOG[Update (Site_014D9B0A-06EE-4184-B2A9-766732D2CC81/SUM_73fa381e-06bd-446b-9301-7582b4b7c350) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.189.421.0)) ArticleID (2461484) added to the targeted list of deployment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:53.715-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2640" file="updatesmanager.cpp:420">
<![LOG[Update (Site_014D9B0A-06EE-4184-B2A9-766732D2CC81/SUM_fb845948-4313-41e6-876f-09e278f1a4fb) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.189.445.0)) ArticleID (2461484) added to the targeted list of deployment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:53.731-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2640" file="updatesmanager.cpp:420">
<![LOG[Raising client SDK event for class CCM_SoftwareUpdate, instance CCM_SoftwareUpdate.UpdateID="Site_014D9B0A-06EE-4184-B2A9-766732D2CC81/SUM_259f78dd-0967-4342-82c7-ca908081852b", actionType 12l, value NULL, user NULL, session 4294967295l, level 0l, verbosity 30l]LOG]!><time="23:58:53.731-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2640" file="event.cpp:405">
<![LOG[Update (Site_014D9B0A-06EE-4184-B2A9-766732D2CC81/SUM_259f78dd-0967-4342-82c7-ca908081852b) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.189.465.0)) ArticleID (2461484) added to the targeted list of deployment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:53.747-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2640" file="updatesmanager.cpp:420">
<![LOG[Update (Site_014D9B0A-06EE-4184-B2A9-766732D2CC81/SUM_f7b9ab32-7d7d-47d7-81e5-ed9b22ca5c33) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.189.487.0)) ArticleID (2461484) added to the targeted list of deployment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:53.747-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2640" file="updatesmanager.cpp:420">
<![LOG[Update (Site_014D9B0A-06EE-4184-B2A9-766732D2CC81/SUM_232e7865-c75d-460c-adce-7dc4a0ee0ad1) Name (Definition Update for Microsoft Endpoint Protection - KB2461484 (Definition 1.189.512.0)) ArticleID (2461484) added to the targeted list of deployment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:53.778-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2640" file="updatesmanager.cpp:420">
<![LOG[UpdateAssginment Download: CCM_CONTENT_WF_DEADLINE_DOWNLOAD set]LOG]!><time="23:58:54.012-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2640" file="updatesassignment.cpp:1334">
<![LOG[DownloadCIContents Job ({8C06A92F-FEB4-4F6C-9730-402F79B9DB7C}) started for assignment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:54.012-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2640" file="updatesassignment.cpp:1380">
<![LOG[Progress received for assignment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:54.885-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2564" file="updatesassignment.cpp:1988">
<![LOG[Progress received for assignment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:55.057-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3920" file="updatesassignment.cpp:1988">
<![LOG[Update (Site_014D9B0A-06EE-4184-B2A9-766732D2CC81/SUM_232e7865-c75d-460c-adce-7dc4a0ee0ad1) Progress: Status = ciStateDownloading, PercentComplete = 0, Result = 0x0]LOG]!><time="23:58:55.057-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3920" file="updatesassignment.cpp:2031">
<![LOG[Progress received for assignment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="23:58:55.057-420" date="11-22-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2564" file="updatesassignment.cpp:1988">
<![LOG[CUpdateAssignmentsManager received a SERVICEWINDOWEVENT END Event]LOG]!><time="00:00:00.031-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2564" file="assignmentsmanager.cpp:277">
<![LOG[CUpdateAssignmentsManager received a SERVICEWINDOWEVENT START Event]LOG]!><time="00:00:00.031-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3084" file="assignmentsmanager.cpp:277">
<![LOG[Suspend activity in presentation mode is selected]LOG]!><time="00:00:00.063-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3084" file="cliuisettings.h:163">
<![LOG[At least one user has elected to suspend non-business hours activity when in presentation mode. Checking for presentation mode.]LOG]!><time="00:00:00.063-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3084" file="deploymentutils.cpp:711">
<![LOG[Proceeding to non-business hours activites as presentation mode is off.]LOG]!><time="00:00:00.063-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3084" file="deploymentutils.cpp:722">
<![LOG[Auto install during non-business hours is disabled or never set, selecting only scheduled updates.]LOG]!><time="00:00:00.063-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3084" file="assignmentsmanager.cpp:500">
<![LOG[A user-defined service window(non-business hours) is available. We will attempt to install any scheduled updates.]LOG]!><time="00:00:00.063-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3084" file="updatesmanager.cpp:1558">
<![LOG[Attempting to install 0 updates]LOG]!><time="00:00:00.063-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3084" file="updatesmanager.cpp:1581">
<![LOG[No actionable updates for install task. No attempt required.]LOG]!><time="00:00:00.063-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3084" file="updatesmanager.cpp:2914">
<![LOG[Updates could not be installed at this time. Waiting for the next maintenance window.]LOG]!><time="00:00:00.063-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3084" file="updatesmanager.cpp:1600">
<![LOG[Message received: '<?xml version='1.0' ?>
<CIAssignmentMessage MessageType='EnforcementDeadline'>
<AssignmentID>{d21314f1-87e3-49a7-8cae-c8b266ea9101}</AssignmentID>
</CIAssignmentMessage>']LOG]!><time="01:22:00.071-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="4008" file="cdeploymentagent.cpp:189">
<![LOG[Deadline received for assignment ({d21314f1-87e3-49a7-8cae-c8b266ea9101})]LOG]!><time="01:22:00.087-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="4008" file="updatesassignment.cpp:923">
<![LOG[Enforcement action already in progress]LOG]!><time="01:22:00.087-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="4008" file="updatesassignment.cpp:974">
<![LOG[Message received: '<?xml version='1.0' ?>
<CIAssignmentMessage MessageType='Activation'>
<AssignmentID>{d21314f1-87e3-49a7-8cae-c8b266ea9101}</AssignmentID>
</CIAssignmentMessage>']LOG]!><time="01:22:00.087-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1624" file="cdeploymentagent.cpp:189">
<![LOG[Assignment ({d21314f1-87e3-49a7-8cae-c8b266ea9101}) received activation trigger]LOG]!><time="01:22:00.102-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1624" file="updatesassignment.cpp:729">
<![LOG[Operation (TriggerEnforce) already in progress. No need to activate.]LOG]!><time="01:22:00.102-420" date="11-23-2014" component="UpdatesDeploymentAgent" context="" type="2" thread="1624" file="updatesassignment.cpp:735">
<![LOG[CUpdateAssignmentsManager received a SERVICEWINDOWEVENT END Event]LOG]!><time="05:00:00.017-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2264" file="assignmentsmanager.cpp:277">
<![LOG[No current service window available to run updates assignment with time required = 1]LOG]!><time="05:00:00.017-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2264" file="deploymentutils.cpp:580">
<![LOG[Attempting to cancel any job started at non-business hours.]LOG]!><time="05:00:00.017-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2264" file="assignmentsmanager.cpp:527">
<![LOG[Message received: '<?xml version='1.0' ?><SoftwareUpdatesMessage MessageType='EvaluateAssignments'><UseCachedResults>True</UseCachedResults></SoftwareUpdatesMessage>']LOG]!><time="19:33:47.078-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1636" file="cdeploymentagent.cpp:189">
<![LOG[Assignment({d21314f1-87e3-49a7-8cae-c8b266ea9101}) already in progress state (AssignmentStateDownloading). No need to evaluate]LOG]!><time="19:33:47.094-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1636" file="updatesassignment.cpp:839">
<![LOG[Evaluation initiated for (0) assignments.]LOG]!><time="19:33:47.094-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1636" file="assignmentsmanager.cpp:1105">
<![LOG[CUpdateAssignmentsManager received a SERVICEWINDOWEVENT START Event]LOG]!><time="22:00:00.309-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1444" file="assignmentsmanager.cpp:277">
<![LOG[Suspend activity in presentation mode is selected]LOG]!><time="22:00:00.340-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1444" file="cliuisettings.h:163">
<![LOG[At least one user has elected to suspend non-business hours activity when in presentation mode. Checking for presentation mode.]LOG]!><time="22:00:00.340-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1444" file="deploymentutils.cpp:711">
<![LOG[Proceeding to non-business hours activites as presentation mode is off.]LOG]!><time="22:00:00.340-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1444" file="deploymentutils.cpp:722">
<![LOG[Auto install during non-business hours is disabled or never set, selecting only scheduled updates.]LOG]!><time="22:00:00.356-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1444" file="assignmentsmanager.cpp:500">
<![LOG[A user-defined service window(non-business hours) is available. We will attempt to install any scheduled updates.]LOG]!><time="22:00:00.356-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1444" file="updatesmanager.cpp:1558">
<![LOG[Attempting to install 0 updates]LOG]!><time="22:00:00.356-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1444" file="updatesmanager.cpp:1581">
<![LOG[No actionable updates for install task. No attempt required.]LOG]!><time="22:00:00.356-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1444" file="updatesmanager.cpp:2914">
<![LOG[Updates could not be installed at this time. Waiting for the next maintenance window.]LOG]!><time="22:00:00.356-420" date="11-24-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="1444" file="updatesmanager.cpp:1600">
<![LOG[CUpdateAssignmentsManager received a SERVICEWINDOWEVENT END Event]LOG]!><time="05:00:00.030-420" date="11-25-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3972" file="assignmentsmanager.cpp:277">
<![LOG[No current service window available to run updates assignment with time required = 1]LOG]!><time="05:00:00.030-420" date="11-25-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3972" file="deploymentutils.cpp:580">
<![LOG[Attempting to cancel any job started at non-business hours.]LOG]!><time="05:00:00.030-420" date="11-25-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3972" file="assignmentsmanager.cpp:527">
<![LOG[User logon system task]LOG]!><time="12:58:14.004-420" date="11-25-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3080" file="systemtasks.cpp:90">
<![LOG[Raising client SDK event for class NULL, instance NULL, actionType 11l, value NULL, user NULL, session 4294967295l, level 0l, verbosity 30l]LOG]!><time="12:58:14.004-420" date="11-25-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="3080" file="event.cpp:405">
<![LOG[EnumerateUpdates for action (UpdateActionInstall) - Total actionable updates = 1]LOG]!><time="12:58:34.955-420" date="11-25-2014" component="UpdatesDeploymentAgent" context="" type="1" thread="2960" file="updatesmanager.cpp:945">From the log: "No current service window available to run updates assignment with time required = 1"
The system doesn't have an available maintenance window to install the updates based on this message.
Jason | http://blog.configmgrftw.com | @jasonsandys -
Dear All ,
With lots of Hardship I had installed SCEp 2012 in Windows 2012 Virtual machine in WIndows 2008 Domain.
SCCM 2012 Server in Windows 2008 Server with Sql 2008 was - performing well and there was no issues until our COmpany planned to Convert the Windows 2008 Server to Windows 2012 Server ( AD is 2008)
WSUS is not Fully synching with SCCM 2012 ( previously it was )
Software Updates not pushing properly and to top all the SCEP client is not compatible with win 8.1 pro or win 2012 server
Error: Failed to download content id 16787046. Error: Access is denied.
Package:
Success: The software updates were placed in the existing package:
• Deployment Package(JUN2014)
Software updates that will be downloaded from the internet
Error: Update for Forefront Endpoint Protection 2010 Client - 4.1.522.0 (KB2780435)
Errors
Failed to download content id 16787046. Error: Access is denied.
Language Selection:
English
But the service account has full access - administrative rights and the administrator of the system
please advise on thisHi,
All the software updates downloaded failed?
Are there any errors in PatchDownloader.log? If you use Automatic deployment rule, please also check ruleengine.log.
Please add the account with Full rights to the source share (both NTFS and Share permissions) where the Deployment Package is located.
Best Regards,
Joyce
We
are trying to better understand customer views on social support experience, so your participation in this
interview project would be greatly appreciated if you have time.
Thanks for helping make community forums a great place. -
SCEP 2012 and VDI offline servicing
I've seen this question being asked before in another thread (Best practice to run Microsoft Endpoint Protection client in VDI environment) however the answer doesn't provide enough information (for me at least)
We are planning to use a Citrix XenDesktop environment with Provisioning services providing VDI clients. As far as I know the SCCM client will be installed in the VDI golden image and after some adjustments SCCM client registration will go well. We will
also use SCCM 2012 and deploy SCEP 2012 for anti-malware scanning.
SCCM 2012 provides offline servicing for Software Updates in WIM images, but what is a best practice in keeping the VDI's up-to-date? I can't find any good information about this, so maybe the answer is very simple?... Is there a way to offline service the
VDI image so Software Updates and Anti-Malware updates are injected in the image?
Or do the VDI's get updated as physical systems, at the time they are logged in to the network, discarding all changes when logging off. This doesn't seem the right way to go.
Any help would be appreciated.
thx. NielsI struggled with this same problem for a while, and likewise didn't find a great answer anywhere. In our case, this is for an RDS VDI environment, but the solution I ended up employing should work anywhere.
First, set up SCCM/WSUS to download the updates to a UNC share (if you haven't already; here's a helpful guide:
http://blog.thesysadmins.co.uk/sccm-2012-scep-unc-definition-updates-automation-powershell.html). Also, create an antimalware policy for the VDI machines with the definition updates source set to UNC only, and set the UNC Path section accordingly.
Here's the key part: create a scheduled task in your master image to run based on boot or resume (RDS puts the VDI VMs in a Saved state rather than Off). Here are the settings I used for the task:
General tab: I set it to run as the SCCM Network Access Account; Run whether user is logged on or not
Triggers tab: Begin the task On an event; Basic; Log: System; Source: Kernel-General; Event ID: 1 (this pops up on a startup or resume event); Delay task for: 5 minutes (during VM creation, it boots the machine for just a couple minutes, and I
didn't want this task to be interrupted by a shutdown halfway through); Enabled
Actions tab: Action: Start a program; Program/script: "C:\Program Files\Microsoft Security Client\MpCmdRun.exe"; Add arguments: -SignatureUpdate
I left the other tabs with their defaults
In RDS, the VMs on creation are spun up briefly and then put into a Saved state. It then spins up just a few, waiting for users to connect. By the time a user logs in, the machine should have the latest updates, but even if it doesn't, it should be
no more than ~5 minutes before it does.
Hope this helps!
Ryan -
I'm migrating from SCCM 2007 to SCCM 2012 R2. So far I've tested manually pushing a client which worked successfully. CCM and SCEP 2012 install just fine.
However, SCEP isn't automatically updating immediately after install, and doesn't appear to be updating based on the settings in my antimalware policy. If I manually update it works fine. I have the updates configured to only pull from Configuration
manager and to only pull every 8 hours.
Should clients automatically update after install? If so, where can I look to determine why mine aren't updating? I can see in the logs they see the definitions but aren't installing them.Hi,
Please check "Disable alternate sources (such as Microsoft Windows Update, Microsoft Windows Server Update Services, or UNC shares) for the initial definition update on client computers" in client settings.
For more information: http://support.microsoft.com/kb/2688242
Best Regards,
Joyce
We
are trying to better understand customer views on social support experience, so your participation in this
interview project would be greatly appreciated if you have time.
Thanks for helping make community forums a great place. -
SCEP 2012 R2 - Remote Distribution Point
Can I set up a SCEP 2012 web site or portal located in my DMZ that my remote users can connect to if their definition files are out of date.
I would like the portal to be made accessible so that updates can be applied by the end user manually when there AV is out of date and they can not connect to services because of the out of date files.Apologies Jeff - The following two options look good
Updates distributed from Microsoft Update – This method allows computers to connect directly to Microsoft Update in order to download definition and engine updates. This method can be useful for computers that are not often connected to the business
network.
Updates distributed from Microsoft Malware Protection Center – This method will download definition updates from the Microsoft Malware Protection Center.
Looking at them though there looks like to much for a user to do - We all know what users are like. I want something more like this to be hosted so once advised the AV files are out of data by the gateway devices the user is redirected to a page
that will present a screen like the extract below and then all user has to do is click "update" -
ConfigMgr 2012 Update Source content deleted
Greetings,
I am experiencing a problem that is appears to be the same as the old thread here:
http://social.technet.microsoft.com/Forums/en-US/bee18ffb-f779-4aa4-900d-046e7711424c/sccm-2012-source-content-gets-deleted?forum=configmanagergeneral
Rather than revive an old post, I thought it best to start my own.
We have a rather large environment (CAS +5 Primaries + Many DP's) and we are currently adding several new remote DP's each week. Each time a new DP is added it is placed in a Distribution Group and the "core" package content is sent
to it.
I have a problem where my Windows Update Packages keep failing due to content disappearing from the source folder location. This started some time ago, and is now becoming a regular event to correct. Not every day, but once a week or so.
The Update group has the updates all showing as "downloaded"
I have a report query that matches the updates to the "GUID" subfolder so I know all the content is there
I distribute the content from the CAS. Distrmgr.log shows all is good. Packagemgr.log on the Primaries show all is good
Client have been installing the updates as expected so the deployment does work
Days/weeks later, ALL the DP's will show as "failed" for that update package. Checking the distmgr.log shows that it is failing to distribute due to a missing source folder. I use my query to work out which update that subfolder GUID belongs to,
but it is already flagged as downloaded, and when trying to download it again CM just "skips" it thinking it already has the content in that package.
The "fix" is to download the same update to a new package instead. CM then does a proper check, realises it doesn't have the content and will download the update to the new package source location. I can then copy the missing GUID subfolder
from the new package into the original package and try the distribution again.
The problem now is that there are usually many folders missing, so distmgr.log will fail again on the next missing folder. Because it stops at the first error, repeating the above process is incredibly tedious when there are a lot of missing folders.
My current "solution" is to select ALL the updates that should be in the current package and download them all to a "Temp package" that isn't deployed or distributed anywhere. Then in future when the main deployment package fails, I just
"select all, copy" the contents of the temp folder into the original folder (skip duplicates) and it puts back all the missing content and distribution will work again.
We are not using ADR's for this content, although I do have an ADR for the Endpoint updates which go into a completely different distribution package.
*Something* is cleaning up or purging these folders from the source location, but I have no idea what process or mechanism this might be.
Any thoughts or suggestions most welcome.
Scott.I've found the cause, blog post write here:
http://kickthatcomputer.wordpress.com/2014/10/11/configuration-manager-update-source-content-being-deleted/
Microsoft was working with me trying to identify what was deleting the folders, however nothing was appearing as the cause.
I just realised this morning that I had used the built-in CM12 Migration function some time back to migrate update packages and groups over to our second hierarchy but hadn't updated any of the migrated content since then. The migrated packages on the second
hierarchy still point to the same source location and so whenever my original hierarchy added content to the update packages, the second hierarchy would delete it because it though it was "orphaned" content.
This is something people will have to watch out for when using the migration wizard as the same type of issues will impact things like WIM boot image packages as well where the source content can be manipulated directly by the CM12 system on one hierarchy
without the other one being aware of that change.
At the moment the options are to either
Make sure you run a "migrate changes" job whenever you make changes to updates on your source hierarchy to keep them in sync
Manually make a copy of the source content to a different folder or location, then update the package source location on the migrated packages to point to that new content (undesirable for massively large content)
Create a scripted method to schedule regular migration jobs between the hierarchies (looking into this option now) -
SCEP 2012 System Center Monitoring Pack for Linux v4.5.10.1 Problem
Hi Everyone!
We are having a problem with OpsMgr 2012 R2 and the System Center Monitoring Pack for SCEP 2012 for Linux v4.5.10.1. We have successfully deployed the Linux OpsMgr 2012 R2 agent to our test CentOS 6.5 VM as well as SCEP 2012 v4.5.10.1. We have
imported the System Center Monitoring Pack for SCEP 2012 for Linux management packs into OpsMgr 2012 R2 which is successfully discovering SCEP on our Linux VM, but when looking at the details for the monitor, it indicates that SCEP is "not found"
as seen in the following screen shot...
As seen in the following screen shots, everything else seems to be installed, configured, and working properly...
Any assistance or guidance would be greatly appreciated!
Regards,
JJMagnus_001 (big ups) and I were able to get discovery to stop failing on the Linux side of things, but the SCOM MP is still highly problematic. Their pdf guides for SCEP implementation on Linux has a bunch of typos and errors -- for example, listing
'/bin/sh' instead of '/bin/bash', and one of the lines (the one that includes "export LANG=C" won't run no matter what. When we disassembled the SCOM MP, we found that there's an extraneous space at the end of the command, current thought is
that that's causing a regex to fail within sudo. All of their commands, from what I can tell, need to be specified as NOPASSWD within sudo; if you see errors about ssh-askpass with that you can confirm that there are likely typos in their guide sourced
from the pdf. We eventually allowed '/bin/bash' to get the programs to run since we couldn't get a regex match to catch their command (which should be in a script). We are out of failures that we can discover with logging on the Linux side; it's
likely to be an error within the MP at this point.
When we look at the powershell script in the MP library, the "not found" error is the default state, set immediately after stdout is captured from the discovery script. I'm guessing that there's some problem interaction between that script
and the parsing thereof, as when we run the script locally as root we see the output that we'd expect. For all I know that's a line ending or locale problem.
Troubleshooting on the linux end is problematic, as instead of distributing a script to check on the linux side (which makes the sudo part of things much easier), the script is hard-coded within the MP. From what I understand it would need to be disassembled
and recompiled to change.
The snippet below may be of use to someone for use in their sudoers file, it will make the checks work on the linux side at least. I wouldn't recommend this for anything beyond testing, as specifying that an account can run a full bash shell as root
without a password is a terrible idea.
#replace scomactionaccount with whatever your scom action account is called
User_Alias SCOM = scomactionaccount
Runas_Alias SCOM = root
SCOM ALL = (SCOM) NOPASSWD: /opt/microsoft/scx/bin/scxlogfilereader -p
SCOM ALL = (SCOM) NOPASSWD: /bin/bash -
Wsus + Scep 2012 Defenition Updates
Hi
Im using Wsus to manage Pattern file updates for my scep 2012 clients an my proplem is that most Pattern files do get applied to my machines but like today my computers had
Pattern file (1.185.908.0) but when I check on Microsoft website they say the latest pattern file is (1.185.926.0) so I
synced my wsus to see if there where any new files available and it return with nothing new... so I manualy ran "mpam-feX64" and my client got update to (1.185.933.0) so it seems that my Wsus server is missing every other updates,,
Can it be that MS is slow to update there Wsus Store or is something wrong with my wsus.. it is configured to check for updates every hour.. I also tested to let my workstation check online for updates and the result was the same "no new pattern
files"
Best Regards
Jon G
Jón G SævarssonCan it be that MS is slow to update there Wsus Store or is something wrong with my wsus.. it is configured to check for updates every hour..
Configured for "every hour" is probably a bit excessive, but much more likely is that you've not properly configured your WSUS server and your WSUS clients to be able to get Definition Updates in a timely manner.
In addition to synchronizing WSUS at least 3x daily (every 8 hours), you also need to do the following:
Create an Automatic Approval rule for the Definition Updates update classification for the "All Computers" target group.
Enable the policy setting "Allow Automatic Updates immediate installation".
Set the CLIENT Detection Interval to 6 hours.
Lawrence Garvin, M.S., MCSA, MCITP:EA, MCDBA
SolarWinds Head Geek
Microsoft MVP - Software Packaging, Deployment & Servicing (2005-2014)
My MVP Profile: http://mvp.microsoft.com/en-us/mvp/Lawrence%20R%20Garvin-32101
http://www.solarwinds.com/gotmicrosoft
The views expressed on this post are mine and do not necessarily reflect the views of SolarWinds.
Maybe you are looking for
-
Error when filling setup table
Hi! I'm trying to fill the set-up table in R3 for SD Billing Documents. SBIW (Display IMG (Settings for App Specific Datasources --> Logistics --> Managing Extract Structures --> Initialization --> Filling in the Setup Table --> App. specific setup o
-
Proforma Invoice against delivery-F8-Output
Hi All! We have a Job work scenario. Working in ECC 6.0. Scenario: The customer gives raw material for processing. It is issued against Annexure V and when the finished product is sent back it is cleared against Annexure VI if partial or Annexure
-
Visual Hub questions (related to Apple TV) and others
Hey guys, Just bought Visual Hub to convert my stuff. What do you recommend for the settings ? Right now this is what I use : (NOTE : I translated on the fly from french so maybe it's a bit different) -To : iTunes -Optimize for : Apple TV 5.1 -Qualit
-
I am having problems with Apple TV scrambling albums while playing from iTunes. The track listing remains correct but the songs play out of order and not all of the songs seem to in place, I.e. a song that played previously under one title will play
-
I am getting message when I will try to connect with Oracle server "Unable to connect to the management server. The management server 9.2.0.1.0 production is incompatible with this client". How can I resolve this problem ?