Quantcast
Channel: Configuration Manager 2012 - Security, Updates and Compliance forum
Viewing all 6382 articles
Browse latest View live

Re-Download Security Updates?

$
0
0

/So I downloaded the updates, and assigned to Security groups but it failed when I tried to deployed to clients. And then I decided to deleted the Update group including deployment package and Collection so I can retry from scratch. But now when I search for updates the update that I download they are not showing. I even tried selecting criteria with download, installed, deployed but no luck?

Any suggestion How I can re-download them?


SCCM 2012 R2 -- Windows Update Reporting

$
0
0

Hi All,

I have a requirement in reporting.

The default reporting does not provide "Install date" of the patches pushed. I know we can do it with custom report and I followed the below article and i was able to pull the information for "One Particular Machine"

http://blogs.msdn.com/b/steverac/archive/2013/01/13/modifying-a-report-to-merge-software-update-deployments-with-updates-delivered-through-standard-software-distribution.aspx

I want to know is there any way to pull the installed date information in a report, by selecting the "Collection" or "Update Group"

Can some one guide me on this.

Regards,

Ritesh Hegde.


Thanks & Regards, Ritesh Hegde, Exchange,BPOS, FOPE, O365.

C Drive is full due to Software distribution folder in client PC's - SCCM distributing Updates continuously to client PC's

$
0
0

C Drive is full due to Software distribution folder in client PC's - SCCM distributing Updates continuously to client PC's

Thanks in advance

Regards,

NTRao

Software Update Verification very slow

$
0
0

Hi

We use SCCM Feature Software Updates to install Windows Updates on Servers an Clients.

The Installation of the Updates is quick, but the Verification of the Updates can be very slow or running in a timeout. In the Windows Update Log you can see, that Updates are successfully installed.

Has anybody experience with this issue?

Thanks, Daniel

Auto Deployment Rule download Failed

$
0
0

Hello together,

I already postet a simmilar question. So sorry for the duplication. I found an interesting article which is listing the needed logs for SCCM 2012 R2. The last time I was told to search for logs that I xould not found which were responding to SCCM 2007.

So here's the Link http://www.acupofit.com/2013/08/sccm-logs-to-check-when-troubleshooting.html

So I checked all listed LOGs and I found the following which I thought is interesting.

WSYNCMGR.LOG:

Sync failed: UssCommunicationError: WebException: Unable to connect to the remote server ---> System.Net.Sockets.SocketException: No connection could be made because the target machine actively refused it 134.170.53.29:443~~at System.Net.HttpWebRequest.GetRequestStream(TransportContext& context). Source: Microsoft.SystemsManagementServer.SoftwareUpdatesManagement.WsusSyncAction.WSyncAction.SyncWSUS	SMS_WSUS_SYNC_MANAGER	4/10/2015 8:01:59 AM	5628 (0x15FC)
STATMSG: ID=6703 SEV=E LEV=M SOURCE="SMS Server" COMP="SMS_WSUS_SYNC_MANAGER" SYS=SITESERVER.services.internal SITE=000 PID=3692 TID=5628 GMTDATE=Fr Apr 10 06:01:59.099 2015 ISTR0="Microsoft.SystemsManagementServer.SoftwareUpdatesManagement.WsusSyncAction.WSyncAction.SyncWSUS" ISTR1="UssCommunicationError: WebException: Unable to connect to the remote server ---> System.Net.Sockets.SocketException: No connection could be made because the target machine actively refused it 134.170.53.29:443~~at System.Net.HttpWebRequest.GetRequestStream(TransportContext& context)" ISTR2="" ISTR3="" ISTR4="" ISTR5="" ISTR6="" ISTR7="" ISTR8="" ISTR9="" NUMATTRS=0	SMS_WSUS_SYNC_MANAGER	4/10/2015 8:01:59 AM	5628 (0x15FC)
Sync failed. Will retry in 60 minutes	SMS_WSUS_SYNC_MANAGER	4/10/2015 8:01:59 AM	5628 (0x15FC)
Setting sync alert to active state on site 000	SMS_WSUS_SYNC_MANAGER	4/10/2015 8:01:59 AM	5628 (0x15FC)
Sync time: 0d00h00m38s	SMS_WSUS_SYNC_MANAGER	4/10/2015 8:01:59 AM	5628 (0x15FC)
Wakeup for a polling cycle	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:01:59 AM	5628 (0x15FC)
Starting Sync	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:01:59 AM	5628 (0x15FC)
Performing sync on retry schedule	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:01:59 AM	5628 (0x15FC)
Read SUPs from SCF for NE-SCCM-02.services.internal	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:01:59 AM	5628 (0x15FC)
Found 1 SUPs	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:01:59 AM	5628 (0x15FC)
Found active SUP NE-SCCM-02.services.internal from SCF File.	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:01:59 AM	5628 (0x15FC)
STATMSG: ID=6701 SEV=I LEV=M SOURCE="SMS Server" COMP="SMS_WSUS_SYNC_MANAGER" SYS=SITESERVER.services.internal SITE=000 PID=3692 TID=5628 GMTDATE=Fr Apr 10 07:01:59.854 2015 ISTR0="" ISTR1="" ISTR2="" ISTR3="" ISTR4="" ISTR5="" ISTR6="" ISTR7="" ISTR8="" ISTR9="" NUMATTRS=0	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:01:59 AM	5628 (0x15FC)
Synchronizing WSUS server NE-SCCM-02.services.internal	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:02:00 AM	5628 (0x15FC)
STATMSG: ID=6704 SEV=I LEV=M SOURCE="SMS Server" COMP="SMS_WSUS_SYNC_MANAGER" SYS=SITESERVER.services.internal SITE=000 PID=3692 TID=5628 GMTDATE=Fr Apr 10 07:02:00.870 2015 ISTR0="" ISTR1="" ISTR2="" ISTR3="" ISTR4="" ISTR5="" ISTR6="" ISTR7="" ISTR8="" ISTR9="" NUMATTRS=0	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:02:00 AM	5628 (0x15FC)
Synchronizing WSUS server ne-sccm-02.services.internal ...	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:02:00 AM	11276 (0x2C0C)
sync: Starting WSUS synchronization	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:02:00 AM	11276 (0x2C0C)
Sync failed: UssCommunicationError: WebException: Unable to connect to the remote server ---> System.Net.Sockets.SocketException: No connection could be made because the target machine actively refused it 134.170.58.121:443~~at System.Net.HttpWebRequest.GetRequestStream(TransportContext& context). Source: Microsoft.SystemsManagementServer.SoftwareUpdatesManagement.WsusSyncAction.WSyncAction.SyncWSUS	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:02:39 AM	5628 (0x15FC)
STATMSG: ID=6703 SEV=E LEV=M SOURCE="SMS Server" COMP="SMS_WSUS_SYNC_MANAGER" SYS=SITESERVER.services.internal SITE=000 PID=3692 TID=5628 GMTDATE=Fr Apr 10 07:02:39.889 2015 ISTR0="Microsoft.SystemsManagementServer.SoftwareUpdatesManagement.WsusSyncAction.WSyncAction.SyncWSUS" ISTR1="UssCommunicationError: WebException: Unable to connect to the remote server ---> System.Net.Sockets.SocketException: No connection could be made because the target machine actively refused it 134.170.58.121:443~~at System.Net.HttpWebRequest.GetRequestStream(TransportContext& context)" ISTR2="" ISTR3="" ISTR4="" ISTR5="" ISTR6="" ISTR7="" ISTR8="" ISTR9="" NUMATTRS=0	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:02:39 AM	5628 (0x15FC)
Sync failed. Will retry in 60 minutes	SMS_WSUS_SYNC_MANAGER	4/10/2015 9:02:39 AM	5628 (0x15FC)

RULEENGINE.LOG

Failed to download the update from internet. Error = 16389	SMS_RULE_ENGINE	4/9/2015 4:56:50 PM	9660 (0x25BC)
Failed to download ContentID 16936340 for UpdateID 16953422. Error code = 16389	SMS_RULE_ENGINE	4/9/2015 4:56:50 PM	9660 (0x25BC)
Failed to download any update	SMS_RULE_ENGINE	4/9/2015 4:56:50 PM	9660 (0x25BC)
Failed to download update contents.	SMS_RULE_ENGINE	4/9/2015 4:56:50 PM	9660 (0x25BC)
No new update was added to the package. Package "00000116" would not be updated.	SMS_RULE_ENGINE	4/9/2015 4:56:50 PM	9660 (0x25BC)
Failed to run the DownloadAction for the AutoDeployment.	SMS_RULE_ENGINE	4/9/2015 4:56:50 PM	9660 (0x25BC)
STATMSG: ID=8706 SEV=E LEV=M SOURCE="SMS Server" COMP="SMS_RULE_ENGINE" SYS=SITESERVER.services.internal SITE=000 PID=3692 TID=9660 GMTDATE=Do Apr 09 14:56:50.872 2015 ISTR0="SMS Rule Engine" ISTR1="Failed to download one or more content files" ISTR2="" ISTR3="" ISTR4="" ISTR5="" ISTR6="" ISTR7="" ISTR8="" ISTR9="" NUMATTRS=0	SMS_RULE_ENGINE	4/9/2015 4:56:50 PM	9660 (0x25BC)
CRuleHandler: Enforcing Actions for Rule 16777230 failed!	SMS_RULE_ENGINE	4/9/2015 4:57:03 PM	9660 (0x25BC)
CRuleHandler: ResetRulesAndCleanUp()	SMS_RULE_ENGINE	4/9/2015 4:57:03 PM	9660 (0x25BC)
Updated Failure Information for Rule: 16777222	SMS_RULE_ENGINE	4/9/2015 4:57:03 PM	9660 (0x25BC)
Updated Failure Information for Rule: 16777223	SMS_RULE_ENGINE	4/9/2015 4:57:03 PM	9660 (0x25BC)
Updated Failure Information for Rule: 16777224	SMS_RULE_ENGINE	4/9/2015 4:57:03 PM	9660 (0x25BC)
Updated Failure Information for Rule: 16777225	SMS_RULE_ENGINE	4/9/2015 4:57:03 PM	9660 (0x25BC)
Updated Failure Information for Rule: 16777226	SMS_RULE_ENGINE	4/9/2015 4:57:03 PM	9660 (0x25BC)
Updated Failure Information for Rule: 16777227	SMS_RULE_ENGINE	4/9/2015 4:57:03 PM	9660 (0x25BC)
Updated Failure Information for Rule: 16777228	SMS_RULE_ENGINE	4/9/2015 4:57:03 PM	9660 (0x25BC)
Updated Failure Information for Rule: 16777229	SMS_RULE_ENGINE	4/9/2015 4:57:03 PM	9660 (0x25BC)
Updated Failure Information for Rule: 16777230	SMS_RULE_ENGINE	4/9/2015 4:57:03 PM	9660 (0x25BC)

Patchdownloader.log

Failed to move C:\Windows\TEMP\CAB7665.tmp to \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050.1\windows8.1-kb3000850-x64.cab, error 32	Software Updates Patch Downloader	4/9/2015 4:53:13 PM	11328 (0x2C40)
Will retry in 5000ms	Software Updates Patch Downloader	4/9/2015 4:53:13 PM	11328 (0x2C40)
Successfully moved C:\Windows\TEMP\CAB7665.tmp to \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050.1\windows8.1-kb3000850-x64.cab	Software Updates Patch Downloader	4/9/2015 4:55:05 PM	11328 (0x2C40)
Renaming \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050.1 to \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050	Software Updates Patch Downloader	4/9/2015 4:55:05 PM	9660 (0x25BC)
Failed to move \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050.1 to \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050, error 64	Software Updates Patch Downloader	4/9/2015 4:56:20 PM	9660 (0x25BC)
Will retry in 10000ms	Software Updates Patch Downloader	4/9/2015 4:56:20 PM	9660 (0x25BC)
Failed to move \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050.1 to \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050, error 5	Software Updates Patch Downloader	4/9/2015 4:56:30 PM	9660 (0x25BC)
Will retry in 10000ms	Software Updates Patch Downloader	4/9/2015 4:56:30 PM	9660 (0x25BC)
Failed to move \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050.1 to \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050, error 5	Software Updates Patch Downloader	4/9/2015 4:56:40 PM	9660 (0x25BC)
Will retry in 10000ms	Software Updates Patch Downloader	4/9/2015 4:56:40 PM	9660 (0x25BC)
Failed to move \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050.1 to \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050, error 5	Software Updates Patch Downloader	4/9/2015 4:56:50 PM	9660 (0x25BC)
MoveFile() failed to rename \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050.1 to \\teg.teda\admin\SCCM\SU\Baseline\Patches\e7b56916-3356-4f59-ac71-be7ef2159050 with GetLastError() = 5	Software Updates Patch Downloader	4/9/2015 4:56:50 PM	9660 (0x25BC)
ERROR: DownloadContentFiles() failed with hr=0x80004005	Software Updates Patch Downloader	4/9/2015 4:56:50 PM	9660 (0x25BC)

As I still could not found any solutions I am asking the community again.


ooGDoo


Computers at "Unknown" for certain Windows Updates deployments.

$
0
0

We have some computers in our production environment that are behaving erratically concerning windows updates that were applied to them.

For the same 5 servers:

For our deployment of updates of January, 3 servers are compliant, and 2 are marked as unknown.

Same for the deployment in February.

For March, all computers are 100% compliant.

For another set of 10 servers:

January has 4 compliant, 1 in progress, and 5 unknown.

For February, same thing.

For March, we have 9 compliant and only 1 unknown.

Each of the servers are part of the "Client check passed/Active" category.  The servers vary from Windows Server 2003 to 2012 R2.  I can ping my distribution point from each server.  Some of the servers have had patches installed, and some didn't have anything at all installed after the deployment.  Some of them had windows updates disabled (this shouldn't affect the automatic deployments of patches through SCCM, right?), but I've enabled it and it didn't change anything.

I'm a bit at a loss on how to explain this.  I can't seem to find a pattern to why this is happening, and to those servers.

Any help is greatly appreciated.

Access to SCCM Reporting service without Console access.

$
0
0

Hi,

Is there any way to give a AD Group or a user rights to run reports without giving access to open the sccm console?

Regards,

B

SCCM Client PC's failing to download/install Windows Updates

$
0
0

Hi,

Last month I noticed that our client PC's, shortly after they had built (using SCCM Task Sequence)  were downloading and installing Windows Updates using the usual Windows Update process. What I mean is, I had Software Centre showing Updates as installing, but also had the Windows Update agent installing various updates. It was also showing in the start menu (Yellow icon saying Shut down and install updates). Now my understanding is, that that shouldn't of been happening, and only SCCM/Software Centre should be showing Windows Updates as installing.

I noticed that we had some GPO's set for Windows Updates, which I have disabled, as I believed these were not necessary. Also, I like to control my Updates via SCCM Software Update groups after testing them, and not just allow clients to grab any updates that are required and approved.

My problem now is, none of the clients are getting/installing any updates. I'm getting the following errors in the WUAHandler.log:

Unable to read existing WUA resultant policy. Error = 0x80070002.WUAHandler09/04/2015 19:03:298732 (0x221C)
Group policy settings were overwritten by a higher authority (Domain Controller) to: Server  and Policy NOT CONFIGUREDWUAHandler09/04/2015 19:03:298732 (0x221C)
Failed to Add Update Source for WUAgent of type (2) and id ({FC358571-80C5-4EAA-8A33-F79AD4C14785}). Error = 0x87d00692.WUAHandler09/04/2015 19:03:298732 (0x221C)

So, I've checked in:

HKLM\Software\Policies\Microsoft\Windowa\WindowsUpdate\ & HKLM\Software\Wow6432Node\Policies\Microsoft\Windows\WindowsUpdate 

and neither have a WSUS server set. I'm assuming this is correct?

RSOP shows all policies in \\Computer Configuration\Administrative Templates\Windows Components\Windows Update asDISABLED

GPEDIT shows \\Computer Configuration\Administrative Templates\Windows Components\Windows Update\Specify intranet Microsoft update service location asEnabled and as our server (https://XXX.XXX:8531) - I'm assuming this is what SCCM client sets as if I changed this setting and then restart the setting comes back. If it was a Group Policy conflict then I would expect to see it in RSOP.

Does anyone have any suggestions? I'm puzzled as to what to look at next. Is my first assumption of having 0 group policies configured for WSUS correct? Am I also correct in assuming Windows Updates shouldn't show in Control panel, or at the Start > Shutdown prompt, and only show in Software Centre?

Thanks, and sorry for the long winded post!



Add column for System OU name to report under Software Updates - C deployment states

$
0
0

I would like to add a column with the System OU name for the States 1-Enforcement state for a deployment report under Software Updates -C Deployments states.  I do not know sql.  Can someone please let me know that code I need to add to the report so I can get this information?  Any help would be greatly appreciated.  SCCM 2012 R2 environment.

MLStev

Failed software update returns error code 0x87D00668

$
0
0

We are using Secunia CSI to create and publish 3rd party software update packages to SCCM 2012.  I have one client computer running Windows 7 Pro x64 that is having a problem with one update.  When the user tries to install the Adobe Reader update in Software Center it fails and returns the following error.

The software change returned error code 0x87D00668(-2016410008).

I haven't been able to find any information on this error code.  I was just wondering if anyone else has encountered this error and might have any information on it??

Security Advisory 2982792 - Available for SCCM?

$
0
0
Does anyone know if the update for Security Advisory 2982792 (Digital Cert Spoofing) is going to be available in SCCM?

Orange County District Attorney

Patching in SCCM CAS & Primary Site Hierarchy

$
0
0

Hi all,

I have a doubt with the update deployment process want to clear it out with the experts -

We are currently in the process of installation & configuration of a site were we are having a CAS & 4 Primary sites. We were in the process of installing WSUS/SUP on CAS as well as on all primary sites, so that CAS syncs with MS update server fro update download & the Primary sites sync with CAS.

But what if we download all the updates on the CAS & create a deployment package for the updates - Once these things are created they will be replicated to other primary sites & then we can deploy the packages to the collection just like software deployment.

Can we do this please suggest ??

Thanks,

Pranay.

UpdateActionInstall - Total actionable updates = 0

$
0
0

Hi All,

We have SCCM 2012 R2 environment. recently I have created software update group and deployed on Server 2012 AD Domain controllers.  Software updates install successfully on 3 out of 4 servers. one server does receive deployment policy but could not install updates. I can see 'EnumerateUpdates for action (UpdateActionInstall) - Total actionable updates = 0'  in UpdateDeployment.log

what else am I missing here..? please advise.

---

Evaluation initiated for (1) assignments. UpdatesDeploymentAgent4/11/2015 3:49:45 PM5660 (0x161C)
DetectJob completion received for assignment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_538ac721-8103-4dfa-8490-f003c1dae17e) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_2bc5821b-bc25-45a5-9889-5a5aefbcca2b) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_151d671a-9851-452e-8c65-827761d98a3a) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_e6861348-6470-4b5f-8d07-97645f195f98) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_09257309-72a1-4622-b9da-610b9e037e2e) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_3e6e6845-ac26-4274-bfe2-55eb3cc347a5) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_65125aeb-3b85-490c-9d2b-02e7096450c7) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_9caac854-daeb-436f-83f8-85af4595e6e1) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_fed4dcc5-c010-40af-9969-9bf31c56a081) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_8fd6daa1-3dce-4009-baef-ee059b254020) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_73a4861b-8a6d-4af6-a978-98c337034e0f) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_1186f8d8-4212-45a0-9306-c1faf4e83206) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_ce9331c1-d6ee-43a9-bc40-53775f47895c) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_0324c79e-2603-406b-bd34-710e8af70b34) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_b579bfc9-c3d9-4712-8241-18c9b7f32af1) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_d13b8aa4-ca75-478c-bd83-1f3d40842a35) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_3fea2186-fb39-41f1-9214-55a5bb5552e6) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_7ba2e460-8f43-478a-b2c3-bd52cb73f02c) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_29c9568e-e830-4c2a-aba5-5f5a57e0fbf2) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_4a3cd85c-637d-4f9f-b74f-d15607e4e277) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_2db7bc39-ff38-4849-b28f-4c8072c48f91) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
Update (Site_9E619C50-F9F9-4DAD-A4D4-24ADF999B399/SUM_1f1d1b99-118d-40ec-bbbf-ebd759a2ddbd) added to the targeted list of deployment ({E7BD526F-E52F-44D8-8C7D-21723F39E0B9})UpdatesDeploymentAgent4/11/2015 3:52:17 PM5268 (0x1494)
EnumerateUpdates for action (UpdateActionInstall) - Total actionable updates = 0UpdatesDeploymentAgent4/11/2015 3:53:18 PM3716 (0x0E84)

SCEP not Updating

$
0
0

We are running SCCM 2012 and on some of our machines that are active and online, SCEP has not updated for a week while others have. How can I troubleshoot this issue?

Pat

SCEP and PULL DP replication.

$
0
0

Since the nature of Pull DPs operate under the premise of needing content on a source DP before they can pull the content I've run into a problem. The SCEP ADR seems to work just fine, but replication isn't. When a new definition is picked up regardless of the 3 it pull down each day the Pull DPs always error out initially. 

Some of the Pull DPs eventually pull the content but quite a few stay in an error state, and i can understand why. The deployment package is associated to two distribution point groups. One has 3 push DPs and the other has the rest or all of the SCCM 2012 DPs in it. So when you investigate the error you will see the DP saying it can't find the source content.

Some of the DPs get the content but generally almost all of the DPs will show either error or downloading. Is there a way to force the pull DPs to increase their retry interval, or a way to stagger when the pull dps try to pull the content? Others have to be running into this same problem.

Out of the 3 push dp servers server 2 is the source for the remainder of the 150 pull dps and that number is only going higher. We will be at 290 by project conclusion. Any input would be greatly appreciated.

Thanks,

-KR


Endpoint Protection Client side shows correct definition version, sever show the first one ever installed

$
0
0

Hi All

Wondering if someone could point me in the right direction.  I have one endpoint protection client (for the life of me) will not update the server with its current definition version.  

Client side shows the updated definition but the server still shows the first definition after install. 

I've re-installed EPP several times, inventory scans etc doesn't update the record in the database. 

Thank in advance...

Jeff


Software Update Group with Expired Updates

$
0
0

I might be interpreting this incorrectly, but it seems as though a machine is not installing any updates from a particular update group.

One or more of the updates are expired - Would this result in NONE of those updates deploying to the device??

Updates not Deploying

$
0
0

Hi All,

Hope u'll all be doing well, we are facing updates problem from sccm, we have 4 SCCM sites, we can easily able to deploy software applications in all the sites but we are totally unable to deploy updates to any site. Every site has its own dedicated SUP Server which is synchronizing with the upstream Central Server successfully. but when we deploy the update group of required updates, nothing just happen, updates not coming to the clients. Please advice where I should search it for a clue what logs or services I should see. Few of the client side logs pasting below.

CCMExec

>>> User is presentCCMEXEC4/6/2015 4:10:27 PM4244 (0x1094)
SystemTaskProcessor::QueueEvent(PowerChangedEx, 0) CCMEXEC4/6/2015 4:10:27 PM4244 (0x1094)
BEGIN ExecuteSystemTasks('PowerChanged')CcmExec4/6/2015 4:10:27 PM6116 (0x17E4)
Invoking system task 'PowerStateManager_PowerChanged' via ICcmSystemTask2 interface.CcmExec4/6/2015 4:10:27 PM272 (0x0110)
Invoking system task 'PwrMgmtPowerChanged' via ICcmSystemTask2 interface.CcmExec4/6/2015 4:10:27 PM272 (0x0110)
END ExecuteSystemTasks('PowerChanged')CcmExec4/6/2015 4:10:27 PM6116 (0x17E4)
BEGIN ExecuteSystemTasks('PowerChangedEx')CcmExec4/6/2015 4:10:27 PM272 (0x0110)
Invoking system task 'PwrMgmtPowerChangedEx' via ICcmSystemTask2 interface.CcmExec4/6/2015 4:10:27 PM6116 (0x17E4)
END ExecuteSystemTasks('PowerChangedEx')CcmExec4/6/2015 4:10:27 PM272 (0x0110)
TaskScheduler requested to stop Idle task.CCMEXEC4/6/2015 4:10:27 PM724 (0x02D4)
Idle task is stoppedCcmExec4/6/2015 4:10:27 PM4108 (0x100C)

FSPStateMessage Log

Failed to send FSP State message with TopicType 1300 and TopicId 1 because no FSP hostname was found in the registry.FSPStateMessage9/1/2014 9:53:22 AM516 (0x0204)
Failed to send FSP State message with TopicType 1300 and TopicId 1 because no FSP hostname was found in the registry.FSPStateMessage9/3/2014 9:55:00 AM1668 (0x0684)
Failed to send FSP State message with TopicType 1300 and TopicId 1 because no FSP hostname was found in the registry.FSPStateMessage9/5/2014 10:52:12 PM2008 (0x07D8)

LocationService Log

WSUS Path='http://SLPRS1SCCM04.mbrslp.ae:8530', Server='SLPRS1SCCM04.MBRSLP.AE', Version='162'LocationServices4/6/2015 4:11:09 PM1484 (0x05CC)
WSUS Path='http://SLPRS1SCCM04.mbrslp.ae:8530', Server='SLPRS1SCCM04.MBRSLP.AE', Version='162'LocationServices4/6/2015 4:11:09 PM1484 (0x05CC)
WSUS Path='http://SLPRS1SCCM04.mbrslp.ae:8530', Server='SLPRS1SCCM04.MBRSLP.AE', Version='162'LocationServices4/6/2015 4:11:09 PM1484 (0x05CC)

SCanAgent Log

*****WSUSLocationUpdate received for location request guid={199F6386-4FAA-4FB9-8BE3-E648697BD38F}ScanAgent4/6/2015 4:11:09 PM1484 (0x05CC)
Sources are current, but Invalid. TTL is also invalid.ScanAgent4/6/2015 4:11:09 PM4108 (0x100C)
ScanJob({225A80B9-07A1-4648-887B-C73889738490}): CScanJob::OnScanComplete -Scan Failed with Error=0x80244022ScanAgent4/6/2015 4:11:14 PM1484 (0x05CC)
ScanJob({225A80B9-07A1-4648-887B-C73889738490}): CScanJob::ScheduleScanRetry- ScanRetry Timer task successfully scheduled. Will wake up in next 1800 secondsScanAgent4/6/2015 4:11:14 PM1484 (0x05CC)
ScanJob({225A80B9-07A1-4648-887B-C73889738490}): CScanJob::OnScanComplete - Scan Retry successfully scheduledScanAgent4/6/2015 4:11:14 PM1484 (0x05CC)
ScanJob({225A80B9-07A1-4648-887B-C73889738490}): CScanJobManager::OnScanComplete- Scan has failed, scan request will be pending for scan retry cycle.ScanAgent4/6/2015 4:11:14 PM1484 (0x05CC)
CScanAgent::ScanCompleteCallback - failed at OnScanComplete with error=0x87d00631ScanAgent4/6/2015 4:11:14 PM1484 (0x05CC)

WUAHandler Log

Async searching of updates using WUAgent started.WUAHandler4/6/2015 3:54:35 PM4160 (0x1040)
Async searching completed.WUAHandler4/6/2015 3:54:39 PM5680 (0x1630)
OnSearchComplete - Failed to end search job. Error = 0x80244022.WUAHandler4/6/2015 3:54:39 PM4492 (0x118C)
Scan failed with error = 0x80244022.WUAHandler4/6/2015 3:54:39 PM4492 (0x118C)
Its a WSUS Update Source type ({3CA22EBD-A357-4D2A-96DB-C734344F62F5}), adding it.WUAHandler4/6/2015 4:11:09 PM4108 (0x100C)

Thanks in advance,

Zain


Virgo

SCUP/Shavlik Publishing content to non-ssl site after enabling ssl

$
0
0

Hi, I'm using a third party utility (Shavlik Patch) to publish third party updates in SCCM.  It uses SCUP to do the actual publishing.  I did have things working nicely a few weeks ago, and then made the decision to use SSL for update communication.   I configured SCUP, Shavlik, and WSUS to require SSL, and all communication tests came checked out OK.  My Windows updates are working just fine using SSL over port 8531, but my third party patches are no longer getting through.  When I was looking around the system today, I found that the content for the third patches is getting published to http://<WSUSServer>:8530/Content/<patchID>.   Because I have selected "require SSL" on the wsus server, it seems as if my clients can't get these updates.

If someone could point me in the right direction as to how to remedy this, I would be very grateful.

Thanks,


Kevin

Offline Servicing failed, now cannot delete files (0x80070490) in ConfigMgr_OfflineImageServicing folder

$
0
0

I had an offline servicing process fail and some files were left in the ConfigMgr_OfflineImageServicing folder. I tried cleaning up the files manually but am getting an element not found error (0x80070490). I tried taking ownership of the files and also running dism /cleanup-wim but neither have helped. Any ideas on how to delete these files?

Viewing all 6382 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>