Jump to content


anyweb

How can I enable co-management in System Center Configuration Manager

Recommended Posts

Introduction

Microsoft has just released System Center Configuration Manager Technical Preview 1709, and that Technical Preview release allows you to configure co-management. Microsoft announced co-management at Microsoft Ignite (September 2017) and now with this release you can begin testing that scenario (however you still need the yet to be released Windows 10 Fall creators update edition, aka Windows 10 version 1709), so for now you'll need to test with a Windows Insider preview release.

But what is co-management ? according to Microsoft it is...

Quote

Co-management is a solution where Windows 10 devices can be concurrently managed by Configuration Manager and Intune, as well as joined to Active Directory (AD) and Azure Active Directory (Azure AD) to provide a way for you to modernize over time. It’s a solution to provide a bridge from traditional to modern management and provides you with a path to make the transition using a phased approach.

 

The graphic below shows you that scenario.

co management.png

Prerequisites

The following are general prerequisites for you to enable co-management:

Additional prerequisites for existing Configuration Manager clients

  • Windows 10, version 1709 (Fall Creators Update) and later
  • Hybrid Azure AD joined (joined to AD and Azure AD)

Additional prerequisites for new Windows 10 devices

Create some collections

In SCCM Assets and Compliance, select Device Collections and create a device collection, called Pilot co-managed devices, and alternatively one called Production co-managed devices, populate them with some devices.

collections.png

Enabling co-management

To configure Co-Management, select Administration, Cloud Services, and click on Co-Management. Enter the credentials of your Standalone MDM Intune tenant and click Sign In.

configuring co management.png

Create a Pilot co-management policy

To being with, you'll want to do a Pilot configuration of Co-Management.

Select your Pilot group of co-managed devices by clicking on Browse and selecting the Pilot co-managed devices collection created above.

staging pilot.png

On the Configure Enablement screen, set the drop down to Pilot

configure enablement.png

Click on Copy to copy that line of text, the text will be something like this:

CCMSETUPCMD="/mp:https:// CCMHOSTNAME= SMSSiteCode= SMSMP=https:// AADTENANTID= AADTENANTNAME= AADCLIENTAPPID= AADRESOURCEURI= SMSPublicRootKey="

Next, you can configure the workloads (on or off, there is no middle ground here)

workloads.png

and continue the wizard through to completion.

co managed wizard done.png

Create a Production co-management policy

After creating the above policy, and once you've completed your pilot, create a new  Production policy (Pilot will be greyed out).

production.png

Now, the drop down can choose All (or none).

All.png

and again configure workloads...

configure workloads.png

 

The created policies are shown here.

policies created.png

Recommended reading

To get more info about this topic, please review the following blog posts from Microsoft.

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...


×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.