YOLO Posted May 6, 2012 Report post Posted May 6, 2012 I'm trying to set up a lab in HTTPS mode to support Internet clients. If I want SUP to service clients outside of the network, does this mean I'll need to bring up an another server in the DMZ and set up the SUP role on the DMZ server (and not the main SCCM box)? Quote Share this post Link to post Share on other sites More sharing options...
Ocelaris Posted August 17, 2012 Report post Posted August 17, 2012 Unless you want to open up your firewall directly to your CM 2012 server, yes, usually you have a DMZ CM site server with SCUP. I'm not clear if you have the updates sitting on SCUP, or just proxy them through to the primary site... because if you lay down a GPO that says "aim at this CM 2012 server" something.corp it won't be able to reach that out on the internet. Quote Share this post Link to post Share on other sites More sharing options...