Jump to content


Rocket Man

SCCM2012 SP1 FEP issue

Recommended Posts

Does anyone else have the same problem as I do. I had noticed this in my test setups also and really thought the issue would have had been resolved in RTM sp1.

 

I create a custom antimalware policy and deploy it. The FEP client is installed successfully. If I check about system Center Endpoint Protection it still shows up as the default antimalware policy. The strange thing is though if I change a setting on my custom policy like the scan time and force a machine policy and retrieval it changes to the time I set, so it must be getting the custom policy but reporting false.

 

Also when I check the Antimalware policies tab on any of the systems it shows that the default client antimalware policy is successful and the custom has not reported as successful just blank in the policy application state. See below:

 

FEP.PNG

 

Anybody else having similar issues?

 

Thanks

Share this post


Link to post
Share on other sites

Ok back to basics(Another admin had removed the deployment of this policy from the collection :huh:, once deployed out again the machines are now showing that the Custom Antimalware Policy has succeeded, but still on the clients when I open up About System Center it still says that the policy applied is the default policy.

 

fep.PNG

Share this post


Link to post
Share on other sites

Ok i am not alone on this one, it was driving me nuts as my non-SP1 sites are showing the correct policies in both console and registry on local machine, but not SP1..

http://social.technet.microsoft.com/Forums/en-GB/FCSNext/thread/4ff3da21-03bb-4a75-b85c-6090c1f03375

 

maybe there will be a solution soon, but it will only be a cosmetic solution to change the default antimalware policy on the client to show the custom antimalware policy!!

Share this post


Link to post
Share on other sites

Policy Name=Antimalware Policy is how your Policy will be listed as and from SP1, unfortunately due to the client side merge changes we no longer see the antimalware policy name listed via the Client side gui, instead it will list the generic Antimalware Policy

 

to see a list of which policies are applied to the machine you can check the registry see screenshot

 

HKLM\SOFTWARE\Microsoft\CCM\EPAgent\LastAppliedPolicy

 

lastappliedpolicy.png

 

or use a reg query statement like so

 

reg query HKLM\SOFTWARE\Microsoft\CCM\EPAgent\LastAppliedPolicy /f 2 /d 
 

 

 

reg query.png

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...


×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.