SCCM in hybrid world Predrag Jelesijević Microsoft 7/6/ :17 AM

Slides:



Advertisements
Similar presentations
SCCM 2012 Features and Benefits
Advertisements

Plan Build Custom Image (Drivers, Apps, Updates) New Hardware In-Place (Refresh) WipeReimage New Windows Version or Major Image Revision.
Wally Mead Senior Program Manager Microsoft Corporation.
System Center 2012 Configuration Manager Overview User Group June
Managing Your Datacenter with Microsoft System Center Configuration Manager Kent Agerlund, ECM MVP, Coretech.
Tim Vander Kooi Systems
V-Alliance Solution Overview Years of Business Success.
ConfigMgr! Intune! Azure!ConfigMgr! Intune! Azure! Understanding Cloud Based Management Options Steven Rachui
20409A 7: Installing and Configuring System Center 2012 R2 Virtual Machine Manager Module 7 Installing and Configuring System Center 2012 R2 Virtual.
Service Pack 2 System Center Configuration Manager 2007.
System Center 2012 Configuration Manager Service Pack 1 Overview.
Cloud Management Gateway Deep Dive
Windows 2012R2 Hyper-V and System Center 2012
Microsoft Virtual Academy
1/26/2018 Hosting Windows Desktops and Applications Using Remote Desktop Services and Azure Windows Server Azure Resource Manager © 2014 Microsoft.
News in ConfigMgr EWUG 1610.
What's New in System Center Configuration Manager, Current Branch and Intune INF324a Steven Hosking.
Univa Grid Engine Makes Work Management Automatic and Efficient, Accelerates Deployment of Cloud Services with Power of Microsoft Azure MICROSOFT AZURE.
People-Centric Management
System Center 2012 Configuration Manager
Manage Windows devices in the complex hybrid cloud world of today
Cloud-First, Modern Windows Management and Security
Microsoft Virtual Academy
6/17/2018 5:54 AM OSP322 Getting the best of both worlds, making the most of SharePoint hybrid search solutions Shyam Narayan Microsoft © 2013 Microsoft.
Windows 10 and the cloud: Why the future needs hybrid solutions
Azure AD for the client management guy (or gal!)
Modernizing your Remote Access
Trial.iO Makes it Easy to Provision Software Trials, Demos and Training Environments in the Azure Cloud in One Click, Without Any IT Involvement MICROSOFT.
Managing Internet-based Client with ConfigMgr Current Branch
6/25/ :13 PM BRK1076 Make Windows devices more secure by taking them out of your existing infrastructure Chris Rhodes & Andrew Bettany MCTs & MVPs.
Microsoft Virtual Academy
Wonderware Online Cost-Effective SaaS Solution Powered by the Microsoft Azure Cloud Platform Delivers Industrial Insights to Users and OEMs MICROSOFT AZURE.
Microsoft Ignite /31/ :08 AM
Configuration Management with Azure Automation DSC
Welcome! Microsoft Tech Talks - Charlotte, NC
Newness and Coolness in Configuration MANAGER
SVTRAININGS. SVTRAININGS Features of SCCM  Application management  Provides a set of tools and resources that can help you create, manage, deploy, and.
System Center Configuration Manager: What’s New?
Running on the Powerful Microsoft Azure Platform,
The Road to Modern Management
Microsoft Virtual Academy
20409A 7: Installing and Configuring System Center 2012 R2 Virtual Machine Manager Module 7 Installing and Configuring System Center 2012 R2 Virtual.
Microsoft Ignite /20/2018 2:21 PM
Data Security for Microsoft Azure
Microsoft Virtual Academy
11/23/2018 3:03 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
Microsoft Virtual Academy
Access and Information Protection Product Overview October 2013
CloneManager® Helps Users Harness the Power of Microsoft Azure to Clone and Migrate Systems into the Cloud Cost-Effectively and Securely MICROSOFT AZURE.
Getting Started.
Getting Started.
TechEd /7/ :16 AM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered.
Microsoft Virtual Academy
Enabling the hybrid cloud with remote access appliances
Last.Backend is a Continuous Delivery Platform for Developers and Dev Teams, Allowing Them to Manage and Deploy Applications Easier and Faster MICROSOFT.
System Center Marketing
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
Day 2, Session 2 Connecting System Center to the Public Cloud
Deploying and Managing Windows To Go
System Center Configuration Manager Cloud Services – Cloud Distribution Point Presented By: Ginu Tausif.
Microsoft 365 Business Technical Fundamentals Series
Continuous Services and Connected Devices
Microsoft Virtual Academy
Productive + Hybrid + Intelligent + Trusted
11/25/ :29 AM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
Microsoft Virtual Academy
VNet and Cross-Premises Connectivity
Presentation transcript:

SCCM in hybrid world Predrag Jelesijević Microsoft 7/6/2019 11:17 AM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

7/6/2019 11:17 AM What is SCCM? Microsoft System Center Configuration Manager (SCCM) is a Microsoft product that enables administrators to manage the deployment and security of devices and applications across an enterprise. SCCM is part of the Microsoft System Center systems management suite. © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

SCCM features Application delivery PC, Mac, UNIX/Linux management Virtual desktop management Endpoint Protection Compliance and settings management Software update management Power Management OS deployment Client health and monitoring Asset Intelligence Inventory Integration with Microsoft Intune Windows 10 Current Branch/Current Branch for Business support Continuous support of new Windows 10 features More frequent and easier Configuration Manager updates Management of Windows 10 via on-premises MDM Unified end-user portal Ability to run Configuration Manager in Azure Virtual Machines Larger scale Windows 10 Long-Term Servicing Branch (July 2015) support

Internet based clients Rare to see: Internet based clients Working, but limited. Not supported is: Client deployment over the Internet - push installation Automatic site assignment. Wake-on-LAN. Operating system deployment. However, you can deploy task sequences that do not deploy an operating system Remote control. Software deployment to users Additionally, Internet-based client management does not support roaming. Roaming enables clients to always find the closest distribution points to download content.

Hybrid infrastructure

Hybrid identity

SCCM Cloud Services (1706 and above) Cloud Management: This service enables the site and clients to authenticate by using Azure AD. OMS Connector: Connect to Operations Management Suite (OMS). Upgrade Readiness Connector: Connect to Windows Analytics Upgrade Readiness. View client upgrade compatibility data. Microsoft Store for Business: Connect to the Microsoft Store for Business. Get store apps for your organization that you can deploy with Configuration Manager.

SCCM Cloud Management Allow connection to multiple public cloud tenants Can be deployed as WebApp or Native App – AD App In one Azure AD we can create only one object This is first step before deploy any other cloud services !!!! Allow you to enable and configure discovery of AAD objects ! Install SCCM client to not AD domain joined computer without certificate !

How discovery works

OMS Connector (There is difference 1706vs1702) import ConfigMgr device collections into OMS as computer groups This makes data from the SCCM environment visible in the Operations Management Suite Simplify update process for cloud located servers

Cloud-based distribution point SCCM distribution point that is hosted in Microsoft Azure – as Service As standard DP: You manage cloud-based distribution points individually or as members of distribution point groups. You can use a cloud-based distribution point as a fallback content location. You receive support for both intranet and Internet-based clients. Additionally: Content that is sent to a cloud-based distribution point is encrypted by Configuration Manager before Configuration Manager sends it to Azure. In Azure, you can manually scale the cloud service to meet changing demands for content requests by clients, without the requirement to install and provision additional distribution points. The cloud-based distribution point supports the download of content by clients that are configured for Windows BranchCache.

Cloud-based distribution point What we need to be careful about: You cannot use a cloud-based distribution point for PXE or multicast-enabled deployments. Clients are not offered a cloud-based distribution point as a content location for a task sequence that is deployed by using the deployment option Download content locally when needed by running task sequence. However, task sequences that are deployed by using the deployment option of Download all content locally before starting task sequence can use a cloud-based distribution point as a valid content location. A cloud-based distribution point does not support packages that run from the distribution point. All content must be downloaded by the client and then run locally. A cloud-based distribution point does not support streaming applications by using Application Virtualization or similar programs. A cloud-based distribution point does not support prestaged content. The distribution manager of the primary site that manages the distribution point transfers all content to the distribution point. A cloud-based distribution point cannot be configured as a pull-distribution point. Software update packages supported > 1702

Cloud-based distribution point How to deploy Add management certificate Deploy service from SCCM – wait 30 min Configure DNS resolution Activate using Client Settings

Cloud-based distribution point Example - Behind traffic manager

Cloud Management Gateway Starting from 1610 in prerelease – 1802 release

Cloud Management Gateway How to deploy The client machines will receive CMG connection info which can be verified by the following registry key – HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SMS\Client\Internet Facing

SCCM & Intune

Windows AutoPilot Windows Autopilot is a cloud-based service that does not require any special infrastructure. Here’s a typical OSD scenario using Windows Autopilot: SysAdmin creates device profile(s) Sysadmin registers the device(s) with the Windows Autopilot service SysAdmin assigns a profile to the device(s) Device is booted by end user Device is connected to network (any Network – home, work, public) User provides enterprise credentials, Language and Keyboard settings Device self configures based on assigned profiles If the organization uses Intune additional polices and applications may be delivered to the device

Goal is that we do not need to know where is user!

7/6/2019 11:17 AM Thank you! © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.