Microsoft Official Course: Trainer: Binduraj
Microsoft Official Course: Trainer: Binduraj
Trainer: Binduraj
10747-D /10748-C
SCCM 2012 R2 SP1
Deploying & Administering
System Center 2012 R2
Configuration Manager
Introduction
Binduraj
MCSE 2000, MCSA 2012, MCT
CCNA
RHCT
Microsoft Trainings
Windows Server 2003 / 2008 R2 / 2012 R2
Active Directory 2003 / 2008 R2 / 2012 R2
Exchange Server 2003 /2007/2010 /2013 /2016
SCCM 2007 /2012 R2 /1511/1602
SCVMM R2 / HyperV
PowerShell 1.0 /2.0 /3.0 /4.0
Binduraj
Microsoft Learning
Course
Course 10747
10747 D:
D: Administering
Administering System
System Center
Center
2012
2012 Configuration
Configuration Manager
Manager
Course
Course 10748
10748 C:
C: Deploying
Deploying System
System Center
Center
2012
2012 Configuration
Configuration Manager
Manager
http://www.microsoft.com/learning/
Microsoft Certification Program
http://www.microsoft.com/learning/
Course Outline
Module 1: Overview of Microsoft System Center 2012 R2
Configuration Manager
Module 4: Managing the Configuration Manager
Client
Overview of the System Center 2012 Family of Products Overview of the Configuration Manager Client /Supported
Benefits of Implementing System Center 2012 Configuration Clients
Manager in an Organization Deploying Configuration Manager Clients /Overview of the
Overview of the Configuration Manager 2012 Hierarchy Client Installation Process
What Is a Central /Primary / Secondary Site? Client Push/Software Update Point/Group
Policy/Manual/Logon Script/Software Distribution
Configuration Manager Site System Roles
Managing Client Agents
How Data Flows and Replicates in a Hierarchy
Configuring and Monitoring Client Status
Monitoring Site and Component Status
Managing Components by Using Configuration Manager
Module 5: Managing Inventory and Software
Service Manager Metering
What Are Configuration Manager Log Files? Overview of Inventory Collection
Module 2: Planning and Deploying a Stand-Alone Primary Configuring Hardware /software Inventory
Site Managing Inventory Collection/Initiating Inventory Cycle
on a Client/Viewing Inventory Results
Planning a System Center 2012 Configuration Manager Configuring Asset Intelligence/Software Metering
Stand-Alone Primary Site Deployment
Troubleshooting Inventory Collection
Extending the Active Directory Schema
Module 6: Querying and Reporting Data
Installing a Configuration Manager 2012 Site Server
Introduction to Queries
Performing Post-Setup Configuration Tasks /Verifying the
Installation/Status Messages/Configuring Boundaries and Managing Queries
Boundary Groups/Installing site System Roles Overview of SQL Server Reporting Services /Prerequisites
Module 3: Discovering and Organizing Resources for Configuration Manager Reporting /Configuring SQL
Server Reporting Services / Report Subscriptions
What Is Resource Discovery? Module 7: Managing Software Deployments by Using
Overview of Discovery Methods Packages and Programs
Active Directory® Discovery Methods/Network Configuring Software Distribution /Software Distribution
Discovery/Heartbeat Discovery? Concepts
Overview of Client Assignment Configuring Packages and Programs
Overview of User and Device Collections Distributing Content to Distribution Points
Maintenance Windows Deploying Programs to Configuration Manager Clients
Overview of Role-Based Administration /Reports on RBA
Course Outline Module 11: Managing Operating System Deployment
Module 8: Creating and Deploying Applications Overview of Operating System Deployment /Operating
System Deployment Terminology
Overview of the Configuration Manager Application Preparing the Site for Operating System Deployment
Model
Overview of Operating System Deployment Scenarios
Applications vs. Packages
Bare-Metal/In-place upgrade/Operating system refresh/side-
What Is Software Center? by-side migration
Creating Applications Capturing an Operating System Image
Deploying an Application to a User or a Device Module 12: Implementing Endpoint Protection in
Configuring the Application Catalog Configuration Manager 2012
Module 9: Managing Application Deployment Overview of Endpoint Protection in Configuration Manager
Configuring Requirements and Dependencies for
Prerequisites for the Endpoint Protection Feature
Deployment Types Configuring and Monitoring Endpoint Protection Policies
Configuring Multiple Deployment Types and User Device Client Settings for Endpoint Protection
Affinity Module 13: Managing Compliance Settings
Simulated Deployment Overview of Compliance Settings
Retiring / Uninstalling Applications /Application
Supersedence
Configuring Compliance Settings - CI/CB/CP
Viewing Compliance Results
Module 10: Deploying and Managing Software
Updates Configuring Remediation
Module 1
Configuration Manager
Manage clients on
the organizational
network and the Internet
Client
Health Reporting
Software Metering Operating System
Deployment
Endpoint
Protection Monitoring
Content
Management
Overview of Configuration Manager 2012 Site
System Roles
Default Site System Roles
Core Roles Default Optional Roles
• Site server • SMS Provider • Management point
• Component server • Site database • Distribution point
• Site system server
SMS Provider
• The SMS Provider is the interface between the Configuration
Manager console and the site database
• During Configuration Manager installation, you specify a server
where to install the SMS Provider role
• The SMS Provider role cannot be installed on a clustered SQL Server
• The SMS Provider role can be moved using site maintenance
Management Point
• Provides policy and
content location
information to
clients
• Receives data from
clients
• Each primary and
secondary site must
contain at least one
management point
• Can be configured to
use HTTP or HTTPS
Distribution Point
• Contains package source
files, operating system
images, and patches
• Can be configured to use
HTTP or HTTPS
• Now includes the PXE and
Multicast functionality
• Can be included in
Distribution Point Groups
to manage content
distribution
• Can be associated with
one or more boundary
groups
Lesson 3: Overview of the Configuration
Manager 2012 Optional Site System Roles
• Application Catalog
• Asset Intelligence Synchronization Point
• Endpoint Protection Point
• Enrollment Point and Enrollment Proxy Point
• Fallback Status Point
• Out of Band Service Point
• Reporting Services Point
• Software Update Point
• State Migration Point
• System Health Validator Point
• Planning for Role Placement
Application Catalog
Application catalog is
implemented using two
roles:
1. Application Catalog
web service point
Provides software
information from the
software library
2. Application Catalog
website point
Web interface for end
users
• Both roles can be
configured for HTTP or
HTTPS
Asset Intelligence Synchronization Point
• Can be installed only at the
top of a hierarchy on a
central administration site
or stand-alone primary site
• Synchronizes asset
information with System
Center online
• Data generated from asset
intelligence is used to
create reports about:
Software families
Software categories
Specific software titles
• Asset intelligence
information is viewed in
reports
Endpoint Protection Point
• Can be installed only on a
central administration site
or Stand-alone Primary site
• You must accept a separate
license agreement when
installing
• You can choose your level
of participation with the
Microsoft Active Protection
Service:
No Participation
Basic membership
Advanced Membership
Enrollment Point and Enrollment Proxy Point
• Provide mobile device
depth management
functionality
The enrollment point
processes requests and
interacts with the
Configuration Manager
database
The enrollment proxy
point receives mobile
device enrollment
requests and forwards
them to the enrollment
point for processing
• The mobile device then
downloads the client from
the enrollment proxy
point
Fallback Status Point
• Fallback status point:
Used by CCMSetup to
send state messages to
the site server during
client installation
Uses only HTTP
• Clients can send state
messages when they
cannot connect to a
management point
Out of Band Service Point
• Out of band management
allows the management
of computers that have
the Intel vPro chipset and
have a supported version
of Intel AMT
• Before adding the out of
band service point to a
site server, you must
install a certificate that
supports AMT Provisioning
Reporting Services Point
• Is installed on a server
running the Microsoft SQL
Server Reporting Services
(SSRS)
• Provides tools and
resources to use the
advanced reporting
capabilities of SSRS
• New reports can be created
using the Reporting
Services Report Builder
Planning for Reporting Services
• Is installed on a server
running SSRS
• Provides tools and
resources to use the
advanced reporting
capabilities of SSRS
• New reports can be
created by using the
Reporting Services
Report Builder
• System Center 2012 R2
Configuration Manager
supports role-based
administration for reports
Software Update Point
• WSUS 3.0 or above must be
installed on the site system
that will host the Software
Update point
• You can install one software
update point per site
• Install the software update
point in the central
administration site first
• Install the software update
points in each child and
secondary site
• Each secondary site should
synchronize with its parent
• The CAS should synchronize
with Microsoft Update
Planning Roles for Operating System Deployment
State Migration Point
• A state migration point
is used for the side-by-
side operating system
deployment scenario
• The in place upgrade
scenario can use the
state migration point
or local storage
• You can install multiple
state migration points
to support the
deployment process
System Health Validator Point
• The system health
validator point works in
conjunction with a
Network Access Protection
server to monitor client
health
• A system health validator
point must be installed on
a Network Access
protection server
• The system health
validator point will
periodically query the
network access protection
server for health state
references
Overview of Role Placement
Primary
Site Primary Primary
Site Site
Secondary
Site
Secondary
Site
Overview of the System Center 2012 R2
Configuration Manager Hierarchy
Central administration site SQL database
To
To use
use Configuration
Configuration Manager,
Manager, you
you must
must have
have at
at least
least one
one
primary
primary site
site
Primary sites:
A secondary site:
• Is optional
• Must be in a child relationship to a primary site, which is set in the
secondary site during installation
• Is used when network bandwidth usage needs to be controlled
• Requires SQL Server Express or a SQL Server database to store
configuration information
• Replicates its collected client data to its parent site using file-
based replication
• Does not support client assignment
• Consists of one or more systems hosting various site system roles
Overview of Configuration Manager Sites
Install a central administration site to:
Primary Primary
Site Site
Distribute Distribute
content content
Using
Using a
a secondary
secondary site
site Using
Using a
a distribution
distribution point
point
Considerations for Implementing Configuration
Manager Sites
Install a stand-alone primary site when you have:
A primary site:
• Supports up to 250 secondary sites
• Supports up to 250 distribution points
• Supports up to 10 management points
• Supports up to 50,000 clients when SQL Server is on the site server
• Supports up to 100,000 clients when SQL Server is on a separate computer
A secondary site:
• Supports up to 250 distribution points
• Supports a single management point located on site server
• Supports communications from up to 5,000 clients
What Are Global and Site Data Types?
Global data is created by the administrator
• Includes collection rules, package metadata, software update
metadata, deployments, security scopes, and other objects
• Replicates to central administration site, all primary sites, and
secondary sites (subset of global data) using SQL replication
•• SQL
SQL Replication
Replication is
is automatically
automatically configured
configured at
at installation
installation
•• Secondary
Secondary sites
sites receive
receive a
a subset
subset of
of global
global data
data
Global
Global data
data is
is configuration
configuration Site
Site data
data is
is operational
operational
information
information information
information
Primary
Primary Site
Site
Secondary
Secondary Site
Site
Parent-child
file-based replication
Secondary-to-secondary
file-based replication
Implementing Configuration Manager 2012 for a
Global Organization
Example of a complex hierarchy implementation:
Primary
sites
Remote
Secondary Distribution
sites Point
Configuration Manager in a Global Organization
Primary Sites
Remote
Secondary Distribution Point
Sites
How Data Flows and Replicates in a Hierarchy
Central Administration
Site
Primary
Site Global Data
Primary
Site
Secondary Site Data
Site
Software
Software
• Site server Update
Update Site
Site
Point
Point Server
Server
• Site database Site
Site
• Management point Database
Database
• Distribution point
• Reporting services point
• Software update point
• Fallback status point
• Other roles as required
Implementing Configuration Manager 2012 for a
Medium-to-Large Organization
A primary site typically includes:
Software
• Site server Update Point Site Server
Site
• Site database Database
• Management point
• Distribution point
• Reporting services point
• Software update point
• Fallback status point
• Other roles as required
Secondary Remote
Secondary sites include: Site Server Distribution
Point
• Management point
• Distribution point
SCCM 2012
Quick overview
Infrastruct
Hierarchy Applicatio
ure
changes n Model Changes
●
One type of distribution point
●
New central administration site No more branch DPs
●
Rethink the way software is delivered ●
●
Should be first site created ●
Pull DP
●
Designed to be user-targeted (User
●
Can be added later (No in RTM Possible ●
Cloud DP
Device Affinity)
with SP1) ●
PXE is a property of the DP, more scalable
●
Supports dependencies, supersedence,
●
One level of primaries ●
Server 2003 and later, Vista SP2 and later
requirements, detection, uninstall
●
One level of secondaries (x86 and x64)
●
Multiple deployment types, depending
●
Settings and security don’t need to be ●
Single instance content library
on the situation
defined at the site level ●
WebDAV no longer used
●
Standard install, App-V, etc.
●
Can be more granular ●
Target the app, let ConfigMgr pick the Site servers are 64-bit only (except DP)
●
Replication uses SQL instead of inboxes ●
deployment type ●
New console
●
Secondaries need SQL ●
Software Catalog for self-service ●
New DCM “Set” capability
●
Boundaries need to be grouped ●
Old-style ●
Remote control with Ctl-Alt-Del
●
Multiple types too (content vs. client
package/program/advertisement can ●
SQL Reporting only
assignment)
still be used, but should be transitioned ●
GUI-based inventory config
●
Collections are global ●
No more SMS_DEF.MOF
Module 2
Planning and Deploying a
Stand-Alone Primary Site
Module Overview
• Planning a System Center 2012 Configuration Manager
Stand-Alone Primary Site Deployment
• Preparing to Deploy a Configuration Manager 2012
Primary Site Deployment
• Installing a Configuration Manager 2012 Site Server
• Performing Post-Setup Configuration Tasks
• Tools for Monitoring and Troubleshooting a Configuration
Manager 2012 Installation
Lesson 1: Planning a System Center 2012 Configuration
Manager Stand-Alone Primary Site Deployment
Task Description
Document your
• Identify and document network locations
and link speeds
network and computing
environment
• Determine the number of clients to be
managed
• Identify the Configuration Manager features
Identify business that will be used
requirements • Document administrative, user, and
security requirements
• Identify the number of sites to be installed
Design site architecture
• Identify the site system roles to be
installed
• Determine the site system configuration
• Identify the need to restructure the
Identify migration Configuration Manager hierarchy
requirements • Identify objects to migrate
• Identify sites and clients to migrate
Planning a Configuration Manager 2012 Stand-
Alone Primary Site Deployment
A
A stand-alone
stand-alone primary
primary site
site can
can span
span
multiple
multiple servers
servers and
and network
network locations
locations
Site Naming Conventions
Site code
Site name
Configuration
Configuration Manager
Manager 2012
2012 uses
uses the
the same
same classes
classes and
and
attributes
attributes as
as Configuration
Configuration Manager
Manager 2007
2007
Prerequisite
Prerequisite Checker
Checker is
is a
a tool
tool that
that verifies
verifies
server
server readiness
readiness to
to host
host a
a specific
specific site
site system
system role
role
Prerequisite Checker:
Results
Pane
Workspaces
Preview
Pane
The Assets and Compliance Workspace
Pause Button