Hello Nino_Bilic
I am into this Extented Protection (EP) thing also, because we have had a lot of issues with it with ADFS in multi-forest environments (but worked it out with MS support). We run Netscalers and NSX load balancers in our environments, so have to work things out first regarding EP.
Question I have:
If we install the update now, but can't enable the EP at this time the infrastructure is update, but not fully mitigated against all the august CVE's right. So we can install the update for now. There are no components that require EP to be enabled to function. Correct? In other words: We can split the EP enabling action so it will be enabled later and go-on with updating the servers with the patch.
I will check EP topic regularly for updates, as well as this topic.
Thanks for your reply.