Forum Discussion

m_riboli's avatar
m_riboli
Copper Contributor
May 18, 2020

tamper protecion and sccm client

Hi all, 

 

i've a very BIG PROBLEM, actually i manage my client using SCCM, and now we have decided to migrate our antivirus to Microsoft.

The migration seems to be not too difficult, but today i after checking my pilot client i see a VERY BIG PROBLEM.

when i set to manage the client using SCCM, the tamper protction label in "windows Security" disappear and if i do a get-mpcomputerstatus in powershell the option "IsTamperProtected" is se to off.

If i uninstall the client the option in windows security is not going back.

So the question is: why the SCCM client is not able to control the tamper protection ? 

Is there a way to control tamper protection?

 

Best Regards

Massimo Riboli

1 Reply

  • SteBeSec's avatar
    SteBeSec
    Iron Contributor

    Hi m_riboli ,

    as far as I know, Tamper Protection is only supportet if you manage the client with Intune: https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-antivirus/prevent-changes-to-security-settings-with-tamper-protection

    Currently there's no way to enable it if you are using SCCM/MECM.

     

    Btw: If anyone from Microsoft reads this, I would love to see this feature coming to SCCM/MECM in the near future,

     

    Best regards

    Stefan