User Profile
DMobley232
Copper Contributor
Joined Nov 12, 2019
User Widgets
Recent Discussions
Re: SCCM Client Settings - Endpoint Protection
Michiel Overweel Thank You. I see what you are saying now. It looks like it is failing the CcmEval task. We currently use Crowdstrike as our primary endpoint protection, however they still want Windows Defender in the event crowdstrike fails and defender would be the backup. We do have "endpoint protection point" configured under Site system Roles. There is a Desktop Policy under Assets and Compliance>Endpoint Protection>Antimalware policies There is also a policy set for endpoint protection under Administration> Client Settings> As a test. I created a new collection of 15 computers. They were all Client Check=Failed in Client status> Client check. I created a new client setting policy under Administration> Client settings that was deployed to the 15 computers with "NO" to Manage Endpoint Protection Client on client Computers. Within 24 hours, 75% of the test computers successfully passed client check. I then changed the setting to "Yes" and 24 hours later, all the computers but 1 are back to "Failed Client Check". In the computers that failed, I did find this in the ccmeval Evaluating health check rule {B89B8B51-369F-42E6-80BC-FF46B8963B0F} : Verify/Remediate Antimalware service status for Windows 10 or up. CcmEval 9/6/2020 10:56:03 AM 39032 (0x9878) Attempting to change service status for service 'WinDefend' to 'Running'. CcmEval 9/6/2020 10:56:03 AM 39032 (0x9878) Failed to start the service 'WinDefend', hr=80004005 CcmEval 9/6/2020 10:56:03 AM 39032 (0x9878) Any ideas?9.6KViews0likes1Comment
Recent Blog Articles
No content to show