Windows 10: SCCM antimalware policy not getting applied on client machine

Discus and support SCCM antimalware policy not getting applied on client machine in AntiVirus, Firewalls and System Security to solve the problem; I have added few exclusions in antimalware policy via SCCM but some how its not getting applied on client machines... Discussion in 'AntiVirus, Firewalls and System Security' started by Shashikant Yadav1, Nov 14, 2022.

  1. SCCM antimalware policy not getting applied on client machine


    I have added few exclusions in antimalware policy via SCCM but some how its not getting applied on client machines

    :)
     
    Shashikant Yadav1, Nov 14, 2022
    #1

  2. SCCM Local Policy - BITS

    Managing BITS policy for clients can be done several ways - just a few listed here:

    1. Group Policy template
    2. Local Policy template
    3. registry
    4. and more...

    SCCM client settings for BITS uses local policy to enforce the BITS agent settings.

    Consider the following scenario:

    SCCM client settings contains BITS settings for max throttle, start and stop times, etc...

    SCCM Client settings also have the "Limit the maximum network bandwidth for BITS backgrounds transfers" set to "NO" so, effectively no settings that are configured are actually being enforced.

    This is working fine. Here's the issue:

    If I fun the following command:

    GPResult /scope computer /h file.htm

    ... the output file will show that this local setting is "enabled" and appears it is enforced.

    The setting is not enforced but the reporting mechanism thinks it is. I'm considering this a bug. This burned a customer and cost them several hours of troubleshooting where this setting was coming from because they swore that SCCM was not setting it.
     
    nick.aquino, Nov 14, 2022
    #2
  3. SCCM 1802 Internet-only clients with CMG and CDP

    Have successfully deployed SCCM with CMG+CDP and both CMG and CDP show up in SCCM console as Healthy and Ready. Also have success deploying a Client Setting to existing domain-installed SCCM client which can then roam and when on the Internet they can download
    applications distributed to the CDP.

    Also, manually installed SCCM clients that are Internet-only succeed in registering with the on-prem SCCM site via the CMG.

    The breakdown (where I need help) is that Internet-only clients don't see the software deployments. I have searched every log on the client and don't see any clues and don't know how to troubleshoot.

    Please can I get some tips on how to follow the chain of steps to get an Internet-only CMG+CDP client to see available and assigned software packages?

    Thanks,
     
    John Joyner, Nov 14, 2022
    #3
  4. SCCM antimalware policy not getting applied on client machine

    Windows 10 error: "Windows couldn't connect to the Group Policy Client service. Please consult your system administrator"

    Hi Rico,

    Thank you for posting in Microsoft Community, we appreciate your interest in Windows 10.

    I understand the inconvenience you are facing with accessing the operating system.

    Do let us know the following to assist you better:

    • Which edition of Windows Operating System are you using?
    • What all the troubleshooting steps have you performed?
    • Have you installed all the pending updates on your Operating System?
    • Have you installed any third-party anti-virus software on your system?

    I suggest you to try few of the below troubleshooting steps and check if it helps.

    I suggest you to Stop the Group Policy service, restart and set it to Automatic.

    Group Policy Client service, this service is responsible for applying settings configured by administrators for the computers and users through the Group Policy component. If the service
    is disabled the settings will be applied and applications and components will not be manageable through Group Policy.

    Step 1: Stop the Group Policy Client service.

    • Press Windows Key + R on the keyboard and type
      services.msc
      , Services window gets opened.
    • Search for Group Policy Client service, right click on it and click on
      Stop.
    • Restart the computer.

    Step 2: Start the service and set it to automatic:

    • Press Windows Key + R on the keyboard and type
      services.msc
      , Services window gets opened.
    • Search for Group Policy Client service, right click on it and click on
      Properties.
    • Start the service, set
      Startup type to Automatic.

    Hope it helps. Reply to the post with an updated status of this issue for further assistance.
     
    Deepika Gowda, Nov 14, 2022
    #4
Thema:

SCCM antimalware policy not getting applied on client machine

Loading...
  1. SCCM antimalware policy not getting applied on client machine - Similar Threads - SCCM antimalware policy

  2. Group Policy not synchronizing across member domain controllers and not applying to client...

    in Windows 10 Gaming
    Group Policy not synchronizing across member domain controllers and not applying to client...: We have three domain controllers, the primary and two secondary domain controllers, Once we create group policies on the primary domain controller show to only to group policy console on the other domain controllers but they cannot be shown on sysvol folders, client computers...
  3. Group Policy not synchronizing across member domain controllers and not applying to client...

    in Windows 10 Software and Apps
    Group Policy not synchronizing across member domain controllers and not applying to client...: We have three domain controllers, the primary and two secondary domain controllers, Once we create group policies on the primary domain controller show to only to group policy console on the other domain controllers but they cannot be shown on sysvol folders, client computers...
  4. Microsoft Defender Update Source change via SCCM Antimalware Policy

    in AntiVirus, Firewalls and System Security
    Microsoft Defender Update Source change via SCCM Antimalware Policy: Hello, We are currently managing MS Defender via SCCM & currently AV signature update source is SCCM CMG. We would like to change update source to Microsoft Update & fallback as SCCM CMG. We applied separate test policy on few machines, but machines are now not updating at...
  5. Antimalware Client Version Update

    in AntiVirus, Firewalls and System Security
    Antimalware Client Version Update: Hi Team, Can you please let me know how to update Antimalware Client Version in Windows Defender AV? I tried the steps in below link, but still Antimalware Client Version is not getting updated. https://www.microsoft.com/en-us/wdsi/defenderupdates...
  6. Updating Antimalware Client Version

    in AntiVirus, Firewalls and System Security
    Updating Antimalware Client Version: Hi Team, We have come across a recent vulnerability in Microsoft Windows Defender. the Solution of the vulnerability is to update the Windows Defender Antimalware Client. Can you please let us know how to update the Windows Defender Antimalware client in Windows 10...
  7. Folder Redirection Group Policy not applied when using SCCM in Windows 10

    in Windows 10 News
    Folder Redirection Group Policy not applied when using SCCM in Windows 10: [ATTACH]In today’s post, we will attempt to resolve the issue of computers running Windows 8 and later versions may not apply Folder Redirection Group Policy […] This article Folder Redirection Group Policy not applied when using SCCM in Windows 10 first appeared on...
  8. Applying machine policies on wifi only Win 10

    in Windows 10 Network and Sharing
    Applying machine policies on wifi only Win 10: Hello, we are looking at using wifi only offices. I have a query about this though. When we had windows 7 machines, if they were not wired into the network, they wouldn't receive updated group policies because the device wouldn't connect to the network until after the user...
  9. Apply a theme through SCCM

    in Windows 10 Customization
    Apply a theme through SCCM: Not sure if this is the correct place to post this, so apologies if it is not. I have a unique situation where certain computers in my environment need a particular desktop wallpaper applied to them with a certain color background. I created a theme that would do both, but I...
  10. Defender antimalware client update

    in AntiVirus, Firewalls and System Security
    Defender antimalware client update: In Windows 10 version 1709, os build 16299.192, checking for updates shows a new update for the Windows Defender antimalware platform, to version 4.12.17007.18011 [img] Installed without a problem, no restart required. Defender before updating... [img]...