We attempted to store the keys in AirWatch (which we also have), but ran into some issues (especially with the LTSB OS flavor that we use). One feature I am really excited about that are coming to Configuration Manager is the Integration of he MBAM server features. This has worked well for us on many systems. I was looking for pre-reqs to integrate MBAM (server) into SCCM 2211 PKI, SPNs, GPOs the works. Now when you view the properties of a computer, there will be a BitLocker tab which has recovery key information. MBAM integration step-by-step guide no BS. Then in your RSAT MMC, enable Advanced Features under the View menu. After the script has run successfully, you can refresh Internet Information Services (IIS). Job Description: Always on VPN Configuration Microsoft BitLocker Administration and Monitoring (MBAM) Defender Antivirus configuration (migrated from MECM. Add a Run Command Line to install the MBAM client (which in this instance is now included within the Configuration Manager agent setup): Command line MSIExec.exe /i MBAMClient.msi /qn Start in: C:\Windows\CCM This step is OPTIONAL. It appears to still use the MDOP MBAM client which seems to install automatically (or may need an upgrade to version 1152 I believe) in some cases where you are controlling your devices with the MECM Bitlocker policy rather than the GPO/MBAM CoreService. notice how it states MBAM recovery service installation failed. the Invoke-MBAM script is deprecated as of 2103 and it now uses a different service. Then install RSAT features for BitLocker administration. MDT, SMS, SCCM, Current Branch
0 Comments
Leave a Reply. |