Ideas
What features would you like to see?
All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building System Center Configuration Manager, though we can’t promise to reply to all posts.
Please do not use UserVoice to report product bugs or for assisted support.
If you believe you have found a product bug, please send us a bug report through the Configuration Manager Console (1806 and newer). To do this, press the 🙂 button in the top right corner and choose “Send a Frown”. For more details, see https://docs.microsoft.com/en-us/sccm/core/understand/find-help.
If you require assisted support, please see https://aka.ms/cmcbsupport for more details.
Standard Disclaimer – our lawyers made us put this here ;-)
We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the System Center Configuration Manager feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Microsoft Configuration Manager. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.
-
Bring Servicing Plans into Parity with WUfB/Intune or Kill Them
Since the initial release of Win 10 servicing plans they haven't kept up with their WUfB/Intune companions. While I can appreciate that many are not using servicing I feel it's a bit of a chicken and egg problem.
Specifically:
Remove SAC-T at some point (Win 10 1903 and beyond won't have it)
Increase the delay to 365
Configure the uninstall period (2-60)
Support the Insider releases.Alternatively, since WUfB is now integrated into the console just get rid of servicing plans entirely. In such case you may want to integrate the dual scan configuration into the WUfB node.
9 votes -
3rd party revised
Replace update metadata revision on 3rd party catalog synchronisation. With SCUP, it prompts if you want to replace update informations. Would be nice if this function will be implemented in SCCM Third-Party Software Updates too (automatically or manually). If update already deployed to WSUS, revisions need to be updated automatically to keep consistency.
3 votes -
retry installation of failed software updates
When installing updates via software centre, some updates may fail initially, once other updates have completed installation, software centre doesn't retry these updates but prompts for the reboot. Once the user reboots updates may try installation again which then means another reboot for the user. When initiating the install again manually it usually results in the failed updates installing correctly.
Software Cenre should retry the 'failed' updates at least once - before offering a reboot to the user as in most cases this should result in all updates being applied and the user only needing to reboot once.
Also better…
1 vote -
Add software updates package source restrictions or warnings
When a software updates package is created, the given path is cleared of any existing content. This is very destructive if an incorrect path is given. One of several things should happen:
1. Restrict the location of software updates packages if another package is using the same folder or any folder below.
2. Warn if additional content is detected in the given path for a software updates package.
3. Not clear additional content from software updates packages source locations.We recently ran into this with a co-worker making documentation and put in the root path for all of our packages…
10 votes -
Re-run failed Automatic Deployment Rule (ADR)
Sometimes (one time per week) we have a failed automatic deployment rule (ADR).
Error Code:
SMS_RULE_ENGINE
Message ID: 8706
Decription:
Content download failed.
Message: Failed to download one or more content files.
Source: SMS Rule Engine.Most of the time it is the one of the Windows Defender Definition updates. If I Re-run (Run Now) the ADR it works perfectly. Maybe there is not enough time between sync sup and run ADR. I don't know. After I click "Run Now" it's always success.
It would be great if you can add an option "Re-run failed ADR, after X minutes, try…
1 vote -
defender updates category
Defender Updates are released using a wrong category. They are tagged as "Definition updates" instead of Security (or whatever would fit in this place). The wrong category caused hundreds of machines installing the broken update 4052623.
Customers tend to deploy Updates of the category Definition updates directly to all machines using ADRs. So there is no testing upfront. Changing the category to something else would make ADRs ignore the engine updates and only deploy Definition updates.
Customers would be able to create a separate ADR for engine updates and have those being tested before deployment to all machines.4 votes -
Third party update Dell Update group by models
1. When creating new ADR only published Dell updates are searchable to be added, any updates that are not published won’t be shown in the search results. Since publish updates means having updates downloaded first, we have to manually publish the updates we need before creating the ADR selectively, which brings up issue #2;
2. Since in issue #1 we need to publish updates first before we can create new ADRs, can we group Dell updates by models, say all Dell updates for 9020, since we want to filter Dell updates only with the models we have, then we create…1 vote -
Office 365 Proofing Tools language Selection
Office 365 Proofing Tools language Selection:
In SCCM, we cannot select the Office 365 Proofing Tools Languages along with the Office 365 Client Update. But, if we choose the Office 365 languages then the respective Office 365 Proofing tools language will be selected.
Office 365 language size will have ~400-500MB and the Proofing tools language size will have 30-150MB. So, if we select ONE language, then it will be around ~450-650MB. Here most of the users will not have Office 365 language Pack, but they will use Office 365 Proofing Tools languages for Grammer, Spell check, etc.
As per the…
21 votes -
maintenance window and computer restart notification time preventing reboots
It seems that if you set a client notification time in Computer Restart client policy that exceeds the maintenance window on a collection then the devices in that collection will never force a reboot with a user logged on.
It would be nice if it gave the user the notification window but when the maintenance window comes around for the 2nd time and a reboot has not been done then the installation would happen at the start of that maintenance window.
1 vote -
Ability to deploy Software Update Groups to User Collections
It would make sense to have the ability to deploy software update groups to user collections. We have a few different user collections for "pilot" users. When we want to test new software we deploy to these "waves" of pilot users. This gives us the ability to not have to worry about maintaining the users primary device in a device based collection. We have device based affinity within client settings enabled. So if the user ever replaces their pc it gets updated within 48 hrs of system use. This will dynamically keep our pilot list updated. It's a PIA trying…
1 vote -
Enhance Filter options for Automatic Deployment Rules
The Wizard for creating automatic deployment rules is nice for people who prefer easy-to-use wizards but some of us power administrators need more options. I would like to have the opportunity to define a SQL query by myself, that gives me exactly the updates I need. The rule engine translates the filters to Sql queries. Therefore I guess it would be easy for you to implement a Text field for custom queries.
1 vote -
Add link to monitoring deployment from SUP
Whenever you are in Software Update Groups looking at the Statistics, it would be nice to click a link to view the deployment instead of having to click on Monitoring - Deployments find the deployment and view the status.
Even having the ability to right click on a SUG and View Status (like you get when you are in Deployments)
0 votes -
Stop applications reopen automatically after an update is applied by SCCM
Reopening after restarting Windows...
After the computer receives Windows Update via SCCM, the computer restarts normally and after the user redo Logon, it automatically reopens the software, such as Paint, Calculator, Google Chrome, Internet Explorer, etc.
49 votes -
compliance baselines should allow for compliance checks against software update groups
currently we can only really select individual updates for creating a compliance baseline, it would be great if we could add compliance baselines based on a software updates group
1 vote -
Install Servicing Stack Updates Before Other Updates
Currently, when servicing stack updates and regular updates are deployed in the same software update group, the patches do not apply in a determinant order. This leads to cases where a cumulative update that requires a new servicing stack is installed before the servicing stack itself.
While this can be worked around by separately deploying the servicing stack update before updates that require said servicing stack, it would be much more convenient if the update installation process checked if there are any servicing stack updates to be deployed and automatically installed them first
265 votes -
Show update size in the console
Make it possible to see update size in the console appropriate field which is always empty as of now. The only one way to see update size is by clicking out each update and checking "Content Information" tab.
1 vote -
Add Software Updates to an excisting update group that has been deployed
We now have an option to deploy software updates without downloading them, and I’m a fan as this enables many great scenarios.
But if we want to add a new software update to an existing Update Group, it still requires the update to be downloaded (see screenshot).
This should be allowed, and the following error should be a warning, and still allow us to add new software updates to an update group that has been deployed.
3 votes -
Firmware (UEFI/BIOS) Monitoring & Updates
Add the ability to query device model manufacturers for all drivers and specifically BIOS/UEFI versions. To then be deliverable as updates.
1 vote -
double notification from Office 365 updates
I would like to make the double notification optional when deploying Office 365 updates from SCCM. When the deployment has a deadline, SCCM client seems to be adding a reg key that is recognized by Office 365 client. Couple hours before the deadline, there is a notification coming from Office 365 C2R. If an user shutdown the machine before deadline, the user will see multiple notification from both O365 or SCCM next day. The order is kind of random. Worst case the Office 365 update reminder still shows after the update being applied by SCCM, because it passed the deadline…
1 vote -
Install Behaviour feature for Software Updates
Applications have the Install Behaviour tab so that any applications which need to be stopped before the application updates can do so, in order to ensure a smoother installation.
In some cases for Software Updates, we've seen the SUP procedure break some applications because the services that those applications run were still running whilst an update installed.
We would like the option for an Install Behaviour for Software Updates, so that when an update is scheduled a user would receive a prompt to ensure that the applications are closed before performing the install, and/or for it to be automatically closed…
1 vote
- Don't see your idea?