Microsoft

Microsoft Endpoint Configuration Manager Feedback

Suggestion box powered by UserVoice - Update: Microsoft will be moving away from UserVoice sites on a product-by-product basis throughout the 2021 calendar year. We will leverage 1st party solutions for customer feedback. Learn more

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Endpoint Configuration Manager, though we canā€™t promise to reply to all posts.

Please do not use UserVoice to report product bugs or for assisted support.
If you believe you have found a product bug, please send us a bug report through the Configuration Manager Console (1806 and newer). To do this, press the šŸ™‚ button in the top right corner and choose ā€œSend a Frownā€. For more details, see https://docs.microsoft.com/en-us/sccm/core/understand/find-help.

If you require assisted support, please see https://aka.ms/cmcbsupport for more details.

Standard Disclaimer ā€“ our lawyers made us put this here ;-)
We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Microsoft Endpoint Configuration Manager feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Configuration Manager. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.


  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Add 80072ee2 as a default code to the WSUS Scan Retry Error Codes

    If a SUP/WSUS server is offline or in a disaster situation, clients should be allowed to failover to another SUP.

    Currently if a SUP goes offline, clients simply will never scan again, and this is not an ideal situation.

    103 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
    completed  ·  djam responded

    This is shipped as part of #MemCM / #ConfigMgr 1910

  2. When Expiring Updates based on Supersedence Rules also Decline them in WSUS

    When SCCM expires updates based on the configured Supersedence Rules it only does so in SCCM, not WSUS. Additionally, SCCM does not approve updates in WSUS.
    Because of these two facts the WSUS Cleanup Wizard will never decline superseded updates. They are neither expired (as they are in SCCM) nor are their superseding updates approved (a requirement for the WSUS Cleanup Wizard). This causes a bloated Update Catalog that can cause very real client issues. There are scripts available to handle this situation but this is the last mile issue in regards to WSUS maintenance. If the product declined theā€¦

    95 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    6 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
  3. Allow software update installation at shutdown

    Everyone who knows WSUS misses the feature in ConfigMgr to allow the installation of software updates when the machine is shut down. This is being requested for a very long time now. For most businesses it's not the best approach to install updates only when a user is logged on. Of course the scenario changes with Windows 8 and 10, but it's still a valuable addition to the option a ConfigMgr admin should have.

    89 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    4 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
    completed  ·  djam responded

    This is implemented for win10 in SCCM 1606 Production

  4. Add Option to Bypass Proxy for Local Address for ADR Content Downloads

    It would be extremely helpful to have an option in the software update point site system to bypass a proxy for a local address. The only options today are (see Current-SUP-Proxy-Options.png):

    • Use a proxy server when synchronizing
    • Use a proxy server when downloading content by ADRs

    The issue is when an ADR tries to download a third-party software update, it will attempt to use a proxy server and often fail because the proxy doesn't route correctly to the internal WSUS server. For example in patchdownloader.log, you will see something like <Download-Error-PatchDownloader.png>.

    There needs to be an option to not useā€¦

    72 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    7 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
    completed  ·  djam responded

    Fixed in #configmgr 2002 production release, available now.

  5. Improve SCCM's built in WSUS cleanup and maintenance task

    Preview SCCM versions have a basic WSUS cleanup and maintenance task. It should be evolved and expanded to include SQL index optimization, IIS configuration optimization, and deletes of declined updates.

    61 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    completed  ·  6 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
  6. Office 365 required updates in 1710 Should Not Force Applications to Close

    Please do not force applications closed when applying office 365 updates. We have had to suspend the deployment of office 365 updates due to user impact until we can work this out. This same topic was marked as complete in the feedback section but it is still happening with SCCM 1710 and KBKB4057517 Installed.
    reference:
    https://configurationmanager.uservoice.com/forums/300492-ideas/suggestions/32048548-office-365-required-updates-in-1706-should-not-for

    Also I have not seen any user presented countdowns when the deadline approaches. Thanks.

    60 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    completed  ·  7 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
  7. Rework express updates for faster client installation

    Per: https://docs.microsoft.com/en-us/sccm/sum/deploy-use/manage-express-installation-files-for-windows-10-updates

    "Using express installation files provides for smaller downloads and faster installation times on clients."

    Through a case I opened with Microsoft, it was communicated to me that the current express update design is solely meant to reduce network bandwidth. There is no promise of expedited installation time. This is misleading and limits the purpose of express updates for remote office scenarios.

    Additionally the express update deltas have to be decompressed and recombined in order to complete the installation which requires significant CPU usage.

    The combination of these issues causes express updates to provide little benefit to customers inā€¦

    58 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    4 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
    completed  ·  djam responded

    There is a 18x improvement in 1706, in our internal testing.

  8. Set Maximum Run Time on Cumulative Update for Windows Server 2016 > 10 minutes

    Cumulative Updates for Windows Server 2016 sync with a maximum run time of 10 minutes every month. The same cumulative update for Windows 10 1607 is set to 60 minutes.

    Could you set the Server 2016 to 60 minutes instead of 10? This update never completes in less that 30 or 45 minutes.

    35 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    13 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
  9. Introduce the Ability to patch Click to Run Applications like Office 365

    Currently Office 365 can't be patched with WSUS, instead you have to have your clients either contacting the Internet (not very good option for large enterprise), or you will have to distribute the new updated version on shared folders and define the new update source. it would be interesting to be able to use WSUS also for C2R apps.

    27 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    3 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
  10. Software Update Error after Installing Feature Update 0x80070422

    When Installing Feature Update 1607 or 1703 via WSUS and Software Update Group the clients System Center reports error 0x80070422.
    The error is reported, even the client installed the feature update fully successful. This is caused, by a delay or not running Services after the first boot of the Client after the Feature update. A solution could be, that the ccmexec process waits longer for the Windows update Service to Startup or Trigger the start of the Windows update Service itself.

    13 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
  11. Initiate update deployment eval post reboot after install from Software Center

    When a user installs updates from Software Center only the updates that were selected to be installed are evaluated for their state post reboot. The whole deployment those updates were in, even if all updates in the deployment were selected, will not be queried for compliance post reboot. This causes a delay in the deployment compliance reporting as you need to wait for the deployment to be evaluated on schedule. In some instances this could be days. Running evaluation on the deployments those selected updates were in post reboot would solve the reporting delay.

    11 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    completed  ·  0 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
  12. Windows 10 Dashboard - 1703 shows as "other"

    Windows 10 1703 CB versions are showing as "other" on the Windows 10 Servicing Dashboard. Also not even represented in the Windows 10 timeline yet.

    11 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    3 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
  13. Co-Management for a Dedicated Collection

    It would be nice to use Co-Management not for all Win10 1709 devices but only for a dedicated set represented in ConfigMgr as a collection. It would be easier for big customers to start testing.

    8 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
    completed  ·  djam responded

    This can be done in 1710 by using the pilot functionality.

  14. Software Updates client download from Windows Update

    Add an option to software updates deployments to force targeted clients to always download update content from Microsoft Update (regardless of availability on a DP).

    6 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    2 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
    completed  ·  djam responded

    This is fixed and available in #sccm 1810

  15. Clients should automatically switch between SUPs / WSUS

    Boundary awareness for SUPs / WSUS

    Example:
    - Clients do not switch automatically to Secondary Site WSUS, if the Secondary Site was installed later as the Primary Site
    - Travellers / VPN connection within the company network
    - No automatic failback if Secondary Site server was done
    etc.

    see also MS Support Case 115121413489660

    6 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
    completed  ·  djam responded

    SUPS are now boundary aware in 1702. They do not aggressively switch immediately, due to network cost of changing scan source – but they will more intelligently switch. You can force the switch by using the right click actions in the console UI.

  16. phased deployments for software updates

    Extend the Phased Deployments feature to include Software Updates if it is not already planned.

    6 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    completed  ·  2 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
  17. SCUP support or integration in SCCM Current Branch with Windows Server 2016

    SCUP support or integration in SCCM Current Branch with Windows Server 2016

    6 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
    completed  ·  djam responded

    With today’s release of SCUP, this should be resolved.

  18. Select a collection and trigger clients to run a software update deployment evaluation cycle

    Select a collection and trigger clients to run a software update deployment evaluation cycle. For those scenarios where you need clients to check for updates (now) prior to the default schedule (5 days) that you setup in client settings.

    3 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    completed  ·  0 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
  19. Office 365 Update from CDN

    I'd like to propose something similar to the Software Updates Feature
    (If software updates are not available on distribution point in current, neighbor or site boundary groups, download content from Microsoft Updates) but for Office 365 CDN updates.

    That way IT can control when newer versions of Office 365 are deployed on internet managed clients without having to publish a 1gb package on a Cloud Distribution Point monthly.

    3 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
    completed  ·  Rae Goodhart responded

    If the deployment has the setting to “fallback to Microsoft Update”, in Office case it will actually allow falling back to office CDN. This has been true for a very long time, not a new change.

  20. Server Groups: release lock when supressing reboot

    The pre-release feature "Server Groups" is designed to set a client lock when the "Cluster Settings" in a Device Collection are defined. The lock removes itself when the update sequence has completed to allow the next client to process updates.

    In my case the update sequence does not technically finish because the environment suppresses reboots from Software Updates. This is configured in the ADR/Software Update Group.

    Therefor the client lock state does not change from status 1 (have lock) to status 2 (released lock). Other devices in the collection are stuck on status 0 (waiting for lock).

    Please make theā€¦

    3 votes
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Software Updates  ·  Flag idea as inappropriateā€¦  ·  Admin →
    completed  ·  djam responded

    The lock orphaning behavior is fixed in #MEMCM 2002

  • Don't see your idea?

Feedback and Knowledge Base