Microsoft

Microsoft Endpoint Configuration Manager Feedback

Suggestion box powered by UserVoice

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Endpoint Configuration Manager, though we canā€™t promise to reply to all posts.

Please do not use UserVoice to report product bugs or for assisted support.
If you believe you have found a product bug, please send us a bug report through the Configuration Manager Console (1806 and newer). To do this, press the šŸ™‚ button in the top right corner and choose ā€œSend a Frownā€. For more details, see https://docs.microsoft.com/en-us/sccm/core/understand/find-help.

If you require assisted support, please see https://aka.ms/cmcbsupport for more details.

Standard Disclaimer ā€“ our lawyers made us put this here ;-)
We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Microsoft Endpoint Configuration Manager feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Configuration Manager. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.


  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. WSUS Driver Package Support

    Using Windows Update and hardware ID's it would be nice to make a driver package from the latest verified updates on Windows Update. Using this you could form a driver package, then also add any further updates using inf/folder.

    To expand on this it would be nice to be able deploy updated drivers.

    14 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
    Noted  ·  sangeev responded

    Updated by bobmn for sangeev/OSD

  2. Add the ability to run Software Updates with a Stand-Alone Media

    Please add the ability to run software updates with a stand-alone media. This would allow us to add software updates to our reference images without having to use PXE.

    14 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
  3. Include DART in ConfigMgr Boot Images as standard

    Having DART included in the boot images for ConfigMgr would make remove monitoring of OS Deployments much easier without us having to manually integrate it into the boot images.

    12 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →

    Thanks for your feedback and suggestion.
    Updating status to noted – see https://docs.microsoft.com/en-us/mem/configmgr/core/understand/find-help#send-a-suggestion for an explanation of each value.

    We understand the ask and that it would reduce work for boot image maintenance. Unfortunately our team does not own DART (Diagnostics and Recovery Toolset) therefore we cannot include it as part of the boot images.

    We’ll keep this item open for the suggestion to make adding the tools an option on the boot image customization tab.

  4. Bitlocker Network Unlock with WDS-less PXE

    With Bitlocker Network Unlock, a WDS server can automatically unlock your bitlockered device without requiring the user typing the PIN at boot. (https://docs.microsoft.com/en-us/windows/security/information-protection/bitlocker/bitlocker-how-to-enable-network-unlock).
    As we all go forward using the SCCM WDS-less PXE-provider instead of WDS, it would be a good idea, if it supported Bitlocker Network Unlock, too.

    12 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
  5. Store output of run command line to TSEnv with "RunAsUser".

    Running a step as a user prevents you from using the TSEnvironment in order to store any data returned.

    The step could be anything, like getting a byte array of a certificate, ad-groups of the computer or primary user or as in this example, getting the TPM OwnerAuth from MBAM.

    I would rather store it directly in the TSEnv instead of in a temporary file and run another script to read the file just to be able to use the password, as a variable, from a ā€œRun commandlineā€-step.

    The only other workaround Iā€™ve found this far is running the stepā€¦

    11 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
  6. Allow to select WinPE language pack when you generate Boot Image

    It would be great to customize WinPE language pack when Generating standard or MDT Boot Image, like select box that will list lp.cab that are present in ADK installation folder "Assessment and Deployment Kit\Windows Preinstallation Environment\amd64\WinPE_OCs"

    11 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
  7. 10 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
  8. Allow MDT steps to be migrated when using the wizard

    The migration wizard is not able to migrate "third-party" steps in a task sequence, including Microsoft Deployment Toolkit steps. For many of my customers this a huge blocker to have a smooth migrating experience from test to the production environment. MDT steps should not be seen as "third-party" and be migrated.

    10 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
    Noted  ·  sangeev responded

    Updated by bobmn for sangeev/OSD

  9. Task Squences for User Collections made available.

    Custom Task Sequences allow for simple WMI queries for BIOS version detection. This is a nightmare when attempting to do in an Application. I am unable to deploy this task sequence to just my IT teams, and keep it hidden from regular users.

    10 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    2 comments  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →

    Updating status to Noted, see https://docs.microsoft.com/en-us/mem/configmgr/core/understand/find-help#send-a-suggestion for an explanation of each value.

    We do have user targeted task sequence in our backlog.
    I’m wondering if using Hidden Task Sequences may work for you – see task sequence variable SMSTSPreferredAdvertID
    https://docs.microsoft.com/en-us/mem/configmgr/osd/understand/task-sequence-variables#SMSTSPreferredAdvertID

    Or if the client is present on the device there is the option to use TSPLaunch.exe /TsDeploymentId: – your IT team would know the deployment ID

  10. Boundary Group Variable

    Create an OSD task sequence variable for Boundary Group(s). Ex. OSDBoundaryGroup = VPN_ABC

    10 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
    Noted  ·  sangeev responded

    Thanks for providing that detail – much appreciated.
    We agree there’s a lot of value with such an addition.

  11. Be able to Set autologon during TS for Kiosk PCs

    Hello,

    It would be wonderful if we could set Autologon during task sequence since we can create really nice provisinog package from ADK and use DISM during WinPe to set assigned access to a certain account and app.

    It would be awesome if we could somehow stop SCCM to remove autologon when TS is completed so we dont have to create workarounds after the TS is completed.

    9 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
  12. Be able to specify the deployment type when pushing applications

    One of the biggest issues I have with the new applications vs packages is the inability to specify deployment types in task sequences. I usually write 2 or 3 different DT's. One silent, one noisy (For self serve) and one uninstall.

    9 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
    Noted  ·  sangeev responded

    Updated by bobmn for sangeev/OSD

  13. Support the imaging of machines with multiple hard drives/NICS without having to uninstall/disable/remove HD's or NIC's.

    Having to unplug, remove, or disable multiple NIC's/HD's is cumbersome, especially in the server environment, not to mention techs often forget.

    9 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
    Noted  ·  sangeev responded

    Can you add more details on what the issues you encounter with multiple NICs/HDs, please?

  14. Task Sequence Media - Bootable but with content

    Allow adding content for a task sequence to a media that works like the Bootable media, if content is local and up2date use that otherwise pull from DP.

    And if this content would be stored on the media but outside the .wim file, it would not increase load time for WinPE and maybe even allow updates of single items instead of rebuild entire media to include small changes to content

    9 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
  15. Dynamic application and package deployment for prestage media

    We are trying to use prestage media to deploy images to machines on sites with little bandwidth, but still with a network connection to the corporate network.

    We have a large number of sites and our current online build uses an MDT database with Roles and Make / Model configurations for a large number of sites and hardware types.

    Within each of these, we have a number of packages and applications which are installed depending on the site / model required.

    This all works fine for an online build, however when using prestage media, even if we include the packagesā€¦

    9 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    2 comments  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
  16. Supported Move OU step in task Sequence

    A supported step to reassign a OU in a task sequence instead of having to rely on vbscripts or powershell scripts to perform this function. Seems this could be based off the network settings step easy.

    8 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
  17. OSD - Domain Recovery

    This was a great feature in MDT. If domain join fails initially, this can be used to launch a GUI informing the user or technician that the domain join failed and instructions on how to remediate this before deployment continues.

    8 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
    Noted  ·  sangeev responded

    Updated by bobmn for sangeev/OSD

  18. Add variable for controlling smsts log files

    Today, sccm will retain two copies of a task sequence log at most, and then truncate them when they reach a certain length.

    It's possible to customize this but you need to bake a file into your boot wim image. This capability should be moved into the task sequence as a new variable.

    Call it smstsnumberoflogs and SMSTSLOGROLLOVELENGTH.

    finally, zti_copylogs should be amended to copy all smsts log files, not just the first two, as it's written today.

    8 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
  19. Run Task Sequence with local administrator account context for B&C scenario

    in MDT OSD the task sequence runs with local admin context. that's why B&C are more easy in MDT because we can modify the admin user's shortcuts, pinned items, registry keys, etc... and then capture it with using the <CopyProfile> tag in the unattend.xml and have the settings copied to the default profile.
    It will have a huge impact to be able to do the same in SCCM OSD without custom scripting on the default profile that some of them aren't possible without <CopyProfile>.

    8 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
    Noted  ·  sangeev responded

    Updated by bobmn for sangeev/OSD

  20. Add support to Cloud Distribution Point for dynamically defined content

    Add the support for dynamically defined content in an OSD task sequence to Cloud Distribution point. Today in an on-prem environment you can use OSDDownloadContent.exe to pre-cache or download driver packages, BIOS packages and other items that are machine specific.

    However this functionality is not available on Cloud Gateway/Cloud DP. The sequence will execute but support for Dynamic Variables Task Sequences so we can modify the packageID in sequence and then then trigger the OSDDownloadDownloadPackages command to download that content while the sequence is running is not.

    Back in 2018 Tweeted about this https://twitter.com/PaulEAndrews/status/1030155355236560897.

    8 votes
    Vote
    Sign in
    (thinkingā€¦)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Operating System Deployment  ·  Flag idea as inappropriateā€¦  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base