Microsoft

Microsoft Endpoint Configuration Manager Feedback

Suggestion box powered by UserVoice

Ideas

What features would you like to see?

All of the feedback that you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Microsoft Endpoint Configuration Manager, though we canā€™t promise to reply to all posts.

Please do not use UserVoice to report product bugs or for assisted support.
If you believe you have found a product bug, please send us a bug report through the Configuration Manager Console (1806 and newer). To do this, press the šŸ™‚ button in the top right corner and choose ā€œSend a Frownā€. For more details, see https://docs.microsoft.com/en-us/sccm/core/understand/find-help.

If you require assisted support, please see https://aka.ms/cmcbsupport for more details.

Standard Disclaimer ā€“ our lawyers made us put this here ;-)
We have partnered with UserVoice, a third-party service, so you can give us feedback. Please note that the Microsoft Endpoint Configuration Manager feedback site is moderated and is a voluntary participation-based project. Please send only feature suggestions and ideas to improve Configuration Manager. Do not send any novel or patentable ideas, copyrighted materials, samples or demos. Your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy, including the license terms.


  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Standardize releases of SCCM Versions to twice a year instead of current frequency.

    Standardize releases of SCCM Versions to twice a year instead of the current frequency of three times a year 2002, 2006 and 2010 and so on.

    Please review the pattern of windows feature releases and a clear timeline on supportability for SCCM.

    Please give a road map of supportability whether or not the customer has moved to co-management or not

    SCCM Client Version supportability in line with Server Version. All these three may be clearly documented please.

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  2. Use the Migration Manager account for all Migration-related tasks

    During CM-migration from source to target sites the Migration Manager account is not entirely used. Instead, the machine account of the target site server is used to access objects and source files in the source site, like Images, Boot-Images and Driver Packages. Thus, when migrating cross Domian without AD-Trust, we cannot migrate these objects due to access errors. This is truly annoying. If the Migration Manager account from the source domain would be used consequently, there won't be this problem.

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  3. SCCM Upgrades or Installs that set recommended SQL Express settings

    Currently upgrades or installs of a Secondary Site set undesired settings. Foe example every time we upgrade a secondary site Auto-Close is enabled on the SQL DB for that server

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  4. 1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  5. Add additional functionality to Cloud Management Gateway

    Adding capability of managing user policy, Application Catalog through Cloud proxy management servers would remove the dependency on hosting any servers in DMZ

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  6. Approved workstations / servers for management

    Now that we can see connected consoles in Configuration Manager, then the next step should be approved servers or workstations for management only.

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  7. Allow Site server HA e2e on a maximum of 2 machines

    HA should always be able to run on a maximum of 2 machines. This includes all remote roles, as well as provider, as well as reporting, as well as SQL (including AO). Don't require any roles to be remote from the 2 machines.

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  8. SCCM should support enabling scenarios instead of enabling invidual roles and settings

    Today for various E2E scenarios you install the required roles, set client agent settings, and ensure pre-reqs are all installed. I would prefer that I just select to enable a feature, SCCM scans my role servers, makes a suggestion of what needs to be installed where and various pre-reqs that are needed and give me the option to select just do it. At that point everything would get setup automatically in a way that is suggested as best practice by the SCCM product.

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  9. Provide support Configuration Manager(CM) with Azure AD DS

    Provide support Configuration Manager(CM) with Azure AD DS, which is no require patch management than AD in Azure IaaS. This simplifies our cloud operations. As described on following site, the managed domain of Azure AD DS is listed as compatible with Windows Server Active Directory.

    https://docs.microsoft.com/en-us/azure/active-directory-domain-services/join-windows-vm

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  10. Active Directory Sites should be unique on something more than just name

    Currently, if you have forests that have the same Active Directory Site name in them, SCCM only imports the first one it finds as a boundary. This makes using a Site as a boundary very unreliable when assigning site systems.
    For example:
    Forest a.com has a Site 'HQ'
    Forest b.com also has a Site 'HQ'
    SCCM imports a.com/HQ as AD Site, ignoring b.com/HQ
    Client pc1.b.com is in Site HQ in b.com, but due to the boundary mixup, tries to access the DP in a.com, which it doesn't trust.
    If Sites were made to be unique in a "(domain or forest)/Site"ā€¦

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  11. Improved Auditing to Status Message when modifiying Status Message Filter Rules

    Currently when disabling/modifying the Auditing Status Message filter rules such as "Write audit messages to the site database and specify the period after which the user can delete the messages.", a very generic message is posted to the Status Message log which is the exact same message for any change to any of the Status Message Filter Rules.

    It would be more useful, especially "Audit" related filter rule changes, that the specific filter rule changed is specified in the status message, and a not just a generic message.

    This will help better in monitoring a auditing hole where, in theory,ā€¦

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  12. Allow setup /checkdbupgrade to use a named instance

    Allow setup /checkdbupgrade to use a named instance, instead of just failing. In some cases, we can't use the default instance.

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  13. WinRM SSL for installation of remote site systems + TCP 445.

    Need certificate based communication between site server and site systems for server role installation. Need to remove dependency on RPC Dynamic ports and use WinRM SSL for secure communication and installation of site roles. This would improve security by eliminating a high range of ports that must be open between site systems.

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  14. Daylight saving time

    I am using SCCM Current Branch 1702 and daylight saving seems to be back, Where when deploying anything you must put the deployment time back one hour.

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  15. Add a "Enable Branchcache" box for the SUP Role.

    I was having trouble with BranchCache not deploying any updates. My SUP is on a standalone server and after some light digging I discovered that you have to enable that feature separately. It would be nice if the SUP properties section had "Enable BranchCache" option like the Distribution Point Role.

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  16. Alert Notification during site backup

    Stop subscriptions and notifications during backup. For example do not alert on unhealthy role because they are stopped by backup task.

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  17. Support removing IIS server header with all SCCM site system servers

    Please support removing IIS server header with all SCCM site system servers for better security.

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    1 comment  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  18. Upgrade SCCM Order server roles

    When updating the infrastructure, the server update order by selecting the servers to put first.
    At a minimum, start with the infrastructure servers:
    - Connection Point Service
    - Provider
    - MP
    - ...

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  19. Allow relay of Active Directory discovery and publishing

    Give the option to allow for the discovery/publishing of Active Directory data to be relayed through a designated site system on a per domain/forest basis. Maybe create a new role, i.e. "Active Directory Services Point", that can be set on site systems and designate them for specific AD domains/forests. This would greatly relieve permissions and firewall rules when managing clients across multiple (and sometimes untrusted) forests.

    1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  20. 1 vote
    Vote

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)
    You have left! (?) (thinkingā€¦)
    0 comments  ·  Setup and Server Infrastructure  ·  Flag idea as inappropriateā€¦  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base