Hi,
It appears that there is a known issue with SCOM (System Center Operations Manager) not supporting KSP (Key Storage Providers), which are recommended for use with newer ciphers like ECDSA P384. This is due to SCOM's reliance on the older CSP (Cryptographic Service Provider) that supports older ciphers (SHA-1, SHA-256, SHA-512) and the requirement for KeySpec to be set to 1, which is not compatible with KSP where KeySpec must be 0.
As for the plans to address this issue, I found a Microsoft Learn article that clearly states that Cryptography API Key Storage Provider (KSP) is not supported for Operations Manager certificates. This suggests that there has been no update or change in the support for KSP in SCOM as of the latest information available in the article dated April 10, 2024.