enhanced HTTP and anonymous and OSD

David Zemdegs 1,586 Reputation points
2024-05-14T03:02:59.0133333+00:00

In https://learn.microsoft.com/en-us/mem/configmgr/core/plan-design/hierarchy/enhanced-http they say for enhanced HTTP to turn off 'Allow client to connect anonymously'. Does anyone know why? What do OS builds do if anonymous is turned off? Is it a problem to leave it on? Some say its faster to leave it on to avoid multiple authentications for each file?

Thanks

David

Microsoft Configuration Manager
0 comments No comments
{count} votes

Accepted answer
  1. Simon Ren-MSFT 30,831 Reputation points Microsoft Vendor
    2024-05-14T10:13:56.0866667+00:00

    Hi @David Zemdegs ,

    Thank you for posting in Microsoft Q&A forum.

    ==>Does anyone know why? What do OS builds do if anonymous is turned off? Is it a problem to leave it on? Some say its faster to leave it on to avoid multiple authentications for each file?

    To force authenticated communication. That's the whole point of using certificates. OSD uses certificates as well. OSD can work well when we use Enhanced HTTP and anonymous connections with the DP is turned off.

    More information, please refer to: Client to distribution point communication. When a client communicates with a distribution point, it only needs to authenticate before downloading the content. Use the following table to understand how this process works:

    DP communication

    Thanks for your time. Have a nice day!

    Best regards,

    Simon


    If the response is helpful, please click "Accept Answer" and upvote it.

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

0 additional answers

Sort by: Most helpful