Proxy Management Point and boundary

Boopathi S 3,806 Reputation points
2021-05-26T11:49:31.097+00:00

Hi,

  1. One of the computer is at USA
  2. There is one primary at USA
  3. There are 20 Site System which host Management point role in USA region
  4. There are 18 Site System which host Management point role in Europe region
  5. I see that Proxy Management Point for a computer in USA contact the site system at Hungry at Europe Region
  6. Also there is one Proxy Management Point role installed site system at Switzerland of Europe Region. Few computers contact proxy management point at Hungry at Europe Region
  7. These computers are connected in Office network and reaches the correct AD Site and boundary group
  8. Hungry site system is not mapped to boundary group of Switzerland and USA

Please let me know how do the computers in Switzerland and USA and get the proxy management point at Hungery.

Microsoft Security | Intune | Configuration Manager | Other
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. AllenLiu-MSFT 49,316 Reputation points Microsoft External Staff
    2021-05-27T03:07:58.033+00:00

    Hi, @Boopathi S
    Thank you for posting in Microsoft Q&A forum.
    The following are the SCCM Management Point Selection criteria:

    1. Proxy MP if the client is part of a secondary server
      HTTPS capable in a trusted or local forest
      HTTPS capable NOT in a trusted or local forest
      HTTP capable in a trusted or local forest
      HTTP capable NOT in a trusted or local forest
    2. Local MP (within boundary groups if the client is part of multiple boundary groups all boundary groups will be considered as local).
      HTTPS capable in a trusted or local forest
      HTTPS capable NOT in a trusted or local forest
      HTTP capable in a trusted or local forest
      HTTP capable NOT in a trusted or local forest
    3. Assigned: Any SCCM MP that is a site system for the client’s assigned site
      HTTPS capable in a trusted or local forest
      HTTPS capable NOT in a trusted or local forest
      HTTP capable in a trusted or local forest
      HTTP capable NOT in a trusted or local forest

    SCCM Preferred Management Points setting can significantly change the MP selection criteria from client side.
    So we'd better enable "Client prefer to use Management Points specified in boundary group" for preferred Management point option in SCCM console.

    For your reference:
    https://www.anoopcnair.com/sccm-preferred-management-points-selection/
    (Third-party link, just for your reference)


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.