Book Image

Microsoft System Center Endpoint Protection Cookbook - Second Edition

By : Nicolai Henriksen
Book Image

Microsoft System Center Endpoint Protection Cookbook - Second Edition

By: Nicolai Henriksen

Overview of this book

System Center Configuration Manager is now used by over 70% of all the business in the world today and many have taken advantage engaging the System Center Endpoint Protection within that great product. Through this book, you will gain knowledge about System Center Endpoint Protection, and see how to work with it from System Center Configuration Manager from an objective perspective. We’ll show you several tips, tricks, and recipes to not only help you understand and resolve your daily challenges, but hopefully enhance the security level of your business. Different scenarios will be covered, such as planning and setting up Endpoint Protection, daily operations and maintenance tips, configuring Endpoint Protection for different servers and applications, as well as workstation computers. You’ll also see how to deal with malware and infected systems that are discovered. You’ll find out how perform OS deployment, Bitlocker, and Applocker, and discover what to do if there is an attack or outbreak. You’ll find out how to ensure good control and reporting, and great defense against threats and malware software. You’ll see the huge benefits when dealing with application deployments, and get to grips with OS deployments, software updates, and disk encryption such as Bitlocker. By the end, you will be fully aware of the benefits of the System Center 2016 Endpoint Protection anti-malware product, ready to ensure your business is watertight against any threat you could face.
Table of Contents (16 chapters)
Microsoft System Center Endpoint Protection Cookbook Second Edition
Credits
About the Author
Acknowledgment
About the Reviewer
www.PacktPub.com
Preface
Index

Working with updates from SCCM


When should we use System Center as a definition source? Microsoft recommends using SCCM as your primary source for updates.

In this recipe we will cover how you can deploy the updates you need to keep Endpoint Protection updated.

How to do it…

First you need to ensure you have the categories correctly set in the SCCM site settings. These settings are forced back to WSUS. There are two categories you need to implement. They are:

  • The first one is for Windows 8.1 and below and is called Forefront Endpoint Protection 2010. This category name will be kept for the foreseeable future.

  • The second one is that Windows 10 machines are called Windows Defenders.

System Center Endpoint Protection will get Definition Updates as well as Engine Updates based on these categories.

So just to be clear, engine updates for all Configmgr versions (2007, 1511, 1602, 1606, and so on) will always come under the name System Center 2012 Endpoint Protection.

Now this can be a bit confusing, the...