chazzy2501 Posted March 22, 2018 Posted March 22, 2018 (edited) I have just installed the SCCM 1702 and have the SCEP (endpoint protection) licences. I'm reading that I can't use SSEP with Windows 10 and am supposed to use "Windows Defender ATP" instead. The issue is that it would seem to be a different product that needs a different solution.... Am I expected to purchase 2 different AV solutions from Microsoft now? I'm currently running windows 8.1 but was hoping to go to 10.... Maybe I'll stick with Nod32 and cancel the SSEP deployment. EDIT: Corrected TYPO Edited March 22, 2018 by chazzy2501
sparkeh Posted March 22, 2018 Posted March 22, 2018 (edited) Sorry I am a little confused by your question. Do you mean SSEP (Symantec Sygate Enterprise Protection) or do you mean SCEP (System Centre Endpoint Protection)? With SCCM you only need to deploy SCEP client to OS below Win 10. With Win 10 you can apply the SCCM AV policies and Settings to the built in Defender without the need to deploy anything. You don't need to pay for licences to deploy AV protection with SCCM. If you want advanced protection you can pay for ATP. Edited March 22, 2018 by sparkeh 2
chazzy2501 Posted March 22, 2018 Author Posted March 22, 2018 SCEP (typo) System Centre Endpoint Protection I was confused by the Defender ATP settings in SCCM. So, I just apply a SCEP profile to the Windows 10 clients and they'll obey them as the Windows 8 and 7 PCs will using SCEP? What is the "Windows Defender ATP Policies" Can I ignore it? My confusion is that it comes under the "endpoint protection" in assets and compliance. Should I just stick with the antimalware policies and the Windows 10 PCs will follow it. Thanks for the help..
sparkeh Posted March 22, 2018 Posted March 22, 2018 (edited) SCEP (typo) System Centre Endpoint Protection I was confused by the Defender ATP settings in SCCM. So, I just apply a SCEP profile to the Windows 10 clients and they'll obey them as the Windows 8 and 7 PCs will using SCEP? What is the "Windows Defender ATP Policies" Can I ignore it? My confusion is that it comes under the "endpoint protection" in assets and compliance. Should I just stick with the antimalware policies and the Windows 10 PCs will follow it. Thanks for the help.. Sorry let me correct something: with anything pre Win 10 an av client gets installed. With Win 10 a small client gets installed that controls Defender. I use the same settings for Win 10 and for previous versions. You can ignore the ATP Policies node if you don't use it. Edited March 22, 2018 by sparkeh
sparkeh Posted March 22, 2018 Posted March 22, 2018 Sorry another clarification. You need to have a cal for each device you manage with scep, but these are included in the core cal pack, otherwise they do need to be purchased separately. https://home.configmgrftw.com/scep-licensing-in-configmgr/ sorry
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now