Jump to content

Recommended Posts

Posted

Hi

 

As we now have a lot of users working from home, is there a way to setup SCCM so that clients from home can connect to SCCM? Currently we are unable to deploy software or updates as they are not in school. Clients do not have VPN either so as the working from home will soon become the norm, not sure what the best approach or solution to this is.

 

We don’t use VPN because we use OneDrive and SharePoint

 

Thanks

Posted

I’m not sure if it can be it’s more of a management too, I would suspect that it if you have any windows 10 in your environment you could deploy always on vpn that what any internet connect devices such as a laptop would be able to successfully connect back with sccm

 

Unless it is possible and I’m just not aware if so could someone correct me please

Posted
You could stick in a Always On VPN and just use a device tunnel. Then use the rules on the xml to just allow access to SCCM server and AD??
Posted
Cool thanks. I was also just reading up on creating a cloud distribution point for SCCM but again ive no idea yet on costs for the azure platform or the complexity of the setup. Do you use Always On VPN?
Posted (edited)
Looking at this article, the clients need to be joined to Azure AD aswell?

 

If you've got AzureAD Connect, I thought the default behaviour of Windows 10 was to Hybrid Join AzureAD?

 

Given that the other solutions involve pushing out GPO settings, you are going to need a VPN of some sort. Probably a more traditional (less secure) dial on user demand type initially to get management authority back (i.e. update kerberos tickets, group policies and refresh stuff through AzureAD Connect).

Edited by psydii
Posted
If you've got AzureAD Connect, I thought the default behaviour of Windows 10 was to Hybrid Join AzureAD?

 

Given that the other solutions involve pushing out GPO settings, you are going to need a VPN of some sort. Probably a more traditional (less secure) dial on user demand type initially to get management authority back (i.e. update kerberos tickets, group policies and refresh stuff through AzureAD Connect).

I think you're correct but i will check some of the computers. Just out of interest, if they are hybrid joined and a user changes their windows 10 password at home (and Azure AD password write back is enabled with the correct licensing) would the password change on the computer, Azure AD and then write the password back to AD? Sorry to digress slightly.

Posted
Just out of curiosity, Does anyone know how much an Intune licence is per month either per device or per use? This for us longer term me me a better option.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...