Forums on Intune, SCCM, and Windows 11

Welcome to the forums. Register a free account today to become a member! Once signed in, you'll be able to participate on this site by adding your topics and posts, as well as connect with other members through your own private inbox!

PENDING "All Systems", real bad practice?

TechLoic

Member
Messages
8
Reaction score
0
Points
1
Hello everyone,

We have a (perhaps) silly question. So far, we've been deploying our applications and packages to the "All Systems" group. We've also created collections based on that same "All Systems" group. It has worked quite well so far, although sometimes slowly. Recently, while troubleshooting an unrelated issue, we read that what we were doing was considered bad practice. On multiple websites, including some Microsoft blogs, we found that deploying to "All Systems" is strongly discouraged, mostly due to backlog concerns and the security risk of making a mistake at that scale.

Could someone explain in more detail why this is not advised? Our new custom "All Workstations" collection (with a parent collection based on "All Desktop and Server Clients") has "only" roughly 600 fewer computers than "All Systems" (out of ~8200 PCs), so we're wondering how significant the difference really is.

We would like to clarify that, except for our main MCM server and its two distribution points, the ~8200 computers are workstations, not servers. We targeted a specific OU (and its sub-OUs) where these computers are located.

Thank you for your insight!
 

Forum statistics

Threads
7,221
Messages
28,159
Members
18,441
Latest member
duzebaby

Latest posts

Back
Top