Forums on Intune, SCCM, and Windows 11

Welcome to the forums. Register a free account today to become a member! Once signed in, you'll be able to participate on this site by adding your topics and posts, as well as connect with other members through your own private inbox!

SOLVED Patch management for the clients connected to VPN

  • Thread starter Thread starter Bunny007
  • Start date Start date
  • Replies Replies 3
  • Views Views 4K
Status
Not open for further replies.

Bunny007

Member
Messages
18
Solutions
1
Reaction score
0
Points
1
Hi,

What will be the best practice to manage the updates for the clients connecting via VPN?
The majority of the users are working from home and only connect via VPN but then there is a group of people who work from the office. In this situation we would want to have a setup where when the device is connected via VPN then it should download updates from Microsoft directly and when the user is connected to corp network then the device client should download from the DP in that boundary group.

Thanks,
Bunny
 
Hi,

What will be the best practice to manage the updates for the clients connecting via VPN?
The majority of the users are working from home and only connect via VPN but then there is a group of people who work from the office. In this situation we would want to have a setup where when the device is connected via VPN then it should download updates from Microsoft directly and when the user is connected to corp network then the device client should download from the DP in that boundary group.

Thanks,
Bunny
You should have two boundary groups - one for office users and other one for VPN users. You can create the boundary using the IP range. The office based users can download the updates from the local distribution point server. Whereas the VPN users can download the updates directly from Microsoft.

If you want the VPN users to download updates from Microsoft, you can edit the VPN boundary group and under options enable Prefer cloud based sources over on-premise sources.

1608801448537.png
 
You should have two boundary groups - one for office users and other one for VPN users. You can create the boundary using the IP range. The office based users can download the updates from the local distribution point server. Whereas the VPN users can download the updates directly from Microsoft.

If you want the VPN users to download updates from Microsoft, you can edit the VPN boundary group and under options enable Prefer cloud based sources over on-premise sources.

View attachment 3278
Thanks a lot for your help, you can mark this as solved :)
 
Status
Not open for further replies.
Back
Top