Forums on Intune, SCCM, and Windows 11

Welcome to the forums. Register a free account today to become a member! Once signed in, you'll be able to participate on this site by adding your topics and posts, as well as connect with other members through your own private inbox!

NEW SCCM Agent Install on servers with existing 443 bindings

  • Thread starter Thread starter Neal Loom
  • Start date Start date
  • Replies Replies 0
  • Views Views 1K

Neal Loom

New Member
Messages
1
Reaction score
0
Points
1
I've been running SCCM for quite some time now specifically for deployments and patching of our Windows 10 workstations. We've recently decided to move our Windows Server patching into this environment as well. For the most part this has been quite successful except i am having issues with a few servers that have IIS installed with the default https on 443 binding.

After installing the SCCM agent on one of these servers i can see that the sslcert bound to port 443 has been replaced/hijaked (for lack of a better term) with a different cert. This obviously impacts existing services on the server. Upon removing the SCCM agent and re-applying the certificate again in IIS everything goes back to normal.

Is this something that anyone has encountered before? Would anyone have any suggestions as to how i could approach resolving this?

For what its worth if relevant. I'm running Version 2107. Agents are being pushed to clients from the SCCM console manually. Https communication only with internal PKI.

Wanted to ask first before looking into having to change default ports on individual servers. Haven't been really been able to come across any best practices for this scenario.

Thanks
 
Back
Top