Forums on Intune, SCCM, and Windows 11

Welcome to the forums. Register a free account today to become a member! Once signed in, you'll be able to participate on this site by adding your topics and posts, as well as connect with other members through your own private inbox!

PENDING SCCM failure to pickup policy PXE boot

mpowis

Well-Known Member
Messages
66
Solutions
1
Reaction score
0
Points
6
Hi,
This SCCM setup was working perfectly yesterday morning, I was then updating some application packages and no it won't image computers anymore, it boots into config manager on the client, asks for the password but then searches for a policy and fails.
I checked the SMSPXE log and the distmgr log, they both seem to be clear of errors but the SMSTS log on the client computer is full of errors,

AsyncCallback(); WINHTTP_CALLBACK_STATUS_SECURE_FAILURE Encountered
WINHTTP_CALLBACK_STATUS_FLAG_INVALID_CA is set
winhttp failed 80072f8f
retrying and ignoring date security failures

(this repeats about 4 times, then i get)

failed to send request (80072f8f)
failed to get client Identity (80072f8f)

Failed request for client
SyncTimeWithMP() failed 80072f8f
Failed to get time information from MP; https://our SCCM server name
Failed to select MP

I have seen lots of help guides on the 80072f8f error, i checked the Certificates and even remade the CA cert as per guide on this site, i removed the check from the client check CRL, I changed from using the WDS PXE to SCCM PXE, and redeployed the task sequence and boot images.
The IIS uses the same certificate for https bindings, although this gives me a security error when browsing this was doing this before and the imaging was working.


1707308532350.png1707308589947.png
 
Thought i would add more info, it may help, the first two are the IIS settings and the last is the PXE settings
1707321679207.png1707321696275.png
1707321799885.png
 

Forum statistics

Threads
7,135
Messages
27,868
Members
18,159
Latest member
jordysmits
Back
Top