  • Общие обсуждения

  • Приветствую,

    примерно на 1,5 % устройств получаю ошибку установки клиента SCCM

    скурил уже наверно все форумы . ни ничего не помогает, есть у кого нибудь свежие мысли?

  • Может у них банально нет сертификата или он невалиден?

  • это уже проверяли. сертификат в порядке. для теста удаляли старый и получали новый, ничего не меняется.

  • Добрый день!

    Проверьте с клиента доступность MP. Например перейдя по ссылке :

    http://имя сервера/sms_mp/.sms_aut?mplist

    Должен открыться XML страница с описанием.

    Проверьте правильность настройки границ.

  • Доступа к этой ссылке нет.  причем как с ПК где клиент работает исправно так и с тех у кого клиент не может установится. Может есть еще способ проверить? SCCM CB 1806

    ПК в пределах одного Boundaries. на одни установка идет на другие нет.

  • Предполагаю что у вас в IIS используется так же HTTPS + сертификат. Ссылку попробуйте через HTTPS

  • да все верно https Only + сертификат

    по https пробовал так же.

  • Как мы видим из лога есть код ошибки 0x8004100e  что значит Invalid namespace. Предполагаю что на данных узлах не
    корректно работает репозиторий WMI. используйте WMIDiag, например вот тут можно взять:

    Либо более кардинальные меры в виде сброса репозитория на дефолтное значение:

     Winmgmt /resetrepository

    Предварительно остановив соответствующую службу.

  • 1. Каким образом ставите агенты? Через discovery или принудительно?

    2. Ещё есть подозрение на работу MP. Проверьте в логах MP (+сервисы) наличие ошибок, это важно.

  • WMI чинить уже пытался. но там ошибок нет  походу. тестером WMI проверяю все ок.

  • 1. Каким образом ставите агенты? Через discovery или принудительно?

    2. Ещё есть подозрение на работу MP. Проверьте в логах MP (+сервисы) наличие ошибок, это важно.

    1. агенты ставятся автоматом , принудительно тоже пробовали ошибка такая же.

    2. подскажите какие конкретно логи смотреть?

  • Логи можно смотреть из самого SCCM. Переходите на закладку Monitoring->System status->Component status.

    Очень смущает что MP недоступна с клиента. ЕМНИП — там должен XML возвращаться, но сейчас точно проверить не могу.

  • Еще что интересно, после переустановки ОС,вводом в домен с прежним именем,  из  точно того же образ ОС, установка происходит быстро и без каких либо проблем. Еще кстати пробовал раздоменивать комп,
    удалять из AD и SCCM, даже SID системы менять через Sysprep не помогает.

  • народ, есть у кого еще мысли?

  • Author Chris Coupe

    Is the client getting a certificate OK? Can you try using http for the site instead of HTTPS. I usually use a Fallback Status point when I setup sccm for client deployments.

    <![LOG[Failed to get DP locations as the expected version from MP ‘HTTPS://xxxxxxu’ Opens a new window. Error 0x87d00280]LOG]!><time=»14:16:21.680-660″ date=»10-10-2016″ component=»ccmsetup» context=»» type=»2″ thread=»7144″ file=»ccmsetup.cpp:11205″>
    <![LOG[Failed to get client version for sending state messages. Error 0x8004100e]LOG]!><time=»14:16:21.681-660″ date=»10-10-2016″ component=»ccmsetup» context=»» type=»2″ thread=»7144″ file=»state.cpp:178″>
    <![LOG[Params to send ‘5.0.8239.1001 Deployment Error: 0x87d00280, ‘]LOG]!><time=»14:16:21.681-660″ date=»10-10-2016″ component=»ccmsetup» context=»» type=»0″ thread=»7144″ file=»state.cpp:215″>
    <![LOG[A Fallback Status Point has not been specified and no client was installed. Message with STATEID=’101′ will not be sent.]LOG]!><time=»14:16:21.681-660″ date=»10-10-2016″ component=»ccmsetup» context=»» type=»1″ thread=»7144″ file=»state.cpp:229″>
    <![LOG[Failed to send status 101. Error (87D00215)]LOG]!><time=»14:16:21.681-660″ date=»10-10-2016″ component=»ccmsetup» context=»» type=»3″ thread=»7144″ file=»state.cpp:242″>
    <![LOG[Next retry in 10 minute(s)…]LOG]!><time=»14:16:21.681-660″ date=»10-10-2016″ component=»ccmsetup» context=»» type=»0″ thread=»7144″ file=»ccmsetup.cpp:8999″>

  • Author Roshan W


    yes tried HTTP for DP and MP both   not working client getting the ccm.exe but not installing in the pc  apart from that IIS do not have a ccm_client virtual directory  is something missing

  • Author Chris Coupe

    Is https required for your configuration? Would recommend configuring a fallback status point but it would use http. Have you seen this post

    «IIS 6 Management Compatibility > IIS 6 WMI Compatibility Role fixed our issues here..»

    Go through the entire post and check to see if you have all those recommendations checked.

  • Author Roshan W

    Yes i have seen that post and installed the role before   but no luck   I have read so many articles for this error no luck yet

  • Author Roshan W

    In my components  SMS_MP_CONTROL_MANAGER has critical error    status unavailable 

    SMS_NOTIFICATION server has a warning

  • Author Roshan W

  • Author Chris Coupe

    I  don’t know why it has a critical error.

  • Author Chris Coupe

  • #1

Hi, I really hope someone can help me, i’ve been bashing away at this for 3 days now.

Firstly I have a new SCCM site CB 1903 on top of a server 2019 OS. Everything installed in accordance with documentation.

I have issued SCCM client workstation certs, created boundaries by IP range, also tried forest discovery and letting it discover its own boundary and adding that to the boundary group. Firewall is disabled across the entire domain. I have modified the permissions in IIS. I have tried verifying and redeploying the client package to the Distribution point. I have removed and reinstalled the Management point role.

I am now completely out of ideas, here are the errors i’m seeing in CMTrace:

Failed to read assigned site code from registry. Error code = 0x80070002 ccmsetup 12/07/2019 12:17:47 3076 (0x0C04)

Failed to persist AAD on-boarding info. Error 0x87d00227 ccmsetup 12/07/2019 12:17:47 3076 (0x0C04)

Failed to get client version for sending state messages. Error 0x8004100e ccmsetup 12/07/2019 12:17:48 3076 (0x0C04)

Failed to send status 100. Error (87D00215) ccmsetup 12/07/2019 12:17:48 3076 (0x0C04)

IsSslClientAuthEnabled — Determining provisioning mode state failed with 80070002. Defaulting to state of 63. ccmsetup 12/07/2019 12:17:48 3076 (0x0C04)

IsSslClientAuthEnabled — Determining provisioning mode state failed with 80070002. Defaulting to state of 63. ccmsetup 12/07/2019 12:17:48 3076 (0x0C04)

Failed to get DP locations as the expected version from MP ‘HTTPS://’. Error 0x87d00215 ccmsetup 12/07/2019 12:17:48 3076 (0x0C04)

Failed to get client version for sending state messages. Error 0x8004100e ccmsetup 12/07/2019 12:17:48 3076 (0x0C04)

Failed to send status 101. Error (87D00215) ccmsetup 12/07/2019 12:17:48 3076 (0x0C04)

Complete log is attached.

I have just installed SCCM 2012 on VM running Server 2012.

I am trying to deploy it on this local machine and keep getting this error (snippet)

I checked my MP setup and it looks fine:

SMSMP Setup Started.
Parameters: C:Program FilesMicrosoft Configuration Managerbinx64rolesetup.exe /install /siteserver:ARV-VM01 SMSMP 0
Installing Pre Reqs for SMSMP
======== Installing Pre Reqs for Role SMSMP ========
Found 2 Pre Reqs for Role SMSMP
Pre Req MSXML60 found.
No versions of MSXML60 are installed. Would install new MSXML60.
Enabling MSI logging. msxml6_x64.msi will log to C:Program FilesMicrosoft Configuration Managerlogsmsxml6_x64MSI.log
Installing C:Program FilesMicrosoft Configuration Managerbinx640000409msxml6_x64.msi
msxml6_x64.msi exited with return code: 0
msxml6_x64.msi Installation was successful.
Pre Req SqlNativeClient found.
SqlNativeClient already installed (Product Code: <49d665a2-4c2a-476e-9ab8-fcc425f526fc>). Would not install again.
Pre Req SqlNativeClient is already installed. Skipping it.
======== Completed Installation of Pre Reqs for Role SMSMP ========
Installing the SMSMP
Passed OS version check.
IIS Service is installed.
SMSMP already installed (Product Code: ). Upgrading/Reinstalling SMSMP
New SMSMP is the same product code. This is a minor upgrade.
Enabling MSI logging. mp.msi will log to C:Program FilesMicrosoft Configuration ManagerlogsmpMSI.log
mp.msi exited with return code: 0
Installation was successful.

I have tried removing Distribution Point and putting it back, same error.


Getupdateinfo failed to get targeted update error 0x87d00215

This forum has migrated to Microsoft Q&A. Visit Microsoft Q&A to post new questions.

Answered by:


I have a server that is not getting any patches or antivirus updates. All other servers work fine. Only error I see is the following:

failed to get targeted update, error = 0x87d00215.

I already recreated the software distribution folder and reinstalled the SCCM client. Any ideas on what else to check or try? TIA


Has the Windowsupdate.log scan completed successfully on the machine now ?

Kamala kannan.c| Please remember to click “Mark as Answer” or Vote as Helpful if its helpful for you. |Disclaimer: This posting is provided with no warranties and confers no rights

Actually not that I see. I have the following errors in the windows update log:

WARNING: IsSessionRemote: WinStationQueryInformationW(WTSIsRemoteSession) failed for session 4, GetLastError=2250

WARNING: Failed to get Wu Exemption info from NLM, assuming not exempt, error = 0x80240037

WARNING: Failed to get Network Cost info from NLM, assuming network is NOT metered, error = 0x80240037.

Currently AUX is enabled — so not show any WU Upgrade notifications.


Getupdateinfo failed to get targeted update error 0x87d00215

This forum has migrated to Microsoft Q&A. Visit Microsoft Q&A to post new questions.

Answered by:


On two distribution points which have been working fine for six months I am getting now an error: 0x87d00215

Failed to get DP locations as the expected version from MP ‘HTTPS://’. Error 0x87d00215 ccmsetup 1/3/2018 1:54:40 PM 5948 (0x173C)
MP ‘HTTPS://’ didn’t return DP locations for client package with the expected version. Retrying in 30 minutes. ccmsetup 1/3/2018 1:54:40 PM 5948 (0x173C)
Next retry in 30 minute(s). ccmsetup 1/3/2018 1:54:40 PM 5948 (0x173C)>

Any idea how to correct this error

Security / System Center Operations Manager 2012 / System Center Configuration Manager 2012 / SQL System Center Operations Manager 2007 / System Center Configuration Manager 2007 R2 / Forefront Client Security / Forefront Identity Manager


If you have checked the boundary/boundary groups, Please check your package, make sure the client package is available on your DPs.
I suggest you to follow the below link and check:

I hope this helps you.

Please remember to mark the replies as answers if they help. If you have feedback for TechNet Subscriber Support, contact

If you have checked the boundary/boundary groups, Please check your package, make sure the client package is available on your DPs.
I suggest you to follow the below link and check:

I hope this helps you.

Please remember to mark the replies as answers if they help. If you have feedback for TechNet Subscriber Support, contact

Have you distributed the client package to a distribution point, and does the machine fall into a boundary/boundary group associated with the distribution point?

Yes the Client package has already been upgraded automatically on 22,000+ machines.

Yes the machines are Distribution Points Servers used for the past six months they are in the boundaries.

Security / System Center Operations Manager 2012 / System Center Configuration Manager 2012 / SQL System Center Operations Manager 2007 / System Center Configuration Manager 2007 R2 / Forefront Client Security / Forefront Identity Manager

If you have checked the boundary/boundary groups, Please check your package, make sure the client package is available on your DPs.
I suggest you to follow the below link and check:

I hope this helps you.

Please remember to mark the replies as answers if they help. If you have feedback for TechNet Subscriber Support, contact

Thanks still in progress..

Security / System Center Operations Manager 2012 / System Center Configuration Manager 2012 / SQL System Center Operations Manager 2007 / System Center Configuration Manager 2007 R2 / Forefront Client Security / Forefront Identity Manager

If you have checked the boundary/boundary groups, Please check your package, make sure the client package is available on your DPs.
I suggest you to follow the below link and check:

I hope this helps you.

Please remember to mark the replies as answers if they help. If you have feedback for TechNet Subscriber Support, contact

Thanks still in progress..

Security / System Center Operations Manager 2012 / System Center Configuration Manager 2012 / SQL System Center Operations Manager 2007 / System Center Configuration Manager 2007 R2 / Forefront Client Security / Forefront Identity Manager

Good Catch the boundary group was missing, adding one it works and the client is properly upgraded now

Security / System Center Operations Manager 2012 / System Center Configuration Manager 2012 / SQL System Center Operations Manager 2007 / System Center Configuration Manager 2007 R2 / Forefront Client Security / Forefront Identity Manager


Updates Deployment 0x87d00215 error

I am trying to install Updates on my machines, but no luck.

I created a new Update for Win 10 machines: created a SW Update Group, created a new package, downloaded this updates to this new package and distribute de package to my Distribution Point.

My DP status show success to package deployment.

Now I deploy the SW Update Group to my desktop Collections with Win 10.

I update my client using actions in SCCM Client.

But, my Software Center is show empty for Updates and my client UpdatesDeployment.log is showing this:

More info from the desktop machine:

  • Local WSUS policy in pointing to my SUP, it is right
  • My SCCM Client is green and inventory is working fine

More info from my DP:

  • Package content is there, I validade that
  • Other packages, lipe APP packages are there too
  • IIS is working fine

Please, any ideias what is happening?

@Patrick Mor
Thanks for your posting on Q&A.

What is the version of your MECM? How many clients in the collection encountered this issue? What are the KB numbers of the software updates you are tried to deploy? Please make sure the updates are required for the clients before moving on.

Please to try to review the scanagent.log and PolicyEvaluator.log on the client to get more error information.

Best regards,

Thanks for the sharing for the logs. I don’t see any obvious errors or issues. There is an error in updatesdeployment log, but more on that later. Do you have maintenance windows configured by any chance? Can you check servicewindow log?

Updates will not download and install unless there is a service window available. You didn’t confirm if a service window is available or not.

Are you sure this is accurate 100% of the time? If the deployment was configured with ‘User Experience’ menu option ‘Deadline Behavior’ with a value of ‘Software updates installation’, would this skip evaluating maintenance windows altogether?

Is the update applicable? Maybe look under wuahandler, scanagent logs as well.

*****WSUSLocationUpdate received for location request guid= <780253aa-2a5c-4666-abeb-ce20e2e56806>ScanAgent 3/17/2022 10:49:19 PM 11720 (0x2DC8)
CScanJobMgr::UpdateSUPLocationList- Original WUA location count is 0, new location count is 1, WUA locations updated. ScanAgent 3/17/2022 10:49:19 PM 11720 (0x2DC8)
Sources are current and valid. TTLs are however, invalid. ScanAgent 3/17/2022 10:49:19 PM 11720 (0x2DC8)
ScanJob(<9761a3d1-f372-4513-9545-1b36b834dbc3>): Performing Full Scan. ScanAgent 3/17/2022 10:49:19 PM 11720 (0x2DC8)
*****ScanByUpdates request received with ForceReScan=0, ScanOptions=0x00000008, WSUSLocationTimeout = 604800 ScanAgent 3/17/2022 10:49:21 PM 5152 (0x1420)

  • — -Evaluating Update Status. ScanAgent 3/17/2022 10:49:22 PM 5152 (0x1420)
    Found CategoryID of :b3c75dc1-155f-4be4-b015-3f1a91758e52 for Update:5a0aea9e-a1aa-43c7-99a7-e0ee07340d50 ScanAgent 3/17/2022 10:50:59 PM 5152 (0x1420)
    CScanAgent::ScanByUpdates — Found UpdateClassification 3689bdc8-b205-4af4-8d4a-a63924c5e9d5 for Update:5a0aea9e-a1aa-43c7-99a7-e0ee07340d50 ScanAgent 3/17/2022 10:50:59 PM 5152 (0x1420)
    ScanJob(<9761a3d1-f372-4513-9545-1b36b834dbc3>): Scan Succeeded, Resetting Source to Current and TTLs to Valid ScanAgent 3/17/2022 10:51:00 PM 10948 (0x2AC4)
    ScanJob(<9761a3d1-f372-4513-9545-1b36b834dbc3>): CScanJob::OnScanComplete — Scan completed successfully, ScanType=1 ScanAgent 3/17/2022 10:51:00 PM 10948 (0x2AC4)
    ScanJob(<9761a3d1-f372-4513-9545-1b36b834dbc3>): CScanJobManager::OnScanComplete -ScanJob is completed. ScanAgent 3/17/2022 10:51:00 PM 10948 (0x2AC4)
    ScanJob(<9761a3d1-f372-4513-9545-1b36b834dbc3>): CScanJobManager::OnScanComplete — Reporting Scan request complete to clients. ScanAgent 3/17/2022 10:51:00 PM 10948 (0x2AC4)
  • — Calling back to client on Scan request complete. ScanAgent 3/17/2022 10:51:00 PM 10948 (0x2AC4)
    CScanAgent::ScanComplete- Scan completion received. ScanAgent 3/17/2022 10:51:00 PM 10948 (0x2AC4)
    Sources are current and valid. TTLs are also valid. ScanAgent 3/17/2022 10:51:00 PM 5152 (0x1420)
    CScanJobManager::Scan — SKIPPING SCAN and using cached results. ScanAgent 3/17/2022 10:51:00 PM 5152 (0x1420)
    CScanJobManager::Scan — Reporting Scan request complete to clients. ScanAgent 3/17/2022 10:51:01 PM 5152 (0x1420)
  • — -Evaluating Update Status. ScanAgent 3/17/2022 10:51:01 PM 10948 (0x2AC4)
  • — Calling back to client on Scan request complete. ScanAgent 3/17/2022 10:51:01 PM 10948 (0x2AC4)
    *****Policy Change notification received for ToolUniqueID= ScanAgent 3/18/2022 12:34:15 AM 208 (0x00D0)


