
SCCM 2103 Hotfix KB10372804 Notesįew points to remember before you install the hotfix KB10372804 for SCCM 2103. The hotfix includes only site server updates which is mentioned in the hotfix description. If the above query returns numerous rows, contact Microsoft Support for assistance in removal of these policies.Īfter installing the hotfix KB10372804, you don’t need to update the client agents or Configuration Manager console. SELECT PA.PolicyID, RPM.* FROM PolicyAssignment PA JOIN ResPolicyMap RPM ON PA.PADBID = RPM.PADBID WHERE PA.PolicyID like 'TPM%' AND RPM.MachineID = 0 AND RPM.IsTombstoned = 0 To determine that, run the SQL query against each primary site’s database provided in documentation. Note: Install the SCCM 2103 Hotfix KB10372804 only if you are noticing the MBAM BitLocker Issue issues in your setup. This in turn generates a large amount of policy targeted to all devices, which can cause policy storms. Invoke-MbamClientDeployment.ps1 PowerShell script utilizes the MBAM Agent API to escrow recovery keys to a Management Point in SCCM 2103. Using the MBAM Agent to escrow BitLocker recovery keys generates excessive policies in Configuration Manager 2103. SCCM 2103 Hotfix KB10372804 is released to address the MBAM BitLocker Issue.
