Update Server FQDN - NAT issues
Hi, Team, I'm trying to import a new SSL certificate that is different from the current NAT. If I try to change the NAT setting, it says that is different from the SSL and I need to change it. If I try to import the new certificate, it says that it is
EventViewer: Audit Failure (from ME admin account) - old cache in ME config files?
Hello all, This is going to be a long post unfortunately, but I will try to sum it up as best as I can. Recently we started to get alerts on our SIEM mentioning our user account (lanswp) who is so to say our admin account for everything Endpoint Central
EC Cloud - Profile Migration options
EC cloud does not have profile migration in OS deployment like OP. For others on EC cloud, what are you using to help migrate profiles? ME says this feature is on the roadmap but it would make our Win 11 rollout a bit smother for staff it we had something
Another Deployment is in Progress...
A suggestion to clarify message in REMARKS filed under configuration.. I'll like to know which deployment cause this configuration to pause instead waiting or looking into multiple deployment policy to spot conflict.. Since DC know already that something
Latest Agent Update - Broke our PC sorting by Workgroup
Good Morning! The latest agent update that went out last week (v11.4.2522.03.W) appears to have mixed up our device organization in Endpoint Central. Prior to the update, our PCs were sorted in Endpoint Central by Workgroup name. Our company is a Microsoft
Software package creation
Looking to deploy the Azure VPN to numerous clients and I would love to be able to deploy it via the software deployment option. But when I create the package based on the msixbundle downloaded from MS it always fails. I have a feeling its because of
EC > Inventory > Software | Where is this information pulled from? Incorrect Software Reporting
I have recently been tasked with patching & cleaning up our EC inventory and have run into a few scenarios that leave me with questions. The first is where does Endpoint Central pull the information from for the Software Inventory? I have several listings
Critical SharePoint Vulnerabilities: CVE-2025-53770 and CVE-2025-53771
Critical zero-day vulnerabilities in Microsoft SharePoint on-premises servers, CVE-2025-53770 and CVE-2025-53771, have been actively exploited, with numerous servers compromised across various sectors. CVE-2025-53770 is a remote code execution vulnerability;
Malware Protection is now available as an add-on to Endpoint Central!
We are thrilled to announce the launch of Malware Protection as an add-on to all Endpoint Central editions, following a successful early access program that began in 2024. 1. What is Malware Protection Add-on? Malware Protection Plus offers a comprehensive
EC: Different authentication method for each user
Hello all, would it be possible to set authentication method individually on EC? So for example Admin A uses an auth. app and Admin B gets the auth code via email. Since on this settings I can only set it globally, right? Thanks all!
OSDeployer on a random laptop
I just started playing around with OS Deployment in UEMS. I was able to create the PXE boot drive and capture an image and deploy an image. My question is - why would a random laptop in our inventory have the OSDeployer executable on the computer? Here
CVE-2025-48818: Security feature bypass vulnerability
CVE-2025-48818 is a security feature bypass vulnerability in Windows BitLocker. The flaw stems from a time-of-check to time-of-use (TOCTOU) race condition, which could allow an attacker with physical access to a target system to bypass BitLocker encryption
view disk partitions
can i see a windows clients' hard disk partitions somehow? im trying to troubleshoot failed windows 11 upgrades and think it might be related to the size of the EFI/System reserved partition.
Create a configuration which uses only the latest version of the packages
Hello, I was trying to create a configuration which uses only the latest version of the packages (same like the self service portal does), but haven't found such an option. So, if there's a Chrome package created based on a template for example, then
Problem on Firefox deployed via Endpoint, it keeps on auto-uninstalling
Hi everyone, I can't figure out where's my mistake: We have a base SW deployment with some standard packages (Adobe/LibreOffice/Chrome...) under Software Deployment menu > View Configuration including a package "FIREFOX X64 121 ITALIANO" Usually it's
Removing old version Endpoint Central after update
Hi. How can i to remove old version Endoint Central after update without problems with newly installed version? My use case is standalone EndpointCentral Server. Update steps: 1. Install Server 11.4.2504.1 2. Update to 11.4.2516.10 3. Migrate to another
Uninstall Agent via CLI
Is there a way to uninstall the agent (with OTP) from the CLI? I have a machine that has an old agent and isn't upgrading successfully . When I run the .exe installer (LocalOffice.exe /SILENT), it errors out with result 229965824 (0x0db50000 - code 0).
Forward logs from Endpoint Central to your SIEM via Syslog!
Hello everyone, Syslog support is here! Endpoint Central now enables audit log forwarding to syslog using the standardized RFC 5424 format. If you're using a SIEM platform (such as Splunk, QRadar, LogRhythm, etc.), you can now seamlessly centralize your
Patch Tuesday Updates: July 2025
Good day, everyone! Here's a list of the updates released in this month's Patch Tuesday. New OS Security Updates: 2025-07 Security Only Quality Update for Windows Server 2008 for x64-based Systems (KB5062618) (ESU) 2025-07 Security Only Quality Update
upgrade by downgrade and then upgrade?
Hi, We are already on 11.4.2516.09 but your site sugestes we have to downgradebefore upgrading? is this correct??
Enable automatic removal of old packages
Hello, When you're using a lot of packages created based on templates, you will see new versions of them created automatically. That is convenient of course, but would it be possible to enable automatic removal of the old packages with outdated software
Deploying configurations to devices
Hey there, need a way to deploy (DC) configurations to devices through an N8N workflow, there is two ways in mind so far: 1. Directly through an API call (which I couldn't find it being supported by current API coverage) 2. Add them to a custom group
The list of servers for this workgroup is not currently available
Hello, So I want to create a "Shortcut" configuration. I go to Configurations -> Add Configurations -> Shortcut In the form I click on Browse button next to Target Application textbox. The network browser window appears with the NetBIOS name of domain
Certificate Error upgrading from 10.1.2228.16 to 11.2.2300.27
Self Service Portal Showing "No Data Available" on Macs
Self Service Portal Showing "No Data Available" on Macs. We have 24 items published to it. We can add an item to the software list and then the SSP will sometimes populate on the Macs. Then, the next day it is blank again.
Set Dell BIOS Password
I am looking for a way to set our Dell BIOS admin passwords through EC. I came across this script, I wanted to see how it should be used. I see there is an example at the top but am unsure what needs to be modified or set, or where to enter the password,
Zero Day Vulnerabilities in Manage Engine
Hi Im the administrator of a small network at a Not for Profit Organisation in Australia. My knowledge of managing risks such as Zero day is pretty poor so im hoping for some direction Looking through Manageengine, it lists a number of zero day vulnerabilities.
Is Mobile Device Management needed to manage Windows laptops
We have no need to manage Android or iOS devices. But we have around 100 Windows laptops which are typically kept off-site for weeks at a time. Do we need to purchase Mobile Device Management Plus to manage these devices when they are off-site?
Recently installed ManageEngine Malware Protection causing false positives with Microsoft endpoint protection
This was something that was autoinstalled on my domain computers I believe with a recent cloud agent update. I looked through the cloud agent settings but don't see an option to disable it. Is this possible?
Printer Management in MDM
Hi team, is it possible to manage printers in Mobile Device Management for Android Devices? Thank you! BR Nico
Failed to download office patch meta json with error code : 404
Hi, I have a problem distributing Microsoft Office 365 patches on Workstations. we get the below error Failed to download office patch meta json with error code : 404 Patches can be downloaded but when i press install i get the above error. And as per
Problems with registry changes
I am trying to change the value at the registry key "Software\Classes\CLSID\{323CA680-C24D-4099-B94D-446DD2D7249E}\ShellFolder". These keys are more protected by the system, and it seems the DesktopCentral agent, which is running as SYSTEM cannot make the change directly. So, I set up a permissions management task to add SYSTEM to that key with full privileges. This doesn't seem to work, since these keys are not set to inherit permissions from above, and the SYSTEM account only has read access to
Google Chrome
is there a template or a configuration to disable the auto update of Google Chrome? Glad to see that you have it available in patch management, is there a way to disable the autoupdate and let patch management handle it?
Language Not changing
Hi, I've just installed desktop central on my network, However when I create an AD user and have the language set to English, it default's to Spanish, I've set up the user with the default Admin account. I have tried changing it as the user and also deleted the user and tried again, Any idea with how I can get this changed?
Enhances and Bug Fixes between 90111 and 90121
We are running build 90111. The latest hotfix is 90121 but the documentation shows only Enhancements and Bug Fixes between 90103 and 90121 Where can I get a list of differences between 90111 and 90121? Mike
Issue with patch ID 98573
We are getting the following when desktop central is trying to push patch ID 98573: The upgrade cannot be installed by the Windows Installer service because the program to be upgraded may be missing, or the upgrade may update a different version of the program. Verify that the program to be upgraded exists on your computer and that you have the correct upgrade. This seems to be happening on desktop OS's; servers seem to install it ok. The patch is not detected as being needed by Windows Update. I'm
Disable Java Update Configuration
We have probably a handful of systems that require a specific build of JAVA for the application that is installed on them to function. We do not want to disable auto updates of java across the domain, but want an easy way to block further installation of JAVA on those systems when we push out the latest build of java.. These systems are not connected to the internet so there is no way for them to automatically update java, we have to push them out.. (these are the systems on that specific build)
Install MSU Patch
We recently had some reports of IE9 crashing after installing a MS patch KB3008923. Microsoft released an update that fixes the issue, KB3025945. However it is not an available patch in DC. I tried pushing it out as a software package but cannot get it to work. Anyone know how to push out this patch? Thanks.
Java template
We were running on Java 8 update 25. This was from a template in desktop central. I was wondering if there was a newer version, so i searched in templates and found Java 8 update 32. So I downloaded the package and added the new version in the configuation and deployd the new verson to some of our machines. After he said it was finished I went to the computer and looked by software in controlpanel. there i saw 2 versions of Java. The old version and the newer one. Is there a way the newer version
Deleted computer still appears in custom reports
In these custom reports a computer appears that does not exist for more than a year. This computer has been removed from active directory and does not appear in the Inventory view or in the All systems view of Patch Mgmt or in the SoM view. Neither it appears in pre-built reports like the "All computers" report. But in existing custom reports and also when I create a new custom report - type 'computer' or 'software' does not matter - this computer still appears. This is a problem for us because I
Next Page