Solved

Service Provider SCCM Setup. Solutions Architecture

Posted on 2015-02-22
3
19 Views
Last Modified: 2015-06-01
I am looking on someone to give me some info regarding setting UP an SCCM set-up as a service provider.
I am looking at having a Server (CAS)  in the Cloud (Datacenter) and having Client sites every where.
The Client sites are independent Different forest, Different organisation different Domains etc..

What would be involved in a setup like this ?
Would we need to configure trusts  for multi Forest Support ?
I am assuming SCCM needs to be setup with a Full blown PKI infrastructure as well ?

I would like to be able to Push out Master Gold reference image from Central Site to client sites . Then give the Local technicians ability to choose whether to deploy the images to their sites or not. Same for Updates.


Has anyone has a setup like this before ?
What are the challenges you had to overcome ?
0
Comment
Question by:mspsupport
  • 2
3 Comments
 
LVL 78

Accepted Solution

by:
David Johnson, CD, MVP earned 500 total points
ID: 40625035
Microsoft has a 4 part series on this scenario
Scenario 1
Scenario 2
Scenario 3
Scenario 4

Follow this and report back if there is any part you are confused with
0
 

Author Comment

by:mspsupport
ID: 40627074
Basically regarding scenario 4. Is the 2-way trust a must ? Can we just do a 1-way trust ?
We are concerned about security for the primary sites altering AD etc.. for other primary sites and even CAS site.
0
 
LVL 78

Expert Comment

by:David Johnson, CD, MVP
ID: 40627231
we will also need to ensure that a two way trust which supports Kerberos authentication exists between the two forests as stated it is a requirement
0

Join & Write a Comment

This collection of functions covers all the normal rounding methods of just about any numeric value.
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
With the advent of Windows 10, Microsoft is pushing a Get Windows 10 icon into the notification area (system tray) of qualifying computers. There are many reasons for wanting to remove this icon. This two-part Experts Exchange video Micro Tutorial s…

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now