Skip to content
ConfigMgr HTTP-only Client Communication is Going Out of Support | SCCM | Configuration Manager

ConfigMgr HTTP-only Client Communication is Going Out of Support | SCCM | Configuration Manager

Written By Anoop C Nair
Last Updated August 20, 2024
Posted In SCCM
SHARE

Let’s discuss ConfigMgr HTTP-only Client Communication, which is going out of Support | SCCM | Configuration Manager. Microsoft announced its plans to end support for it.

Many users noticed this when they tried to install Technical Preview version 2103 of Configuration Manager. This alert came up as a prerequisite check warning in the TP version.

You can build the SCCM technical preview version lab to understand new features better. If you are a technology enthusiast and love to test new ConfigMgr features, then YES, go for the Technical Preview Lab.

I have a list of unsupported or ConfigMgr Deprecated Features. I recently updated it with many features that will soon be out of support. One feature that stands out from that list is HTTP client communication.

Patch My PC

RIP ConfigMgr HTTP-only Client Communication

Yes, ConfigMgr HTTP-only Client Communication is Going Out of Support. But this is not going to happen soon. The out-of-support date mentioned in Microsoft docs is the first release after October 31, 2022.

You might have already noticed the following warning in prerequisite checks of the ConfigMgr 2103 TP installation status wizard.

Completed with warning: HTTPS or Enhanced HTTP is not enabled for client communication. HTTP-only communication is deprecated, and support will be removed in a future version of Configuration Manager. Enable a more secure communication method for the site either by enabling HTTPS or Enhanced HTTP. For more information, see https://go.microsoft.com/fwlink/?linkid=2155007.

ConfigMgr HTTP-only Client Communication is Going Out of Support | SCCM | Configuration Manager - Fig.1
ConfigMgr HTTP-only Client Communication is Going Out of Support | SCCM | Configuration Manager – Fig.1

Need to Switch to HTTPS or eHTTPS

I recommend using the enhanced HTTP (a.k.a eHTTP) option to make client communication more secure. I’m sure securing communication will soon add many surprise features to SCCM.

Let’s see how to enable the ehttp option using the following configuration:

  • Navigate to Site Properties > Client Computer Communication tab.
  • Check the box “Use Configuration Manager-generated certificates for HTTP site systems”.
ConfigMgr HTTP-only Client Communication is Going Out of Support | SCCM | Configuration Manager - Fig.2
ConfigMgr HTTP-only Client Communication is Going Out of Support | SCCM | Configuration Manager – Fig.2

Other SCCM Features Going out of support

The following are some other SCCM features going out of support soon.

  • Microsoft Edge legacy browser profiles
  • Desktop Analytics tile and page for Security Updates
  • The collection evaluation viewer is integrated into version 2010.
  • Log Analytics connector for Azure Monitor.
  • The geographical view in the Site Hierarchy node of the Monitoring workspace in the SCCM console.
  • We won’t be able to create a traditional Cloud DP in the future.
  • Classic service deployment to Azure for CMG and cloud DP.

NOTE! – I have a list of unsupported or ConfigMgr Deprecated Features list.

Resources

We are on WhatsApp now. To get the latest step-by-step guides, news, and updates, Join our Channel. Click here – HTMD WhatsApp.

Author

Anoop C Nair has been Microsoft MVP from 2015 onwards for 10 consecutive years! He is a Workplace Solution Architect with more than 22+ years of experience in Workplace technologies. He is also a Blogger, Speaker, and Local User Group Community leader. His primary focus is on Device Management technologies like SCCM and Intune. He writes about technologies like Intune, SCCM, Windows, Cloud PC, Windows, Entra, Microsoft Security, Career, etc.

Written by

Anoop C Nair is Workplace Technology solution architect with 25+ years of experience in global enterprise organizations such as JP Morgan, Capgemini, etc. Microsoft Certified Trainer. Microsoft MVP from 2015 onwards for consecutive 11+ years! He also conducts Intune and modern workplace tech training for enterprise organizations. He is Blogger, Speaker, and Founder of HTMD Community and HTMD Conference. His main focus is on Device Management technologies like Intune, Windows, Cloud PC. He writes about technologies like Intune, SCCM, Windows, Cloud PC, Windows, Entra, Microsoft Security.

Discussion · 7 comments

  1. Hi Anoop, thanks for this article!
    I wonder what this will mean for a site system role like the Fallback Status Point as this is based on pure HTTP communication?

    1. StaffHello – I have not specifically heard anything about the Fallback status point. Any specific reason for this question? Are you concerned about the clients that are orphans (unassigned/not assigned) who can’t communicate with secured channels?

      1. In essence yes, because that is a prerequisite for a Fallback Status Point. It operates purely in HTTP to be able to pick up clients that are not communicating correctly for whatever reason in the environment.

  2. Hi Anoop,

    Is there any actual impact to clients by switching on enhanced HTTP? Cant find any information to say it does. Just want to be sure before its done.

    1. StaffI think it won’t impact anything because we are not going only HTTPS mode. So ConfigMgr can always fallback to normal communication.

      However, I would recommend testing this in pre-production environment before going into production mass deployment.

  3. Hi Anoop, on a different subject. Will activating Enhanced HTTP on a primary site level, still allow client communication of both EHTTP and PKI level? (with PKI communication being preferred over EHTTP) I am mainly asking this question in the context of our server infra that is currently managed using HTTP based site server roles (MP/DP/SUP) as due to their nature, it is often not straight forward to connect these clients using a PKI based certificate. But then on the other hand we wouldn’t want to go and have to setup a dedicate child primary site in our CAS based hierarchy, just to support these servers on EHTTP if we can’t mix both solutions within the same primary site setup.

  4. After upgrading to SCCM 2103 and enabling the HTTPS or HTTP with the box checked Use Config Manager-generated certificates for HTTP site systems, my clients are all showing offline. I tried switching back to the previous way it was, but that didn’t fix it. Is there something I need to change in IIS?

Join the discussion

Your email address will not be published. Required fields are marked *

Related guides

Intune

Windows 11 KB5101650 KB5099414 July 2026 Patch and 3 Zero Day Vulnerabilities and 570 Flaws

Key Takeaways Windows 11 KB5101650 KB5099414 July 2026 Patch and 3 Zero Day Vulnerabilities and 570 Flaws! In the July 2026 Patch, Microsoft introduced new features designed to improve the overall Windows experience. The update adds enhancements to Windows Update for more flexible update management and introduces Point-in-Time Restore, providing an additional recovery option for […]

AC Anoop C Nair 9 min read
Intune

2026 June KB5094126 KB5093998 Windows 11 Patch | 3 Zero Day Vulnerabilities and 200 Flaws

Key Takeaways 2026 June KB5094126 KB5093998 Windows 11 Patch | 3 Zero Day Vulnerabilities and 200 Flaws! The June 2026 Windows 11 Patch Tuesday update brings several improvements to File Explorer. It adds support for additional archive formats, including UU, CPIO, XAR, and NuGet Packages (NUPKG). The update also preserves View and Sort preferences in […]

AC Anoop C Nair 10 min read
Intune

2026 May KB5089549 KB5087420 Windows 11 Patch | 0 Zero Day Vulnerabilities and 120 Flaws

Key Takeaways The Windows 11 May 2026 Patch KB5089549 KB5087420 Update brings important security fixes, performance improvements, and reliability enhancements across the operating system. The update introduces new features such as Xbox Mode for gaming, File Explorer improvements, enhanced input and sharing experiences, better taskbar and Windows Hello reliability, and additional enterprise management capabilities for […]

AC Anoop C Nair 8 min read
SCCM

ConfigMgr 2603 Introduces New Early Update Enrollment Process

Key Takeaways In this post we are discussing the ConfigMgr 2603 Introduces New Early Update Enrollment Process. Microsoft has officially released Configuration Manager version 2603 to the Early Update Ring, giving organizations an opportunity to test upcoming improvements before the global production rollout. The release is targeted at enterprises running ConfigMgr version 2409 or later […]

AC Anoop C Nair 3 min read