Configure Software Update Point for SSL | ConfigMgr | SCCM

Updated: 5 days ago

Microsoft deprectaed HTTP-only communication in Configuration Manager to increase security. The HTTP-only communication will not be supported with first release after Oct 31, 2022. Hence, existing infrastructure should be configured for HTTPS based communication in ConfigMgr. The HTTPS communication can be enabled using PKI certificates.


The HTTPS communication is also required for Software Update Point if you want to use Cloud Management Gateway (CMG) to support internet-based clients. If you are not ready for HTTPS based communication for all clients and need SSL Software Update point for CMG only then dedicate a site systems for CMG and have both management point and software update point role on that.


In this blog post, we will walk through the SSL requirements and configuration for SCCM Software Update Point. We will use SSL certificates from Microsoft Public Key Infrastructure (PKI).


Related Post:

Configure Management Point for HTTPS | ConfigMgr | SCCM

Deploy client authentication certificate for SCCM clients



Table of Contents




Issue & Enroll server authentication certificates for ConfigMgr IIS servers