Product

Microsoft Configuration Manager

Track documentation and Message Center changes for Microsoft Configuration Manager.

Microsoft Learn documentation ↗

Latest Microsoft Configuration Manager changes

Support For Windows 11

Windows

The documentation now lists Windows 11 version 26H2 (build 10.0.26300) with support indicators shown as ❌, ✅, and ✅.

Deprecation

General

The documentation now states that built-in Asset Intelligence reports are removed from Monitoring > Reporting > Reports in version 2609. References apply to version 2603 and earlier.

Enable Tls 1 2 Server

General

The documentation now states that all SQL Server versions currently supported by Configuration Manager support TLS 1.1 and TLS 1.2. Secondary site servers now require SQL Server 2017 Express with CU2 or later, replacing the previous SQL Server 2016 Express SP2 minimum.

Endpoint Antimalware Policies

Device security

The documentation now states that Microsoft Defender Antivirus contextual file and folder exclusions can be specified in the policy setting or with the Set-CMAntimalwarePolicy cmdlet starting in version 2609.

Index

General

The index now includes Configuration Manager 2609 and links to KB 2377842. Entries for versions 2107 through 2211 were removed, and the page date was updated.

Introduction To Asset Intelligence

General

The documentation states that version 2609 removes the Catalog Synchronization and Inventoried Software Status sections from the Asset Intelligence home page and removes Asset Intelligence reports from Monitoring > Reporting > Reports.

List Of Prerequisite Checks

General

The documentation now requires ODBC Driver 18.6.2.1 or later for Configuration Manager 2609 and later, and SQL Server 2017 CU2 or later starting with 2609. Unsupported versions can block installation or upgrades; it also identifies version-specific incompatible ODBC releases and adds a non-blocking warning about automatic client approval.

List Of Reports

Endpoint analytics

Starting with version 2609, the Asset Intelligence report category and its 67 reports will be removed. They apply to version 2603 and earlier.

Operations For Asset Intelligence

General

Starting in version 2609, the Catalog Synchronization and Inventoried Software Status sections, along with Asset Intelligence reports, are removed. The page instead provides deprecation information and links to the product lifecycle dashboard and Asset Intelligence client settings. Earlier procedures apply only to version 2603 and earlier.

Release Notes

General

The page date changed to September 22, 2026, and the “What’s new” link changed from version 2503 to version 2609.

Site And Site System Prerequisites

General

The documentation now specifies Microsoft ODBC Driver for SQL Server and links to minimum, validated, and blocking versions. Starting in version 2609, Configuration Manager automatically installs the Microsoft OLE DB Driver for SQL Server and no longer requires SQL Server Native Client; versions 2603 and earlier retain the previous Native Client behavior.

Support For Sql Server Versions

General

The documentation marks SQL Server 2016 and SQL Server 2016 Express as deprecated in version 2609. SQL Server editions earlier than SQL Server 2017 CU2 must be upgraded before installing or updating to 2609; the Visual C++ Redistributable on secondary sites must also be updated.

Support For Virtualization Environments

General

The documentation no longer lists Windows Server 2012 R2, Microsoft Hyper-V Server 2012, or Windows Server 2012. The page date was updated to September 21, 2026.

Support For Windows 10

Windows

The documentation date was updated, and the support table now lists ConfigMgr 2509, 2603, and 2609 instead of 2503, 2509, and 2603.

Support For Windows 11

Windows

The documentation now lists Windows 11 25H2 as supported with ConfigMgr 2503, 2509, and 2603, and adds ConfigMgr 2609 to the matrix.

Support For Windows Adk

Windows

The documentation table now lists ConfigMgr 2509, 2603, and 2609 instead of 2503, 2509, and 2603. The page date was also updated.

Support For Windows Features And Networks

Windows

The documentation now states that Configuration Manager supports data deduplication with distribution points on supported Windows Server versions, replacing the explicit “Windows Server 2012 or later” wording.

Supported Configurations For Sql Server

General

Starting with Configuration Manager version 2609, the TRUSTWORTHY database property is not required to load Microsoft-signed SQLCLR assemblies, including for databases using SQL Server Always On availability groups. Version 2603 and earlier still require TRUSTWORTHY to be enabled.

Supported Operating Systems For Clients And Devices

General

Starting with Configuration Manager version 2609, Windows Server 2012, Windows Server 2012 R2, and their Windows Storage Server editions will no longer be supported as client operating systems.

Updates

General

The page now lists version 2609 (5.00.9152.1000), released September 28, 2026, with support through March 28, 2028. Version 2503 is now shown as plain text.

Upgrade On Premises Infrastructure

General

The documentation now lists SQL Server 2025 and removes SQL Server 2016, SQL Server 2014, and the SQL Server 2016 upgrade link.

Whats New In Version 2309

General

The Configuration Manager version 2309 documentation now links to the prerequisite-checks page for minimum required versions, validated versions, and known blocking issues for the ODBC driver for SQL Server.

Configuration Manager And Windows As Service

Windows

The Configuration Manager documentation now links to `integrate-windows-update-client-policies.md` instead of `integrate-windows-update-for-business-windows-10.md`.

Integrate Windows Update client policies

Device updates

The article was rewritten to explain co-management scenarios, scan source policies, common pitfalls, troubleshooting, and the effects of receiving Windows updates directly from Windows Update. It documents impacts to compliance reporting, Microsoft app updates, third-party updates, and software-update-based client deployment.

Integrate Windows Update For Business Windows 10

Device updates

The Configuration Manager article covering Windows Update client policies, co-management considerations, limitations, prerequisites, and client identification procedures was deleted.

Manage Windows As A Service

Windows

The article’s guidance on integrating Windows Update client policies was revised. It continues to state that computers using Windows Update client policies or Windows Insiders aren’t evaluated in Windows servicing plans and must use Configuration Manager software updates with WSUS.

Plan For Software Updates

Device updates

The article now links to `integrate-windows-update-client-policies.md` instead of `integrate-windows-update-for-business-windows-10.md`.

Whats New In Version 1706

Device updates

The version 1706 documentation now links to the Windows Update client policies article at a new path, retaining the same configuration section anchor.

About boundary groups

General

The article metadata now uses `ms.subservice: core-infra` and `ms.service: configuration-manager`.

About log files

Troubleshooting

The page now uses `core-infra` and `configuration-manager` as its subservice and service metadata values.

About schema extensions

General

The article metadata now uses `ms.subservice: core-infra` with `ms.service: configuration-manager` instead of the previous values.

About the BitLocker recovery service

Device security

The page’s `ms.service` metadata changed from `microsoft-endpoint-configuration-manager` to `configuration-manager`; `ms.subservice` remains `protect`.

About upgrade, update, and install

General

The page metadata changes `ms.subservice` from `core-infrastructure` to `core-infra` and `ms.service` from `microsoft-endpoint-configuration-manager` to `configuration-manager`.

Accessibility

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Accounts used

Windows

The article’s service metadata changed from `microsoft-endpoint-configuration-manager` to `configuration-manager`, and its subservice metadata changed from `core-infrastructure` to `core-infra`.

Add site system roles

General

The page now uses `core-infra` and `configuration-manager` metadata values instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Additional privacy information

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

After the site updates

General

The page metadata changed from `core-infrastructure` and `microsoft-endpoint-configuration-manager` to `core-infra` and `configuration-manager`.

Antivirus exclusions

Device security

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Approve applications

App management

The page metadata now uses `core-infra` with `configuration-manager` instead of `core-infrastructure` with `microsoft-endpoint-configuration-manager`.

Asset intelligence deprecation

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Asset intelligence introduction

General

The page metadata now uses `core-infra` with `configuration-manager` instead of `core-infrastructure` with `microsoft-endpoint-configuration-manager`.

Asset Intelligence Prerequisites

General

The page’s service classification changed from `core-infrastructure` / `microsoft-endpoint-configuration-manager` to `core-infra` / `configuration-manager`.

Asset Intelligence security & privacy

General

The page metadata now uses `ms.subservice: core-infra` and `ms.service: configuration-manager` instead of the previous values.

Assign clients to a site

General

The page metadata now uses `configuration-manager` with `core-infra` instead of `microsoft-endpoint-configuration-manager` with `core-infrastructure`.

Associate users with a computer

General

The article’s service metadata changed from `microsoft-endpoint-configuration-manager` to `configuration-manager`, and its subservice metadata changed from `operating-system-deployment` to `osd`.

Audit remote control usage

General

The document metadata now uses `ms.subservice: core-infra` and `ms.service: configuration-manager`.

Backup sites

General

The page metadata now uses `ms.subservice: core-infra` with `ms.service: configuration-manager` instead of the previous values.

BitLocker event logs

Device security

The article’s `ms.service` metadata changed from `microsoft-endpoint-configuration-manager` to `configuration-manager`.

BitLocker self-service portal

Device security

The page’s `ms.service` metadata changed from `microsoft-endpoint-configuration-manager` to `configuration-manager`.

BitLocker settings reference

Device security

The BitLocker settings documentation now uses `ms.service: configuration-manager` instead of `microsoft-endpoint-configuration-manager`.

Blocking clients

General

The page metadata now uses `ms.subservice: core-infra` and `ms.service: configuration-manager` instead of the previous values.

Boundaries and boundary groups

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Boundary group options

General

The page’s metadata values changed from `core-infrastructure` to `core-infra` and from `microsoft-endpoint-configuration-manager` to `configuration-manager`.

Boundary groups and distribution points

General

The page metadata changed from `core-infrastructure` and `microsoft-endpoint-configuration-manager` to `core-infra` and `configuration-manager`.

Boundary groups and software update points

General

The documentation metadata changed from `core-infrastructure` and `microsoft-endpoint-configuration-manager` to `core-infra` and `configuration-manager`.

Capabilities in Technical Preview 1602

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Capabilities in Technical Preview 1606

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Capabilities in Technical Preview 1607

General

The page metadata now uses `core-infra` with `configuration-manager` instead of `core-infrastructure` with `microsoft-endpoint-configuration-manager`.

Capabilities in Technical Preview 1609

General

The page metadata now uses `ms.subservice: core-infra` with `ms.service: configuration-manager`, replacing the previous metadata values.

Capabilities in Technical Preview 1610

General

The page metadata now uses `core-infra` with `configuration-manager` instead of `core-infrastructure` with `microsoft-endpoint-configuration-manager`.

Capabilities in Technical Preview 1611

General

The page metadata now uses `core-infra` with `configuration-manager` instead of `core-infrastructure` with `microsoft-endpoint-configuration-manager`.

Capabilities in Technical Preview 1702

General

The page metadata changed from `microsoft-endpoint-configuration-manager`/`core-infrastructure` to `configuration-manager`/`core-infra`.

Capabilities in Technical Preview 1703

General

The page metadata now uses `core-infra` with `configuration-manager` instead of `core-infrastructure` with `microsoft-endpoint-configuration-manager`.

Capabilities in Technical Preview 1704

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Capture and restore user state

General

The article now uses `ms.subservice: osd` and `ms.service: configuration-manager` metadata values.

Certificates overview

Fundamentals

The page metadata now uses `ms.subservice: core-infra` and `ms.service: configuration-manager` instead of the previous values.

Changes from version 2012

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Changes to CMPivot

General

The page now uses `ms.subservice: core-infra` and `ms.service: configuration-manager` in place of the previous metadata values.

Check for running executable files

App management

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Checklist for 1602

General

The page’s service metadata changed to `configuration-manager` and its subservice metadata changed to `core-infra`.

Checklist for 1606

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Checklist for 1610

General

The page metadata now uses `ms.subservice: core-infra` and `ms.service: configuration-manager`.

Checklist for 1702

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Checklist for 1706

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Checklist for 1802

General

The page metadata now uses `ms.subservice: core-infra` and `ms.service: configuration-manager` instead of the previous values.

Checklist for 1806

General

The article’s metadata changed from `core-infrastructure` and `microsoft-endpoint-configuration-manager` to `core-infra` and `configuration-manager`.

Checklist for 1810

General

The page metadata now uses `ms.subservice=core-infra` and `ms.service=configuration-manager` instead of the previous values.

Checklist for 1902

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Checklist for 1906

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Checklist for 1910

General

The page now uses `core-infra` and `configuration-manager` service metadata values instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Checklist for 2002

General

The document’s service metadata changed from `core-infrastructure` and `microsoft-endpoint-configuration-manager` to `core-infra` and `configuration-manager`.

Checklist for 2006

General

The page metadata now uses `ms.subservice: core-infra` with `ms.service: configuration-manager`, replacing the previous values.

Checklist for 2010

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Checklist for 2103

General

The page now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Checklist for 2107

General

The page metadata now uses `configuration-manager` and `core-infra` instead of `microsoft-endpoint-configuration-manager` and `core-infrastructure`.

Checklist for 2111

General

The page metadata now uses `core-infra` and `configuration-manager` instead of `core-infrastructure` and `microsoft-endpoint-configuration-manager`.

Checklist for 2203

General

The page metadata changed from `core-infrastructure` and `microsoft-endpoint-configuration-manager` to `core-infra` and `configuration-manager`.

Checklist for 2207

General

The page now uses `ms.subservice: core-infra` and `ms.service: configuration-manager` instead of the previous metadata values.

Checklist for 2211

General

The page metadata now uses `core-infra` with `configuration-manager` instead of `core-infrastructure` with `microsoft-endpoint-configuration-manager`.

Checklist for 2303

General

The checklist metadata now uses `ms.subservice: core-infra` and `ms.service: configuration-manager` instead of the previous values.

Daily Intune.Admin.News

Get daily email updates

Get a concise summary of the latest Microsoft Intune updates delivered straight to your inbox.

Loading the secure signup form…