Microsoft SCCM & SCOM OpenManage Integrations

Last reply by 06-08-2022 Unsolved
Start a Discussion
2 Bronze
2 Bronze
1151

SCCM Dell Third Party Updates failing to download

Getting what appears to be a code signing cert error after setting up and subscribing to Dell Third Party Updates

Configuration Manager 2111 Hotfix Rollup (KB12896009)

I get the following error when trying to download the Dell Open Manage Inventory Agent or any other Dell driver update.
The items are showing as Meta data only
WSUS certificates are in all locations on the SCCM/SCUP server per the recommend actions in the logs

One thing to note is that it looks like Dell Third Party Updates were previously incorrectly configured and not properly removed.

SMS_ISVUPDATES_SYNCAGENT.log

SyncUpdate: Exception Message: Failed to sign package; error was: 2148081670 SMS_ISVUPDATES_SYNCAGENT 5/26/2022 7:22:57 AM 2804 (0x0AF4)
SyncUpdate: Exception source Microsoft.UpdateServices.BaseApi SMS_ISVUPDATES_SYNCAGENT 5/26/2022 7:22:57 AM 2804 (0x0AF4)
SyncUpdate: Exception TargetSite Void SignPackageCab(Boolean, System.String) SMS_ISVUPDATES_SYNCAGENT 5/26/2022 7:22:57 AM 2804 (0x0AF4)
SyncUpdate: Stack at Microsoft.UpdateServices.Internal.BaseApi.Publisher.SignPackageCab(Boolean dualSign, String httpTimeStamp)~~ at Microsoft.UpdateServices.Internal.BaseApi.Publisher.PublishPackage(String sourcePath, String additionalSourcePath, String packageDirectoryName, Boolean dualSign, String httpTimeStamp)~~ at Microsoft.ConfigurationManager.ISVUpdatesSyncAgent.WSUS.UpdateServicesWrapper.AddContentForUpdate(ILogger logger, ISoftwareDistributionPackageWrapper updateSdp, String contentLocation, StatusMessageReporter statusMessageReporter) SMS_ISVUPDATES_SYNCAGENT 5/26/2022 7:22:57 AM 2804 (0x0AF4)
SyncUpdate: ===================== Exception Detail End ======================== SMS_ISVUPDATES_SYNCAGENT 5/26/2022 7:22:57 AM 2804 (0x0AF4)
SyncUpdate: Verify the WSUS signing certificate has been configured properly: SMS_ISVUPDATES_SYNCAGENT 5/26/2022 7:22:57 AM 2804 (0x0AF4)
SyncUpdate: 1) The signing certificate must not be expired. SMS_ISVUPDATES_SYNCAGENT 5/26/2022 7:22:57 AM 2804 (0x0AF4)
SyncUpdate: 2) The signing certificate must be in the Trusted Publishers container on the WSUS server. SMS_ISVUPDATES_SYNCAGENT 5/26/2022 7:22:57 AM 2804 (0x0AF4)
SyncUpdate: 3) If using self-signed certificates, the certificate must also be in the trusted root container on the WSUS server. SMS_ISVUPDATES_SYNCAGENT 5/26/2022 7:22:57 AM 2804 (0x0AF4)
SyncUpdate: 4) If using PKI certificates, the certificate must have been issued by a trusted CA. SMS_ISVUPDATES_SYNCAGENT 5/26/2022 7:22:57 AM 2804 (0x0AF4)
STATMSG: (SRVMSG_SMS_ISVUPDATES_SYNCAGENT_UPDATECONTENT_PUBLISH_FAIL_CERTCONFIG). SMS_ISVUPDATES_SYNCAGENT 5/26/2022 7:22:57 AM 2804 (0x0AF4)
SyncUpdate: 44b560f7-96ab-4881-901a-7544e4cfb7c6 - Failed to add content for 'Dell OpenManage Inventory Agent(for Dell Business Client Systems), 2.1.0.1' (Update:'44b560f7-96ab-4881-901a-7544e4cfb7c6') Vendor 'Dell' Product:'Drivers and Applications' to WSUS. SMS_ISVUPDATES_SYNCAGENT 5/26/2022 7:22:57 AM 2804 (0x0AF4

Any help would be...helpful

Thanks

Replies (19)
757

Hello @CNewell-ITS,

 

I'm Joey from the enterprise social support. May I know if you are having issues with SCCM updates with  Dell Business Client Catalog or Dell Server Catalog into SCUP? What are the products model involved in these updates?


DELL-Joey C
Social Media and Communities Professional
Dell Technologies | Enterprise Support Services
#IWork4Dell

Did I answer your query? Please click on ‘Accept as Solution’. ‘Kudo’ the posts you like!

749

Hi Joey,

I am having issues with the built in Dell/SCCM third party update catalog I am assuming its the Client catalog as all the updates appear to be client models.

2 Bronze
2 Bronze
745

Also, WSUS is not configured for SSL. Is this a requirement, all the docs I have found state that if SCCM and and WSUS are on the same server its not required, however I question this due to the error I'm seeing.

SCCM Site server and WSUS are on the same server however there are 2 remote distribution points that are running SCUP. 

745

Hello CNewell-ITS,

 

We have seen before with SCUP that you import the Dell catalog into, that it has cached some old stuff and it doesn't work now.

Our recommendation is to delete the entire Dell parent folder and children out of the SCUP Updates Workspace then reimport the catalog.

 

I may also recommend, since these are client, to post on the client board for them to get a look with you.


Dell -Charles R
Social Media and Communities Professional
Dell Technologies | Enterprise Support Services
#IWork4Dell

Did I answer your query? Please click on ‘Accept as Solution’. ‘Kudo’ the posts you like!

743

I'm not sure what you mean by delete the Dell parent folder. I can unsubscribe frim the Dell catalog but all the meta-data remains in SCCM. Are you saying that I would need to find a way to clean out the meta data from the database as well?

743

Hello CNewell-ITS,

 

If you don't have any customization, you can delete the Dell parent catalog folder including children out of the SCUP Updates Workspace and then reimport the catalog.  Page 7 of this document may help : https://dell.to/3a0Rlem


Dell -Charles R
Social Media and Communities Professional
Dell Technologies | Enterprise Support Services
#IWork4Dell

Did I answer your query? Please click on ‘Accept as Solution’. ‘Kudo’ the posts you like!

687

Charles I think the idea that the metadata needs to be deleted and resync' d may be correct, however the article you linked doesn't seem to relate:

1. it is for SCCM 2012 I am running CB 2111

2. is describes using System Center Updates Publisher 2011. I am not using the update publisher app I am using the build in SCCM feature Third Party Software Update Catalogs. I have subscribed to the Dell third party update catalog through SCCM. I have not downloaded a DellSDPCatalogPC.cab file.

Do you have instructions that relate to cleaning out metadata sync using the third party update feature in SCCM. 

SCCM Capture.PNG

686

CNewell-ITS,

 

The suggestions and material are based on best practices. What I suggest in your case would be to call in and work with the OpenManage group directly, as they would be better suited in this instance. 

 

Hope this helps.

 

 


Chris Hawk
Social Media and Communities Professional
Dell Technologies | Enterprise Support Services
#Iwork4Dell

Did I answer your query? Please click on ‘Accept as Solution’
‘Kudo’ the posts you like!
685

I don't think the Openmanage team can help. This isn't an Openmanage issue, ALL Dell updates, drivers and applications are having the same issue. I think this is more an issue with the Dell Third Party Update Catalog configuration in some way. I have also opened a ticket with Microsoft SCCM team however as this is a Dell catalog not an MS catalog they have not been very helpful.

Is there an article or team that can help me clean the Dell meta-data out of the WSUS database? I could then reconfigure the Dell catalog and sync the meta-data with the new correct cert,,,hopefully.

Thanks

 

Latest Solutions
Top Contributor