Installation of system center. We accept the terms of the license agreement

To check whether Configuration Manager is ready to install, we will use the application Prereqchk.exe, which is located on installation disk in folder SMSSETUP\BIN\X64.Documentation for working with Prereqchk.exe is available here
To check the readiness of the first server for installing a Primary site with SQL on a separate server, run

E:\SMSSETUP\BIN\X64\prereqchk.exe /PRI /SQL /SDK /MP /DP /ssbport - FQDN SQL server, cm01 is the first site server whose readiness we are checking.
/PRI Checks compliance local computer requirements of the primary site.
/SQL<полное_доменное_имя_SQL_Server> Checks compliance specified computer requirements SQL Server related to Configuration Manager site database hosting.
/SDK<полное_доменное_имя_поставщика_SMS> Verifies that the specified computer meets the requirements of the SMS provider.
/MP<полное_доменное_имя_точки_управления> Verifies that the specified computer meets the requirements for the management point site system role.
/DP<полное_доменное_имя_точки_распространения> Verifies that the specified computer meets the requirements for the distribution point site system role.
/Ssbport Verifies that the firewall exception that allows connections on the SSB port is active. The default port is SSB 4022.

When the command is executed it will start GUI, which will indicate the requirements and recommendations for installation point by point:

Let's go through the main ones.

Install .Net framework 3.5:

Install-WindowsFeature Net-Framework-Core -source f:\sources\sxs

f:\sources\sxs - folder on the installation Windows disk Server 2016

Install the remaining OS components:

Install-WindowsFeature -Name UpdateServices-Ui Install-WindowsFeature Web-Windows-Auth Install-WindowsFeature Web-ISAPI-Ext Install-WindowsFeature Web-Metabase Install-WindowsFeature Web-WMI Install-WindowsFeature BITS Install-WindowsFeature RDC Install-WindowsFeature NET-Framework -Features Install-WindowsFeature Web-Asp-Net Install-WindowsFeature Web-Asp-Net45 Install-WindowsFeature NET-HTTP-Activation Install-WindowsFeature NET-Non-HTTP-Activ Install-WindowsFeature WDS

Install-WindowsFeature -Name UpdateServices-Ui installs the WSUS administration tools. I will not install the WSUS role itself on this server, because I plan to deploy Software Update Point on the second server of the CM02 site.

ADK Installation

Download and install ADK 10
I used Windows ADK for Windows 10, version 1703.
The following components are sufficient for Configuration Manager to work:
Deployment Tools
Windows PE,
If necessary, you can install additional components. I also installed ICD and Configuration Designer.

We re-run the readiness check:

There are still active comments on SQL setup server. One of them reports that it is not recommended to use SQL authentication on the server. I deliberately chose this configuration, so I will ignore this warning. The other two warnings are related to the fact that the upper and lower bounds for memory consumption of the database server are not set. The lower minimum limit for a Primary site should be 8 GB. I'll set the lower limit to 16 GB and the upper limit to 20 GB. You can do this in SQL Server Management Studio:

We run the readiness checker again and make sure that there are no obstacles to installing the first server of our site.

Installing the first site server

Mount the Configuration Manager disk image and run the splash.hta file:

We indicate the type of site that needs to be installed:

Next, the wizard will ask you to enter license key and accept the license agreement. The installer will then download the required installation files to the specified location. In the next two steps, we indicate the languages ​​that need support in the server part (Configuration Manager Console and reports) and in the client part:

If the client OS language is Russian, then all warnings and the SCCM client interface will be in Russian.

Add support required languages possible after installation. To do this, you need to run the installation again and select “ Perform Site Maintenance» in the installation wizard.
At the next step, you need to specify the site code, which will identify it in the site hierarchy. The site code cannot be changed subsequently!

As in previous versions the site name must be three letters and comply with the following rules: the site name must contain only standard characters(A-Z, a-z, 0-9, and the hyphen “-”), and be unique within your Configuration Manager infrastructure. Reserved names cannot be used: SMS, CON, PRN, AUX, NUL, OSD, SRS, FCS.

Next, we indicate whether the site should be added to the existing hierarchy or a Stand-alone site should be created:

A warning window will appear indicating that we have selected a Stand-alone site. But unlike the ConfigMgr 2012 version, this warning informs us that if we need to create a site hierarchy, we can do this by installing the Central Administration site:

In the next step, we will indicate the name of the SQL server that we prepared. We leave the instance name empty, because When installing the SQL server, we left it by default. We also leave the port 4022:

At the next step, we specify the paths to the database and transaction log on the SQL server.
Now we indicate the server on which the SMS provider should be installed. In our case, this is the same cm01 server:

The next step is to configure how clients interact with site roles. I choose the option of setting up the interaction method separately on each site role, because... I plan to configure the PKI infrastructure for clients and site roles later. Checking the “Clients will use HTTPS when they have a valid PKI certificate and HTTPS-enabled site roles are available” checkbox allows clients to select a site system configured to connect via HTTPS with priority.

Next, we indicate the names of the servers on which you need to install the management point and distribution point. In our case, this is the same server on which we ran the installation:

Next, you need to configure Configuration Manager update settings. In new versions of Configuration Manager, it itself receives updates through the Configuration Manager cloud service. To do this, the “Service Connection Point” site role is used, which, among other functionality, downloads updates applicable to your SCCM infrastructure.
We indicate the server on which to deploy Service Connection Point and, if required, proxy server settings for Internet access:

At the next step “Settings Summary”, we check all the specified parameters in the installation wizard again and click next, after which the compliance check of the prepared infrastructure will start to continue the installation.
In my case, I received a warning that the SQL server is configured for the “Mixed Mode” authentication mode, but because... This is intentional, I ignore this warning and continue with the installation:

We check the success of the installation on all points:

You can also check the System Management container for site and management point entries:

This completes our Primary Stand-alone site.

What's available:
TL-SCOM - Win2016 Standart server
SQL 2016 Enterprise
SCOM 2016
Preparing the installation environment.
1. Install Windows 2016 Standard, add it to the domain
We create the required Accounts in AD And add them to TL-SCOM Administrators:
I created a security group SCOM_admin, in which I included the following logins
2. Install NET Framework 3.5
— connect the Win2016 image and execute the command in PoSh:
DISM /Online /Enable-Feature /FeatureName:NetFx3 /All /LimitAccess /Source:F:\sources\sxs
- where F:\sources\sxs is the path to the Win2016 NET image files
4. Install the following roles and components:
Add-WindowsFeature NET-WCF-HTTP-Activation45,Web-Static-Content,Web-Default-Doc,Web-Dir-Browsing,Web-Http-Errors,Web-Http-Logging,Web-Request-Monitor,Web-Filtering ,Web-Stat-Compression,Web-Mgmt-Console,Web-Metabase,Web-Asp-Net,Web-Windows-Auth –Restart
5. Register ASP.NET 4.0 in IIS
in CMD we execute:
%WINDIR%\Microsoft.NET\Framework64\v4.0.30319\aspnet_regiis.exe –r

Reboot the server
6. Open the IIS management snap-in, go to the ISAPI and CGI Restrictions setting and allow (check the permission) the execution of ASP.NET v4.0.30319

SQL Installation Server 2016
7. Installing SQL 2016 (everything according to Next + changed the paths to the databases to D:\MSSQL):
! SQL Server Feature Installation
- Datedase Engine Services
- Reporting Services
- Full-Text and Semantic Extractions for Search

+ download and install SQL Server Management Studio (SSMS)
Download, run the distribution, Install, wait for the installation to complete.
Upon completion, restart the server
9. Remote Registry Service: must be enabled and running.
— in PoSh we do:
Set-Service remoteregistry -StartupType Automatic Start-Service RemoteRegistry
10. Install SQL CRL 2014
Installing the first Management Server
12. Unpack the SCOM 2016 installation disk image, run the SETUP.EXE file and select Install

13. Select the required roles for installation - select all SCOM roles

14. Leave the default installation path

15. We are waiting for all prerequisites to be verified.

16. The next step is to create the first management server. Specify the name of the management group

17. We accept the terms and conditions license agreement.
18. At the step of specifying the parameters of the created operating base SCOM data we will indicate the name of the SQL Server server, instance and port. In our case, the default instance (MSSQLSERVER) is used, so it can be omitted. The name of the operational database and its initial size are left at the default value.

19. At the step of specifying parameters created base For SCOM storage data, we will specify the SQL Server server name, instance and port. If, as in our case, the default instance (MSSQLSERVER) is used, then it can be omitted. The Create a new data warehouse database parameter determines that we are creating a new database.

20. Click Next on the reporting service location

21. Leave the default value – Default Web Site is the name of the IIS site existing on our server, which will be used to host the Web console.

22. At the step of selecting an authentication method for the SCOM web console, select mixed mode - Use Mixed Authentication, since we plan to use this website only internally local network and we want the method of end-to-end verification of credentials (SSO) available to us