Overview
This article is for the use of USNH Client Services staff members to remediate co-managed endpoints that are missing the Configuration Manager client from their Windows device.
To reduce institutional risk and to improve our cyber-security posture across the University System of New Hampshire and ensure a safe computing experience for everyone, all USNH-owned device must be centrally managed by ET&S to comply with the End Point Security Policy.
SCCM stands for Microsoft's "System Center Configuration Manager".
*Check for the device in Intune using the serial number. If the device is listed as co-managed, select the device and scroll down to see the current SCCM client status and Intune Managed Workloads. SCCM client only needs to be fixed if the Intune Managed Workloads are missing or incomplete. The Intune Managed Workloads should include the following: "Client Apps, Resource Access Profiles, Device Configuration, Compliance Policy, Windows Updates for Business, Endpoint Protection, Office Click-to-Run"
Steps to check for issues with the Configuration Manager Client
Step 1 - Find the device in Intune using the search bar in Devices > Windows (You will see a column indicating if the device is Intune or co-managed). If the device is Intune managed, this article does not pertain to the device.
Step 2 - If the device is co-managed, select the device and check the last Intune check-in date. Scroll down to see the SCCM client status and Intune Managed Workloads. If the device has checked in with Intune recently and has all Intune Managed Workloads, this article does not pertain to the device.
Step 3 - If the device is missing Intune Managed Workloads, then a repair or re-install of the SCCM Client will help resolve the issue.
Steps for remediation
The recommended remediation is to reinstall the Configuration Manager Client.
Step 1 - Access ConfigMan SharePoint to download the Configman Client (CMsetup-2002.exe) and ccmclean.exe. These files are saved in the Downloads folder in File Explorer by default.
Step 2 - On the client device, open a command prompt using elevated permissions.
Step 3 - Change directory to C:\windows\ccmsetup by typing cd C:\windows\ccmsetup
Step 4 - Type ccmsetup.exe /uninstall
Step 5 - Wait until the command finishes. When it does, the command prompt line will come back to a prompt >
Step 6 - Copy the CMsetup-2002.exe and ccmclean.exe to the client device. You can remove these when you are finished.
Step 7 - Right click on ccmclean.exe on the client device and "Run as administrator". Enter your adm credentials to run the cleanup tool. It will prompt when finished.
Step 8 - Reboot the client device.
Step 9 - Right click on CMsetup-2002.exe where you saved it and "Run as administrator". Enter your adm credentials.
9.1 - A window will open with “This will install Configuration Manager. Do you wish to continue?”. Click Yes
9.2 - At the “Welcome to the Configuration Manager Setup Wizard” window, click Next
9.2 - Click Install
9.3 - Configuration Manager will install. When completed, click the Finish button.
Step 10 - Reboot the client device.
Step 11 - After the user has signed back in to the device:
11.1 - Open the Control Panel.
11.2 - Change the view to small icons and click on Configuration Manager.
11.3 - This will display a window with the Configuration Manager Properties. Select each Action and then click "Run now".
- If all of these actions do not show right away, you may have to close the window and reopen.
- Please run all actions.

Post Installation
Intune should start to populate the Intune Managed Workloads and this will take time. Instruct the user to stay connected to the VPN and continue working for the remainder of the day using this connection (if remote) or keep the device on the network for the remainder of the day (if on-prem)
Check the device over the next few days to ensure the workloads are being applied, you should expect to see a SCCM Client Status of "Healthy" with a recent check in to Intune and SCCM.
Need additional help?
If you have questions or need additional help with these topics, please reach out to your Team Lead or supervisor for assistance.