Documentation for SCCM task sequence deployment orchestrator

Realm secret key

Realm secret key is the security password for all read/write operations undertaken by the sccmtspsi broker.

The value set for this key should be the same as the password set for the “sccmtspsi-broker-r01” [Where r01 is the Realm name] active directory account.

The Realm secret key is required to open and edit the “sccmtspsi.config” file.

We recommend resetting the password for the broker sccmtspsi-broker-r01 [Where r01 is the Realm name] active directory account frequently. The Realm secret key has to be changed when the password for the broker account is changed.

As stated earlier, the Realm secret key is required to open a pre-created “sccmtspsi.config” configuration file.

Suggest Edit

DCOM hardening issue.

This application fails to authenticate with WMI on the SCCM server because Microsoft has not yet hardened DCOM on their Windows Preinstallation Environment. We are working on a different approach, but it will only be released during the first quarter of 2024. But until that time, the only workaround will be to uninstall the update corresponding to KB5004442.