Create a SCOPE for the Group Policy Object. Remove all other scopes. The scope will be limited to an AD security group e.g. 'SCCM-Client-Re-Install-AD…
This application fails to authenticate with WMI on the SCCM server because Microsoft has not yet hardened DCOM on their Windows Preinstallation Environment. We are working on a different approach, but it will only be released during the first quarter of 2024. But until that time, the only workaround will be to uninstall the update corresponding to KB5004442.