by Contributed | Dec 9, 2020 | Technology
This article is contributed. See the original author and article here.

Hi IT Pros,
Microsoft has just released Endpoint Manager – Endpoint Analytics. It is a cool feature, addressing service desk long time need to monitor and identify the devices which have delay sign-in time and performance issue even before Users make the support calls for help.
I have collected all the information related to setup, operation, troubleshooting of Endpoint Analytics and created this blog article for your reference.
Let’s review and enjoy our new EA feature exploration.
It is common for end users to experience long boot times or other disruptions. These disruptions can be due to a combination of:
- Legacy hardware
- Software configurations that are not optimized for end-user experience.
- Issues caused by configuration changes and updates.
Endpoint analytics, which was released on September 22nd, 2020, aims to improve user productivity and reduce IT support costs by providing insights into the user experience.
- provides insights to help you understand your devices’ reboot and sign-in times so you can optimize your users’ journey from power on to productivity.
- helps you proactively remediate common support issues before your users become aware of them and so, reduces the number before your users do.
- allows you to track the progress of enabling your devices to get corporate configuration data from the cloud, making it easier for employees to work from home.
Endpoint Analytics structure

- Endpoint Analytics currently focuses on three areas:
- Start up performance:
- Get end-users from power-on to productivity quickly by identifying and eliminating lengthy boot and sign in delays.
- Leverage the startup performance score and a benchmark to compare to other organizations,
- Recommended actions to improve startup times.
- Proactive remediation scripting:
- Use built-in scripts for common issues or author your own.
- Recommended software:
- Recommendation for optimizing OS and Microsoft software versions.

You can enroll devices via Configuration Manager or Microsoft Intune.
- To enroll devices via Intune requires:
- Intune enrolled or co-managed devices running Windows 10 Pro, Windows 10 Pro Education, Windows 10 Enterprise, or Windows 10 Education.
- Windows 10 Pro versions 1903 and 1909 required KB4577062.
- Windows 10 Pro versions 2004 and 20H2 required KB4577063.
- Windows 10 devices must be Azure AD joined or hybrid Azure AD joined.
- Telemetry (Diagtrack) service is enabled on Endpoint
- The Intune Service Administrator role is required to start gathering data.
You can enroll devices via Configuration Manager or Microsoft Intune.
- To enroll devices via SCCM Co-Management:
- Licensing Prerequisites
- Endpoint analytics is included in the following plans:
- Enterprise Mobility + Security E3 or higher
- Microsoft 365 Enterprise E3 or higher.
- Unsupported Windows 10
- Windows 10 Home
- Windows 10 long-term servicing channel (LTSC)
- BYOD, Azure registered devices (Workspace joined device)
- Firewall URL requirement for SCCM Site System Server
- Firewall URL requirement for Intune-managed devices
- https://*.events.data.microsoft.com
To Enable endpoint analytics

- Configure Intune data collection policy
Click on link as shown:


Enable Endpoint Analytics in SCCM ConsoleCloud ServicesCo-Management
Configure upload

- Sign in and Confirm change to Cloud Service Endpoint Manager.
- SCCM Client SettingComputer Agent
Enable Endpoint Analytics data collection: Yes

- Check result in Endpoint AnalyticsSettings

Set baseline to observe progress made in a period.
Baseline management
- You can compare your current scores and sub scores to others by setting a baseline.
- There is a built-in baseline for All organizations (median), which allows you to compare your scores to a typical enterprise.
- There is a limit of 100 baselines per tenant.

- Your current metrics will be flagged red and show as regressed if they fall below the current baseline in your reports.
- set a regression threshold, the defaults to 10%. With this threshold, metrics are only flagged as regressed if they have regressed by more than 10%.

Endpoint Analytics Overview
- Review the “Insights and recommendations” about devices with slow boot time as shown.

- Review the “Insights and recommendations” about devices with slow GPO processing time.

Endpoint Analytics Startup performance
- After Devices are enrolled, the next reboot will be evaluated and scored.
- Compare boot time based on HDD or SSD disk type.
- Compare boot time based on models and device types.

- Sorted by Group Policy boot time to find the worst device.
- In Startup processes tab, sorting by Median delay (seconds) to find the worst delay process and number of affected devices.

Endpoint Analytics Proactive Remediation
- Proactive remediations are script packages that can detect and fix common support issues on a user’s device.
- Use Proactive remediations to help increase your User experience score.
- You can create your own script package or deploy one of the downloaded script packages.
- Each script package consists of a detection script, a remediation script, and metadata.
- Microsoft is actively developing new script packages and would like to know about your experiences when you were using them.
There are 2 built-in script packages:
You could create your own script package which includes detection script and remediation script, it is similar to SCCM Configuration Item with Compliance rule and SCCM Baseline Remediation, script example shown in the image:

The example results of Proactive remediation script running, is shown in the following image:
Endpoint Analytics Recommended Software
The infrastructure software recommended for the whole corporation environment such as Windows 10, Azure Active Directory, Cloud Management, …
- The Software adoption score is a number between 0 and 100. The score represents a weighted average of the percentage of devices that have deployed with recommended software.
- Windows 10 score: the percent of devices on Windows 10 versus an older version of Windows.
- Autopilot score: the percent of Windows 10 devices that are registered for Autopilot
- Azure Active Directory: the percent of devices enrolled in Azure AD
- Cloud Management: the percentage of PCs that have attached to the Microsoft 365 cloud
Endpoint Analytics Troubleshooting
- Troubleshooting device enrollment and startup performance
- The overview page shows a startup performance score of zero with a banner showing it is waiting for data,
- Device performance tab shows fewer devices than you expect.
Solution:
check Resultant client settings if there is an overriding client setting and endpoint analytics is disabled.
- Update Stale Group Policies script return with error 0x87D00321?
0x87D00321 is a script execution timeout error. This error typically occurs with machines that are connected remotely. A potential mitigation might be to only deploy to a dynamic collection of machines that have internal network connectivity.
- Hardware inventory for devices may fail to process after enabling endpoint analytics.
Errors in the Dataldr.log file:
Begin transaction: Machine=<machine>
*** [23000][2627][Microsoft][SQL Server Native Client 11.0][SQL Server]Violation of PRIMARY KEY constraint ‘BROWSER_USAGE_HIST_PK’. Cannot insert duplicate key in object ‘dbo.BROWSER_USAGE_HIST’. The duplicate key value is (XXXX, Y). : dbo.dBROWSER_USAGE_DATA
ERROR – SQL Error in
ERROR – is NOT retyrable.
Rollback transaction: XXXX
Mitigation: Disable the collection of the Browser Usage (SMS_BrowerUsage) hardware inventory class. This class is not currently leveraged by Endpoint analytics.
- Script requirements for Proactive remediations
If the option Enforce script signature check is enabled in the Settings page of creating a script package, then make sure that the scripts are encoded in UTF-8 not UTF-8 BOM.
More Features will be added to Endpoint Analytics soon
This release is just the beginning. Microsoft will be rapidly rolling out new insights for other key user-experiences soon after the initial release.
___________________
Reference
Disclaimer
The sample scripts are not supported under any Microsoft standard support program or service. The sample scripts are provided AS IS without warranty of any kind. Microsoft further disclaims all implied warranties including, without limitation, any implied warranties of merchantability or of fitness for a particular purpose. The entire risk arising out of the use or performance of the sample scripts and documentation remains with you. In no event shall Microsoft, its authors, or anyone else involved in the creation, production, or delivery of the scripts be liable for any damages whatsoever (including, without limitation, damages for loss of business profits, business interruption, loss of business information, or other pecuniary loss) arising out of the use of or inability to use the sample scripts or documentation, even if Microsoft has been advised of the possibility of such damages.
by Contributed | Dec 9, 2020 | Technology
This article is contributed. See the original author and article here.
We are very happy to announce the availability of initial guidance to run IBM WebSphere Liberty and Open Liberty on Azure Red Hat OpenShift (ARO). This is the first release delivered through an ongoing collaboration between IBM and Microsoft around the WebSphere family of products and Azure. Developed alongside IBM, the guidance utilizes the Open Liberty Operator and provides step-by-step instructions for running WebSphere Liberty or Open Liberty on an ARO cluster. The guidance is intended to make it as easy as possible to get started with production ready deployments utilizing best practices from both IBM and Microsoft. Evaluate the guidance for full production usage and reach out to collaborate on migration cases.
Solution Details and Roadmap
Part of the WebSphere family of products, WebSphere Liberty and Open Liberty are IBM’s next generation Java platforms and are important to cloud modernization of mission critical enterprise Java workloads. Open Liberty is the production-ready, free, open-source base for WebSphere Liberty. Sharing the same core implementation, both offerings are fast, lightweight, modular, and container-friendly cloud native runtimes with robust support for industry standards such as Java EE, Jakarta EE, and MicroProfile.
ARO is a fully managed OpenShift service jointly developed, run, and supported by Microsoft and Red Hat. The combination of ARO with WebSphere Liberty and Open Liberty offers a powerful and flexible platform for enterprise Java customers. The Open Liberty Operator allows you to easily and reliably deploy and manage Java applications on both WebSphere Liberty and Open Liberty. The Operator supports both OpenShift as well as Kubernetes. In addition to deployment and management, the Operator also enables gathering traces and dumps.

The guidance uses official WebSphere Liberty and Open Liberty Docker images from IBM and demonstrates using the built-in container registry for ARO. The guidance enables a wide range of production-ready deployment architectures, and you have complete flexibility to customize your deployments. After deploying your applications, you can take advantage of a range of Azure resources for additional functionality.

In the next few months, IBM and Microsoft will provide guidance for running WebSphere Liberty and Open Liberty on Azure Kubernetes Service (AKS). Next year, we will explore providing jointly developed and supported Marketplace offerings targeting WebSphere Traditional on Azure Virtual Machines, WebSphere Liberty/Open Liberty on ARO, and WebSphere Liberty/Open Liberty on AKS.
These solutions follow a Bring-Your-Own-License model. For WebSphere Liberty, they assume you have procured the appropriate licenses with IBM and are properly licensed to run offers in Azure. The solutions themselves are available free of charge, as is Open Liberty and the Open Liberty Operator (customers can purchase optional IBM support for Open Liberty). Customers are responsible for Azure resource usage.
Get started with WebSphere Liberty and Open Liberty on ARO
Explore the guidance, provide feedback, and stay informed of the roadmap. You can also take advantage of hands-on help from the engineering team behind these efforts. The opportunity to collaborate on a migration scenario is completely free while solutions are under active initial development.
by Contributed | Dec 9, 2020 | Technology
This article is contributed. See the original author and article here.
The Azure Synapse Studio is a one-stop-shop for all your data engineering and analytics development, from data exploration to data integration to large scale data analysis. On the Home hub of the Studio, you can easily begin loading data, extracting insights, building interactive reports with Power BI and accessing learning resources in the Knowledge Center to quickly get started with Azure Open Datasets, one-click tutorials, and virtual tours.
Data Hub
The Data hub houses all workspace databases and allows you to link to external and integration datasets as well as the various sample Azure Open Datasets in the Gallery. Add Azure Open Datasets to access sample data on COVID-19, public safety, transportation, economic indicators, and more. The datasets will automatically added to the Data hub under the “Linked” tab and then “Azure Blog Storage.” With the click of a button, you can then run sample scripts to select the top 100 rows and create an external table or you can also create a new notebook.
The “Workspace” and “Linked” tabs provide a simple way to organize your databases and analytical stores—for both SQL and Spark. The “Workspace” tab shows your SQL and Spark databases created and managed with your Synapse workspace. The “Linked” tab shows connected services ready for in-place analytics, such as data from your operational store in Azure Cosmos DB.

Develop Hub
SQL scripts, notebooks, data flows, and Spark job definitions are found in the Develop hub. You can also connect Power BI reports and import existing development artifacts. Sample scripts and sample notebooks from the Gallery in the Knowledge Center will also open in the Develop hub.

Integrate Hub
The Integrate hub is home to the data integration capabilities for Azure Synapse. You can create new data pipelines, use the Copy Data Tool to perform a one-time or scheduled data load from 90+ data sources, or bring in one of the 30 different pipeline templates from the Gallery in the Knowledge Center.

Monitor Hub
The Monitor hub provides a comprehensive view of performance details and statuses for different integration, activities, and resources in the Azure Synapse workspace.

Manage Hub
From the Manage hub in the Azure Synapse Studio, you can create, configure, pause, and resume SQL pools and Apache Spark pools; create and delete linked services; create and execute triggers for pipelines; setup integration runtimes; and manage all security access controls and credentials.

Try the Azure Synapse Studio today
by Contributed | Dec 9, 2020 | Technology
This article is contributed. See the original author and article here.
What is SQL Data Sync?
SQL Data Sync is a service built on Azure SQL Database that enables users to synchronize data bi-directionally across multiple databases, both on-premises and in the cloud. SQL Data Sync is based around the concept of a sync group. A sync group is a group of databases that users want to synchronize. SQL Data Sync uses a hub and spoke topology to synchronize data; meaning users define one of the databases in the sync group as the hub database, while the rest of the databases are member databases. SQL Data Sync occurs only between the hub and individual members.

Private link for SQL Data Sync (preview)
The new private link (preview) feature allows SQL Data Sync users choose a service managed private endpoint to establish a secure connection between the sync service and their member and hub databases during the data synchronization process. A service managed private endpoint is a private IP address within a specific virtual network and subnet. Within Data Sync, the service managed private endpoint is created by Microsoft and is exclusively used by the Data Sync service for a given sync operation.
Setting up private link
In order to use service managed private endpoints with SQL Data Sync, both the member and hub databases must be hosted in Azure (same or different regions), in the same cloud type (e.g. both in public cloud or both in government cloud). Additionally, users must manually approve the service managed private endpoint for SQL Data Sync during the sync configuration, within the “Private endpoint connections” section in the Azure Portal or through PowerShell. Once the service managed private endpoint is approved by the customer, all communication between the sync service and the member/hub databases will happen over the service managed private link. Existing sync groups can be updated to have this feature enabled.

by Contributed | Dec 9, 2020 | Technology
This article is contributed. See the original author and article here.
We are always excited to participate in SAP TechEd, especially because of the unique partnership we share with SAP to jointly help our customers migrate ERP to the cloud. For example, we recently enabled Walgreens Boots Alliance (WBA) to migrate its massive SAP landscape (an estimated 100 terabytes) to Azure, making it one of the largest SAP S/4HANA scale-out configurations in the public cloud.
As an SAP TechEd 2020 Gold Sponsor, Microsoft will be leading a session that covers our new migration offerings, and we’ll co-present with SAP on our latest developments on simplifying a customer’s journey from SAP ERP on-premises to S/4 HANA on Azure. Additionally, there are several sessions run by SAP teams globally that cover planning and analysis with new add–ins for Microsoft Office, running SAP Cloud Platform on Azure, RPA for common scenarios combining SAP and Microsoft Office, and deploying and protecting SAP software in the cloud with Azure NetApp files. You can find these sessions in the course catalogue here.
Earlier this year, we announced offerings to help customers optimize costs and increase agility by running their SAP workloads on Azure. At Microsoft Ignite, we shared a migration framework to help customers achieve a secure, reliable, and simplified path to the cloud. Today, we continue to deliver on that promise with additional product updates that will further streamline a customer’s migration journey, drive improved price/performance, and provide simplified management.
SAP on Azure Migration Framework

Drive improved price/performance
As customers move their SAP landscapes to Azure, we want to ensure that they can benefit from new generations of hardware and processors to achieve improved price/performance ratios. We recently launched the new Ddsv4 and Edsv4 VM families based on the 2nd generation Intel Xeon Platinum 8272CL (Cascade Lake). We have also certified a subset of the Edsv4 VMs for SAP HANA. These new VMs deliver up to 20 percent CPU performance improvement compared to their predecessors, the Dv3 and Ev3 VMs, depending on the workload. Customers can also seamlessly transition to these VMs by simply resizing their VMs from the predecessor versions. Learn more about this update here.
Save costs and reduce storage requirements with the new Azure premium storage bursting capability
We continue to innovate on existing technologies such as premium storage to reduce the total cost of ownership for our customers. With the disk bursting capability of our premium storage disks, customers no longer have to size storage configurations at a higher level to account for short-lived peak workloads. Customers can instead rely on premium storage disk bursting to cover such peak demand periods. With this new capability, customers can lower their storage costs substantially across configurations for database management systems such as SAP HANA, Oracle, and SQL Server. Customers can refer to our updated SAP HANA Azure virtual machine storage configurations guide to take advantage of the updated storage size recommendations based on disk bursting. In addition, our new guide Azure Storage types for SAP workload helps customers evaluate the right storage type options for their SAP workloads.
Simplify deployment with the SAP on Azure Deployment Automation Framework
Earlier this year, we introduced introduced our SAP on Azure Deployment Automation Framework. We have evolved the framework and expanded a modular workflow to provide rapid and consistent deployments. With the automation framework, customers can deploy the Azure infrastructure to support and run an SAP system in minutes, in a repeatable fashion, to support multiple use cases. We also introduced extended functionality such as support for Azure Key Vault, Azure , and AnyDB support.
We have already made these capabilities available to a set of private preview customers. Today, we are announcing that these building blocks will be available more broadly in our GitHub Open-Source repository (sap-hana) as (v2.3) for SAP on Azure Deployment Automation soon. The automation solution is based on the best practices specified by Microsoft and SAP as part of our reference architectures for SAP. You can read more about the automation framework in our blog. You can also learn more about the scenarios supported in our GitHub repository.
Azure Backup for SAP HANA now supports incremental backups to save time and reduce costs
With Azure Backup, Azure’s native Backint certified backup solution, customers can protect their SAP HANA deployments in Azure VMs with zero backup infrastructure. We are excited to announce the public preview of support for HANA incremental backups, which allows customers to create cost-effective backup policies catering to their RPO and RTO requirements. To try out this preview offering refer to our documentation and check out this tutorial. To learn more about backups for SAP HANA databases in Azure, explore supported scenarios and FAQs.
SAP and Microsoft partner to deliver supply chain and Industry 4.0 solutions in the cloud
Today, we have further expanded our partnership with SAP to enable customers to design and operate intelligent digital supply chain and Industry 4.0 solutions in the cloud and at the edge. You can read more about how SAP and Microsoft are collaborating closely to shape the future of supply chain and manufacturing here.
SAP TechEd is an amazing opportunity to learn and gain new career skills. After the event, explore the free SAP on Azure learning resources on Microsoft Learn and consider getting certified – Azure is the only cloud vendor that offers an SAP cloud certification.
We look forward to seeing you during our sessions at SAP TechEd!
Recent Comments