Issue registering Web app and client app in Azure for SCCM CMG VMSS

Mohd Atif Husain 145 Reputation points
2024-07-03T08:02:03.9+00:00

Dear Team,

Background - We are upgrading the customer's SCCM infrastructure running on EOL OS Win2K12. We have 1 CAS and 2 primary sites running EOL OS and on top of that we have added one new primary site to migrate the clients to this new primary site. Since SCCM CMG is deployed using Classic method which is deprecated so we are in process of implementing SCCM CMG VMSS.

Plan- Configuring the SCCM CMG VMSS upon the existing CMG classic, which is deprecated, and this will have two CMGs in the environment. When we have clients migrated to new site and we have the CMG connection point role installed on new site then clients will take policies from new CMG services.

Issue - Since we have existing Web app and native client app registered in Azure for the existing SCCM CMG classic deployment. We are facing issue in configuring the Web app and client app in Azure and it says Tenant is already registered. We had performed the manual method of configuring the apps in Azure but while importing the apps in console it gives the same error of Tenant.

Followed this article -https://video2.skills-academy.com/en-us/mem/configmgr/core/clients/manage/cmg/manually-register-azure-ad-apps

Query - Can we use the existing web app and native client app for setting up the new CMG with VMSS? Please suggest the best way to setup the CMG based on the basis of background and plan details shared.

Microsoft Configuration Manager
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. XinGuo-MSFT 15,781 Reputation points
    2024-07-04T07:22:54.5833333+00:00

    Hi,

    Based on the information provided and the current setup, it seems that the existing Azure AD applications are still tied to the classic CMG deployment. When setting up a new CMG with VMSS, you typically need to register new Azure AD applications because the CMG setup process involves creating Azure AD app registrations that are unique to the CMG service.

    However, if you're looking to reuse the existing web app and native client app registrations, you'll need to ensure that they are not already associated with another CMG service in your tenant. If they are, you might encounter issues as Azure AD will not allow duplicate registrations for the same tenant.

    If the issue persists, you might want to consider reaching out to Microsoft CSS or Azure specialists for additional insights and support.