Microsoft Defender Application Guard profile with error -2016281112 (Remediation failed)

Hardloper123 296 Reputation points
2021-03-10T15:05:15.827+00:00

Hey,

Via Intune we have created a profile that installs Microsoft Defender Application Guard on the workstations and also makes a number of settings.

Installing MDAG is no problem, but the settings "Clipboard behavior", "Clipboard content" and "Retain user-generated browser data" gives errors for all workstations
-2016281112 (Remediation failed).

76299-image.png

All Devices are connected through "Hybrid Azure AD Join" with Intune.

Usersaccounts we used are Primary users on the relevant Devices.

Useraccounts have the following licenses associated with them:
Enterprise Mobility + Security E5
Microsoft 365 Business Standard
Microsoft Defender for Office 365
Windows 10 Enterprise E5

Do you have an idea what this could be?

Thanks in advance.

Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,240 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,298 questions
0 comments No comments
{count} vote

5 answers

Sort by: Most helpful
  1. Lu Dai-MSFT 28,341 Reputation points
    2021-03-11T02:22:06.59+00:00

    @Hardloper123 Thanks for posting in our Q&A.

    For this issue, it is needed to do log analysis to find more detailed error information. With Q&A limitation, Q&A is not the best channel for such log analysis case. So we suggest to open a case to check on this. It is free. The following link describes how to open a case, we can refer to it:
    https://learn.microsoft.com/en-us/mem/intune/fundamentals/get-support

    Hope it will help.


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

  2. Udata hua Holaind ka 1 Reputation point
    2021-03-11T09:26:14.283+00:00

    @Hardloper123 Maybe this will help:

    While using Microsoft Edge, Microsoft Defender Application Guard protects your environment from sites that aren't trusted by your organization. When users visit sites that aren't listed in your isolated network boundary, the sites open in a Hyper-V virtual browsing session. Trusted sites are defined by a network boundary, which are configured in Device Configuration. For more information, see Create a network boundary on Windows devices.

    source: https://learn.microsoft.com/en-us/mem/intune/protect/endpoint-protection-windows-10

    ----------

    Hope the information above is helpful.

    Should you have any question or concern, please feel free to let us know.

    Best Regards,
    Udata hua Holaind ka

    If the response is helpful, please click "Accept Answer" and upvote it.

    0 comments No comments

  3. Hardloper123 296 Reputation points
    2021-03-16T14:03:51.853+00:00

    Thanks for thinking along.
    I have created a ticket at Microsoft and submitted the information.
    Hopefully they can help me further.
    If they have a solution, you will hear from me


  4. Rahul Jindal [MVP] 9,131 Reputation points MVP
    2021-12-05T11:21:27.46+00:00

    Are you using Device restriction profiles or Endpoint Security?

    0 comments No comments

  5. Pavel yannara Mirochnitchenko 11,616 Reputation points
    2021-12-08T22:00:39.707+00:00

    @Hardloper123 did you manage to solve this, I have exact same issue with intune, app guard is enabled but Intune fails. @Rahul Jindal [MVP] both Device Restrictions and endpoint security are failing.

    0 comments No comments