Intune AppLocker policy error 0x87d101a2

David McBride 301 Reputation points
2021-10-26T16:01:06.67+00:00

I am trying to setup AppLocker polices for Intune managed devices. I exported the xml file from Windows 10 Ent device and successfully created an Intune Device Configuration Profile. Everything looked good until I when to the AppLocker policy and Device status section. It shows Deployment Status of Error. The error is 0x87d101a2. I looked it up and according to MS the error means "Syncml(418): The requested Put or Add command failed because the target already exists." I what I don't understand is, what target already exists is the error referring to? Any help would be greatly appreciated.
Thanks!!

Microsoft Intune Configuration
Microsoft Intune Configuration
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Configuration: The process of arranging or setting up computer systems, hardware, or software.
1,720 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Pavel yannara Mirochnitchenko 11,716 Reputation points
    2021-10-26T17:56:41.533+00:00

    This just my thoughts, but I believe Applocker has no built-in control mechanizm, it is "legacy" technology which is still managed only with Group Policies. Unfortunatelly I don't see Microsoft making any efford to support Applocker as it is in Intune. Bringing xml to Intune looks like tweaking for me. I love Applocker, had played years with it, but I gave this idea up when moving to Intune. I believe other Defender technologies should cover this.


  2. Lu Dai-MSFT 28,346 Reputation points
    2021-10-27T02:47:30.493+00:00

    @David McBride Thanks for posting in our Q&A.

    AppLocker is a feature in Windows Security and it is not a built-in feature in intune. Honestly, I'm not familiar with it.

    For the Defender technologies to combat crypto type malware, I have done a lof of research. I find an article about Defending against cryptojacking with Microsoft Defender for Endpoint and Intel TDT. Please read it and check if it is what you need:
    https://www.microsoft.com/security/blog/2021/04/26/defending-against-cryptojacking-with-microsoft-defender-for-endpoint-and-intel-tdt/

    Hope it will help


    If the answer is the right solution, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.