Enrolling Devices Already Joined to Azure AD

Mahmoud Madani 40 Reputation points
2024-02-19T07:27:28.57+00:00

I synchronized all users and devices with AD Connect and used the Hybrid service to add on-prem devices to Azure as hybrid. Then, I configured the GPO to auto-enroll these devices, but they are still not showing up under Intune devices after waiting for two days. I received the error "Auto MDM Enroll: Device Credential (0x0), Failed (Mobile Device Management (MDM) is not configured.)" despite enabling MDM for all and using a user with an Intune license. Could MFA be on cause of this issue?

Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,274 questions
{count} votes

Accepted answer
  1. Rahul Jindal [MVP] 9,276 Reputation points MVP
    2024-02-19T07:37:09.87+00:00

    Yes, MFA could be blocking the enrollment. Entra sign-in should confirm that. Try excluding a user and if the works then you can exclude the Intune enrollment app in the CA policy in question.

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful