question

StephenRankich-1062 avatar image
0 Votes"
StephenRankich-1062 asked bgervin edited

401 or 403 on deviceManagement/deviceCompliancePolicies endpoint

Get requests to https://graph.microsoft.com/v1.0/deviceManagement/deviceCompliancePolicies and GET /v1.0/deviceManagement/deviceEnrollmentConfigurations.

  • These intune specific endpoints began having issues around 2/12-2/13 across many customers that run as application with all the appropriate permission scopes turned on and consented.

  • These have worked for over a year+ and suddenly started giving forbidden/ permission errors.

  • Have seen a few different posts with similar issues and there is definitely some kind of change or outage on the microsoft side.


mem-intune-graphmicrosoft-graph-device-updates
· 1
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

@StephenRankich-1062 Thanks for posting in our Q&A.

For this issue, please make sure that you have choose the correct permissions.
https://docs.microsoft.com/en-us/graph/api/intune-deviceconfig-devicecompliancepolicy-get?view=graph-rest-1.0#prerequisites
https://docs.microsoft.com/en-us/graph/api/intune-onboarding-deviceenrollmentconfiguration-get?view=graph-rest-1.0#prerequisites

If they have the correct permissions, but the error still occurs, it is suggested to create a Premier support ticket for this develop scope issue to get more accurate help. Here is the support link:
https://docs.microsoft.com/en-us/mem/get-support#premier-and-unified-support-customers

Thanks for your understanding.

0 Votes 0 ·

0 Answers