I’ve been looking at this issue and wondering if anyone else has seen it. A lot of Win10 machines I have enrolled in Intune are triggering an error on the System Security -> Password expiration (days) in the Windows 10 Compliance Policy. I see this in the Windows Event Log:
MDM PolicyManager: Set policy precheck precheck call. Policy: (DeviceLock), Area: (DevicePasswordExpiration), int value: (0x3C) Result:(0x80550009) There are other standard users present who are not allowed to change their password..
It’s trigger from the Defaultuser100000 which is set up by Self Service Password Reset (SSPR) and maybe the Windows 10 Upgrade. If I delete that account, the error resolves and the device tests as compliant.
I could write a script and deploy it with Intune to delete that account but I’d rather not, I’m concerned it could have unintended side effects on the machine, especially with SSPR.
Anyone else seen this before and have any ideas on how to approach fixing it?

