Forum Discussion

zcatton's avatar
zcatton
Copper Contributor
Jun 03, 2020

Intune Password Expiration -2016281112 (Remediation failed)

We have Intune setup with an Hybrid AD (onpremise DC synced with Azure).

About 50% of our devices show as error for password expiration.

They are all on the same domain with the same GPOS internally that expire passwords every 90 days.

Intune device configuration policy matches that with 90 days.

 

Password expiration (days)

-2016281112 (Remediation failed)

ERROR CODE
0x87d1fde8
 
Our CSP was stumped.
 

4 Replies

  • steve47a's avatar
    steve47a
    Copper Contributor
    I am getting this in the device event viewer. What does 'One or more admins are not allowed to change their password..' mean?

    MDM PolicyManager: Set policy int, Policy: (MinDevicePasswordLength), Area: (DeviceLock), EnrollmentID requesting set: (7935FD4C-1FE0-465B-9B04-1B492A8B0C40), Current User: (Device), Int: (0x9), Enrollment Type: (0x6), Scope: (0x0), Result:(0x80550008) One or more admins are not allowed to change their password..
  • steve47a's avatar
    steve47a
    Copper Contributor
    Perhaps this is the reason? Would be good if someone could confirm?

    https://docs.microsoft.com/en-us/troubleshoot/mem/intune/error-deploying-password-policy
  • steve47a's avatar
    steve47a
    Copper Contributor

    zcatton 

     

    I have the same remediation error on compliancy with password 'complexity', 'expiration' and 'length'. This is across a number of hybrid joined desktops (without GPO), with exactly the same settings as different group of desktops configured by GPO. Sounds like I'm missing some understanding somewhere?

     

Resources