Forum Discussion
ZennaVB
Jan 26, 2023Copper Contributor
Can't enroll devices anymore with my administrator account
Hello Everyone, For some time me and my colleagues enrolled new devices with our own administrator account into Azure Active directory/Intune. Since about 2 weeks this doesn't work anymore. The d...
- Feb 08, 2023JUst to clarify some stuff:
-New devices enrolled --> as in enrolled from the OOBE or when a local admin user was already logged in and added a work or school account and selecting join aad
-own administrator account --> as in a global admin account in aad or what I mentioned in the first question. If using another account to enroll the device..... why? why not using the regular user his account to do so as you need to switch the primary user afterwards to make sure you arent getting any compliance issues
-Just like harm mentioned, there must be something wrong with the mdm scope (try setting it to all for only that enrollment... you can change if afterwards if that wasn't the issue) and make sure you run the troubleshooting tool in intune and select that admin user to determine if there arent any license issues going on (even when he has a license assigned)
-Could you share a dsregcmd /status after you joined the device to aad with the administrator account
-
Feb 08, 2023
JUst to clarify some stuff:
-New devices enrolled --> as in enrolled from the OOBE or when a local admin user was already logged in and added a work or school account and selecting join aad
-own administrator account --> as in a global admin account in aad or what I mentioned in the first question. If using another account to enroll the device..... why? why not using the regular user his account to do so as you need to switch the primary user afterwards to make sure you arent getting any compliance issues
-Just like harm mentioned, there must be something wrong with the mdm scope (try setting it to all for only that enrollment... you can change if afterwards if that wasn't the issue) and make sure you run the troubleshooting tool in intune and select that admin user to determine if there arent any license issues going on (even when he has a license assigned)
-Could you share a dsregcmd /status after you joined the device to aad with the administrator account
-
-New devices enrolled --> as in enrolled from the OOBE or when a local admin user was already logged in and added a work or school account and selecting join aad
-own administrator account --> as in a global admin account in aad or what I mentioned in the first question. If using another account to enroll the device..... why? why not using the regular user his account to do so as you need to switch the primary user afterwards to make sure you arent getting any compliance issues
-Just like harm mentioned, there must be something wrong with the mdm scope (try setting it to all for only that enrollment... you can change if afterwards if that wasn't the issue) and make sure you run the troubleshooting tool in intune and select that admin user to determine if there arent any license issues going on (even when he has a license assigned)
-Could you share a dsregcmd /status after you joined the device to aad with the administrator account
-
- ZennaVBFeb 23, 2023Copper ContributorHello Rudy,
Sorry for my late reply, you are right. It does not make a lot of sense to enroll the device with an admin account if the primary user needs to be changed afterwards. It's more like it's annoying for me, and trying to find out why it was working before and now it doesn't. So from now on we will enroll the device from the account that will actually use the device.
Thanks for helping and thinking with me, but from now on we will just enroll from the user that owns the device.