Forum Discussion
Enrolments referencing old Intune Connector Server for something
Hi Dionysis
Thank you for the response and advice.
1. Check AD Service Connection Points (SCP) for any lingering references to the old server = I checked this now and cant see any references to the old server
2. Verify DNS records / CNAMEs that may still point to the old machine = the new server has a brand new IP and its own DNS record, I have to keep the old server DNS entry as we see now we still need it for some reason and don't want to fiddle with it as the client is currently doing enrolments.
3. Review event logs on both servers during enrolment to confirm which connector is being called = the new server is being called
4. Reinstall or repair the Intune Connector on the new server to force refresh of all references = cant do this now as the client is enrolling devices
5. After confirming cleanup, decommission the old server again and test with a new device enrolment = cant do this now as the client is enrolling devices
I’ve been going through your troubleshooting steps and the other reviews to understand the issue, and it looks like you’ve already checked quite a bit.
Just wanted to check—have you also looked into whether the old certificate is still issued or revoked in your Certificate Authority, and are there any proxies or firewalls doing SSL inspection that might still be using the old certificate?
Good luck!
- CRDPAug 28, 2025Copper Contributor
Hi Bogdan
Thank you for the advice, I have checked the Issued certificates now and I do not see any certificate referencing the old or the new Intune Connector Server, not sure if the fact that there is no certificate is a problem.
One thing I did notice yesterday is the old Intune server is in the SERVERS OU in AD where the new Intune server is not in the SERVERS OU, only the COMPUTERS OU in AD. I have informed the client about this and we plan to move the new Intune server to the SERVERS OU like the old one to see if it perhaps helps, not sure if it will. But we can only do it once they have completed their current batch of student enrolments which will probably still take another week, no changes allowed now.
- Bogdan_GuineaSep 02, 2025Steel Contributor
Hy CRDP
No I think certificate referencing the old or new Intune Connector server may not be inherently problematic if the connector is functioning correctly and is active in Intune, and as you already mentioned it is active.
However, the placement of the new Intune Connector server in the COMPUTERS OU instead of the SERVERS OU could affect permissions and the proper functioning of the connector.
Good luck!