Forum Discussion
Mel_2246
Oct 19, 2021Copper Contributor
Intune Company portal on androids continue to give me an error
I have removed the user and reset him up in the company portal. I continue to get a message "your company needs you to adjust these settings to comply with organizational policies. Set a longer devic...
AndyK-uk
Oct 28, 2021Copper Contributor
MC294075 has been updated - this makes it sound like it is less likely to be resolved as pointed at Android not with the company portal app.
As described in MD293553 or MG293714, due to a change in Android 11 (move to API 30), you must enable the Require an alphanumeric password access requirement setting whenever the Minimum password length access requirement setting is enabled. In Basic Mobility and Security, these settings are configured in the Access Requirements section of your Device Security Policies. Without Require an alphanumeric password, Android 11 devices will remain noncompliant regardless of how long the password is made if the Minimum password length access requirement setting is enabled. In Basic Mobility and Security, settings like password policy are not specific to a platform; when the policy is set, access requirements are applied to all mobile device types. When you enable the Require an alphanumeric password for Android 11, it will also affect iOS and Windows devices of the assigned users.
How this will affect your organization:
Our telemetry indicates you are currently using Device Security Policies from Basic Mobility and Security. If these policies are mis-configured, your users may be impacted.
User impact: Users' Android 11 devices will be marked as non-compliant and prevented from accessing corporate resources. If you manage multiple platforms with Basic Mobility and Security, once you move to set an alphanumeric password, it will apply the same policy on other managed platforms.
What you need to do to prepare:
Login to https://protection.office.com/devicev2 with your admin credentials.
Review your device security policies to identify any that require the minimum password length access requirement and is assigned to users who may use Android 11 devices.
For each identified policy, enable the require an alphanumeric password access requirement. NOTE: once you move to set an alphanumeric password, it will apply the same policy on other managed platforms.
As described in MD293553 or MG293714, due to a change in Android 11 (move to API 30), you must enable the Require an alphanumeric password access requirement setting whenever the Minimum password length access requirement setting is enabled. In Basic Mobility and Security, these settings are configured in the Access Requirements section of your Device Security Policies. Without Require an alphanumeric password, Android 11 devices will remain noncompliant regardless of how long the password is made if the Minimum password length access requirement setting is enabled. In Basic Mobility and Security, settings like password policy are not specific to a platform; when the policy is set, access requirements are applied to all mobile device types. When you enable the Require an alphanumeric password for Android 11, it will also affect iOS and Windows devices of the assigned users.
How this will affect your organization:
Our telemetry indicates you are currently using Device Security Policies from Basic Mobility and Security. If these policies are mis-configured, your users may be impacted.
User impact: Users' Android 11 devices will be marked as non-compliant and prevented from accessing corporate resources. If you manage multiple platforms with Basic Mobility and Security, once you move to set an alphanumeric password, it will apply the same policy on other managed platforms.
What you need to do to prepare:
Login to https://protection.office.com/devicev2 with your admin credentials.
Review your device security policies to identify any that require the minimum password length access requirement and is assigned to users who may use Android 11 devices.
For each identified policy, enable the require an alphanumeric password access requirement. NOTE: once you move to set an alphanumeric password, it will apply the same policy on other managed platforms.
AndyK-uk
Oct 28, 2021Copper Contributor
Just to advise, I have also got a ticket open with MS, and the engineer is saying the issue is due to Google Password Policy, which does not make sense if a downgrade does work.
He is following up internally but also suggested creating the policy in the intune portal rather than the MDM portal.
I have resolved the issue via the MDM portal, I did have to untick minimum password length and tick require alphanumeric password, if minimum length was ticked, it would remain uncompliant no matter what other options were set.
He is following up internally but also suggested creating the policy in the intune portal rather than the MDM portal.
I have resolved the issue via the MDM portal, I did have to untick minimum password length and tick require alphanumeric password, if minimum length was ticked, it would remain uncompliant no matter what other options were set.
- Andys100Oct 28, 2021Copper ContributorSorry for my ignorance. What is the MDM portal?
- AndyK-ukOct 28, 2021Copper ContributorDetails all here. Let me know if it does not help and I'll dig out the actual link
https://docs.microsoft.com/en-us/microsoft-365/admin/basic-mobility-security/create-device-security-policies?view=o365-worldwide