Event details
Within a co-management environment, there are some machines that are starting to drop from Intune even though co-management is enabled. Within SCCM we have co-management enabled on ALL devices. But I am noticing some of these machines that are dropping from intune are still updating or getting Intune policies when I sign in and verify if the Info button is in the Access work or school account. When I select Sync it asks for me to sign in (I use an admin account as I troubleshoot). My question is that, does a licensed intune account have to sign into the machine every so often to prevent it from dropping from Intune?
- Joe_LurieNov 20, 2025
Microsoft
estefonm23 You should not need to login occasionally to keep the device enrolled in Intune, when it's enrolled via Co-management. Devices that are enrolled as part of co-management have that enrollment tied to the device and its Entra ID join state, not the user. You can do a dsregsmd /status to check the join state and verify MDM URL, or check the CoManagementHandler.log for any errors. But if devices are falling out of Co-management and you cannot determine why, you may need to open a ticket for further troubleshooting.
- estefonm23Nov 20, 2025Occasional Reader
I thought the same thing, however, I when I looked at the logs it would mention that the Azure AD creds are not recognized until I signed into the machine then everything was fine. Any ideas, for that?
- Danny_GuilloryNov 20, 2025
Microsoft
estefonm23 I would put a support case in, I think there's some configurations incorrectly set somewhere.