Event details
Within a co-management environment, there are some machines that are starting to drop from Intune even though co-management is enabled. Within SCCM we have co-management enabled on ALL devices. But I am noticing some of these machines that are dropping from intune are still updating or getting Intune policies when I sign in and verify if the Info button is in the Access work or school account. When I select Sync it asks for me to sign in (I use an admin account as I troubleshoot). My question is that, does a licensed intune account have to sign into the machine every so often to prevent it from dropping from Intune?
estefonm23 You should not need to login occasionally to keep the device enrolled in Intune, when it's enrolled via Co-management. Devices that are enrolled as part of co-management have that enrollment tied to the device and its Entra ID join state, not the user. You can do a dsregsmd /status to check the join state and verify MDM URL, or check the CoManagementHandler.log for any errors. But if devices are falling out of Co-management and you cannot determine why, you may need to open a ticket for further troubleshooting.
- estefonm23Nov 20, 2025Occasional Reader
I thought the same thing, however, I when I looked at the logs it would mention that the Azure AD creds are not recognized until I signed into the machine then everything was fine. Any ideas, for that?
- Danny_GuilloryNov 20, 2025
Microsoft
estefonm23 I would put a support case in, I think there's some configurations incorrectly set somewhere.