Minimum password length " -2016281112 (Remediation failed)"

Brass Contributor

Hi all,

 

I'm trying to set minimum password length with Intune.

Before, this didn't work at all, because, quoting from Microsoft:

 

If DevicePasswordEnabled is set to 0 (device password is enabled), then the following policies are set:

    MinDevicePasswordLength is set to 4
    MinDevicePasswordComplexCharacters is set to 1

Basically if I used any Intune password policy, it would be set to 4.

However now, suddenly i see this working.

In MDM diagnostics, I have;

 

DeviceLockDevicePasswordEnabled 0
DeviceLockMinDevicePasswordLength 14

 

However, some devices get " -2016281112 (Remediation failed)" ERROR CODE 0x87d1fde8.

 

I have two Azure AD joined Intune devices.

One succeeds and the other fails. Both 1809 .437:

 

1) One succeeds and gets MinDevicePasswordLength=14 while DevicePassWordEnabled =0 (enabled), which shouldn't be possible according to the docs, but it is what I want.

 

2) The other gets error and sets MinDevicePasswordLength=4 while DevicePasswordEnabled =0 (enabled), as expected by the docs.

 

What's going on?

 

Thanks

3 Replies

@WalterPrem I also confirm problem on 1903 for some windows 10 devices..., fresh installed

@Hrvoje Kusulja 

 

I just applied this policy to 54 computers and it fails on 6. There's no real pattern.
For some reason, one of the PCs that failed multiple times before, now works. However we did change the local group policy minimum password manually, but that shouldn't really affect anything.

@WalterPrem did you contact microsoft support , if so, what did they say?