May 10 2019 01:51 AM - edited May 10 2019 02:11 AM
Hi all,
I'm trying to set minimum password length with Intune.
Before, this didn't work at all, because, quoting from Microsoft:
If DevicePasswordEnabled is set to 0 (device password is enabled), then the following policies are set: MinDevicePasswordLength is set to 4 MinDevicePasswordComplexCharacters is set to 1
Basically if I used any Intune password policy, it would be set to 4.
However now, suddenly i see this working.
In MDM diagnostics, I have;
DeviceLock | DevicePasswordEnabled | 0 |
DeviceLock | MinDevicePasswordLength | 14 |
However, some devices get " -2016281112 (Remediation failed)" ERROR CODE 0x87d1fde8.
I have two Azure AD joined Intune devices.
One succeeds and the other fails. Both 1809 .437:
1) One succeeds and gets MinDevicePasswordLength=14 while DevicePassWordEnabled =0 (enabled), which shouldn't be possible according to the docs, but it is what I want.
2) The other gets error and sets MinDevicePasswordLength=4 while DevicePasswordEnabled =0 (enabled), as expected by the docs.
What's going on?
Thanks
May 21 2019 12:41 AM
@WalterPrem I also confirm problem on 1903 for some windows 10 devices..., fresh installed
May 21 2019 12:43 AM
I just applied this policy to 54 computers and it fails on 6. There's no real pattern.
For some reason, one of the PCs that failed multiple times before, now works. However we did change the local group policy minimum password manually, but that shouldn't really affect anything.
May 24 2019 06:28 AM
@WalterPrem did you contact microsoft support , if so, what did they say?