Apr 02 2024 07:28 AM - edited Apr 02 2024 07:29 AM
Hello folks,
I've encountered a issue while attempting to remove local administrators through Intune's Endpoint Security, under the Account Protection section.
My plan was to enforce this policy across different tenants, but I've run into a problem.
I applied this setting to three different tenants.
I received error messages in the report for the profile on two of them, while it was successfully applied on the third. The error details are as follows:
I checked if the Windows feature version might be related, but the issue persists even on the most recent versions. I also explored any differences between Windows Pro and Business editions.
Thank you in advance for your time and assistance.
Apr 03 2024 06:45 AM
Are you using the following configuration: 'Local user group membership' or are you using something else? So this configuration: https://techcommunity.microsoft.com/t5/intune-customer-success/new-settings-available-to-configure-l...
If this is the case, can you share more detail of the rules you are creating?
Apr 08 2024 05:18 AM
Hello! @SebastiaanSmits, sorry for my late answer, I hope i'm not to late.
This is how my setup looks like, I mark all the users I want it to apply on, then I assign it on a group were the users are included in.
It has worked on some organisations.
Thank you for any help!