Tech Community Live: Endpoint Manager edition
Jul 21 2022, 08:00 AM - 12:00 PM (PDT)

Login Failure on MDM device

%3CLINGO-SUB%20id%3D%22lingo-sub-3369619%22%20slang%3D%22en-US%22%3ELogin%20Failure%20on%20MDM%20device%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-3369619%22%20slang%3D%22en-US%22%3E%3CP%3EWe%20have%2095%25%20of%20our%20devices%20joined%20to%20Intune%2FEndpoint%20Manager%20in%20a%20hybrid%20method.%26nbsp%3B%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EHowever%20when%20a%20new%20user%20wants%20to%20log%20into%20the%20device%20we%20get%20the%20following%20error%2C%20but%20the%20original%20person%20log's%20in%20fine.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22LTurner692_0-1652436136635.png%22%20style%3D%22width%3A%20400px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F371390iD39F3450DD9CD908%2Fimage-size%2Fmedium%3Fv%3Dv2%26amp%3Bpx%3D400%22%20role%3D%22button%22%20title%3D%22LTurner692_0-1652436136635.png%22%20alt%3D%22LTurner692_0-1652436136635.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%3CP%3Eany%20idea's%20why%20or%20what%20i%20can%20do%20to%20resolve%20this%3F%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-3369619%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EIntune%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EMobile%20Device%20Management%20(MDM)%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-3369707%22%20slang%3D%22en-US%22%3ERe%3A%20Login%20Failure%20on%20MDM%20device%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-3369707%22%20slang%3D%22en-US%22%3EHi%2C%3CBR%20%2F%3E%3CBR%20%2F%3EYour%20ESP%20profile%20may%20have%20the%20following%20set%20to%20No.%3CBR%20%2F%3E%3CBR%20%2F%3EOnly%20show%20page%20to%20devices%20provisioned%20by%20out-of-box%20experience%20(OOBE)%3A%20Your%20options%3A%3CBR%20%2F%3E%3CBR%20%2F%3ENo%3A%20The%20enrollment%20status%20page%20is%20shown%20on%20all%20Intune-managed%20and%20co-managed%20devices%20that%20go%20through%20the%20out-of-box%20experience%20(OOBE)%2C%20and%20to%20the%20first%20user%20that%20signs%20in%20to%20each%20device.%20So%20subsequent%20users%20who%20sign%20in%20don't%20see%20the%20ESP.%3CBR%20%2F%3EYes%3A%20The%20enrollment%20status%20page%20is%20only%20shown%20on%20devices%20that%20go%20through%20the%20out-of-box%20experience%20(OOBE)%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-3369854%22%20slang%3D%22en-US%22%3ERe%3A%20Login%20Failure%20on%20MDM%20device%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-3369854%22%20slang%3D%22en-US%22%3EAlso%20adding%20the%20fact%2C%20that%20configuring%20the%20skipuserstatuspage%20could%20also%20be%20a%20wise%20thing%20to%20do%20%3A)%3C%2Fimg%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-3369881%22%20slang%3D%22en-US%22%3ERe%3A%20Login%20Failure%20on%20MDM%20device%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-3369881%22%20slang%3D%22en-US%22%3EIt%20would%20appear%20i%20can't%20create%20custom%20Config%20Profiles%20to%20turn%20that%20off%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-3369943%22%20slang%3D%22en-US%22%3ERe%3A%20Login%20Failure%20on%20MDM%20device%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-3369943%22%20slang%3D%22en-US%22%3EHi%2C%3CBR%20%2F%3EHow%20do%20you%20mean%3F%20is%20it%20giving%20you%20an%20error%20%3F%20%3CA%20href%3D%22https%3A%2F%2Fcall4cloud.nl%2F2021%2F06%2Fthose-magnificent-drivers-in-their-flying-microsoft-store-or-how-i-flew-from-the-enrolment-status-page-to-paris-in-25-hours-11-minutes%2F%23fixing-it%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3Ehttps%3A%2F%2Fcall4cloud.nl%2F2021%2F06%2Fthose-magnificent-drivers-in-their-flying-microsoft-store-or-how-i-flew-from-the-enrolment-status-page-to-paris-in-25-hours-11-minutes%2F%23fixing-it%3C%2FA%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-3370018%22%20slang%3D%22en-US%22%3ERe%3A%20Login%20Failure%20on%20MDM%20device%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-3370018%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F620702%22%20target%3D%22_blank%22%3E%40Rudy_Ooms_MVP%3C%2FA%3E%26nbsp%3BNope%2C%20I%20dont%20have%20it%20as%20an%20option%20at%20all%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22LTurner692_0-1652443094855.png%22%20style%3D%22width%3A%20400px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F371407i8AA8112571CA233E%2Fimage-size%2Fmedium%3Fv%3Dv2%26amp%3Bpx%3D400%22%20role%3D%22button%22%20title%3D%22LTurner692_0-1652443094855.png%22%20alt%3D%22LTurner692_0-1652443094855.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-3370045%22%20slang%3D%22en-US%22%3ERe%3A%20Login%20Failure%20on%20MDM%20device%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-3370045%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F1389333%22%20target%3D%22_blank%22%3E%40LTurner692%3C%2FA%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22Rudy_Ooms_MVP_0-1652443284293.png%22%20style%3D%22width%3A%20400px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F371408i372BE87AD9E59D32%2Fimage-size%2Fmedium%3Fv%3Dv2%26amp%3Bpx%3D400%22%20role%3D%22button%22%20title%3D%22Rudy_Ooms_MVP_0-1652443284293.png%22%20alt%3D%22Rudy_Ooms_MVP_0-1652443284293.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-3370047%22%20slang%3D%22en-US%22%3ERe%3A%20Login%20Failure%20on%20MDM%20device%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-3370047%22%20slang%3D%22en-US%22%3EOhh%20thats%20where%20its%20gone!%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-3370077%22%20slang%3D%22en-US%22%3ERe%3A%20Login%20Failure%20on%20MDM%20device%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-3370077%22%20slang%3D%22en-US%22%3E%3CP%3Eindeed%20it%20is...%20configuring%20that%20csp%20would%20make%20sure%20the%20skipuserstatuspage%20is%20not%20shown..%20but%20beware%20also%20on%20new%20devices...%20If%20you%20don't%20use%20that%20account%20esp%20phase%20it%20s%20all%20good%20otherwise%20you%20will%20need%20to%20change%20that%20Only%20show%20page%20to%20devices%20provisioned%20by%20out-of-box%20experience%20(OOBE)%3A%20setting%20in%20the%20esp%20settings%3C%2FP%3E%3C%2FLINGO-BODY%3E
New Contributor

We have 95% of our devices joined to Intune/Endpoint Manager in a hybrid method. 

 

However when a new user wants to log into the device we get the following error, but the original person log's in fine.

 

LTurner692_0-1652436136635.png

any idea's why or what i can do to resolve this?

8 Replies
Hi,

Your ESP profile may have the following set to No.

Only show page to devices provisioned by out-of-box experience (OOBE): Your options:

No: The enrollment status page is shown on all Intune-managed and co-managed devices that go through the out-of-box experience (OOBE), and to the first user that signs in to each device. So subsequent users who sign in don't see the ESP.
Yes: The enrollment status page is only shown on devices that go through the out-of-box experience (OOBE)
Also adding the fact, that configuring the skipuserstatuspage could also be a wise thing to do :)
It would appear i can't create custom Config Profiles to turn that off

@Rudy_Ooms_MVP Nope, I dont have it as an option at all

 

LTurner692_0-1652443094855.png

 

@LTurner692 

 

Rudy_Ooms_MVP_0-1652443284293.png

 

Ohh thats where its gone!

indeed it is... configuring that csp would make sure the skipuserstatuspage is not shown.. but beware also on new devices... If you don't use that account esp phase it s all good otherwise you will need to change that Only show page to devices provisioned by out-of-box experience (OOBE): setting in the esp settings