Intune – ATP problem

Ed Newman 186 Reputation points
2020-07-14T09:18:52.85+00:00

Hi all, we have a problem somewhere between Intune built device and ATP.

The problem we are experiencing is that we have setup the link between Intune and ATP and created a compliance policy for a machine risk of Medium.
All the devices are showing as none compliant on this policy due to risk level even though they are appearing in ATP as low risk.
In the company portal the device status is stating that Defender ATP isn’t installed but the services are there and running and the device is reporting into ATP ok.

Another possible issue is that the Microsoft Defender ATP page in Intune shows the connection enabled, but the last synchronized date is when we turned the connection on, I would have assumed that would regularly update?
12105-pic2.png

A bit of background.
Laptops are a mixture of Azure joined and hybrid joined (both have the same issue). All are win ver 2004 or 1909 (both have the same problem).
We have run the ATP check script on the devices and the test alert appears in ATP, ATP also shows up to date check in times for the devices. So the problem doesn’t appear to be between the device and ATP.
Enterprise version of windows
M365 e5 licenses.
We have run through the MS ATP error checking pages and that all appears fine.
So in my eyes there appears to be an issues between the connecting Intune and ATP.

Any ideas?

Microsoft Intune Configuration
Microsoft Intune Configuration
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Configuration: The process of arranging or setting up computer systems, hardware, or software.
1,707 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,298 questions
{count} votes

Accepted answer
  1. Ed Newman 186 Reputation points
    2020-07-24T21:59:12.307+00:00

    Well the problem magically sorted itself out after about 3 weeks (I guess someone from MS decided to turn it on).
    The script from above does actually (now) run every 6 hours.

    0 comments No comments

1 additional answer

Sort by: Most helpful
  1. Mirko Colemberg [MVP] 1 Reputation point MVP
    2020-07-24T06:26:33.137+00:00

    As I know, this sync is only to import the onboarding script from ATP to Intune, in my eyes this should be enough that this sync is done once, because this script is not really changing every day.
    Have you also created a Policy and assigned it to a Group of clients/user and also assigned the ATP License to the same or separate Group. I had a similar Problem, that the clients are not onboarded in ATP, when I run the script separate on the clients, it was working, in the end I forgot to assign the License part...

    0 comments No comments