Auto-pilot device turning non-compliant

Ask Intune Question 21 Reputation points
2022-04-21T05:59:01.647+00:00

I am enrolling a device using Auto-pilot user driven mode.
In order to make it a shared device I am removing the primary user of the device.
Hence a different number of users are able to login to the system.

But after some days of keeping the machine in switched off mode, the device become non-compliant in Intune.
The reason of non-compliance is Is Active parameter is non-compliant
After becoming non-compliant in Intune, if I try to login to the device it asks for MFA and re-authentication.
I want to avoid the MFA for the users and want to know the reason on why MFA is required once device in non-compliant.

Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,243 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,315 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Rahul Jindal [MVP] 9,131 Reputation points MVP
    2022-04-21T06:43:35.217+00:00

    Could be related to PRT getting expired. Here is some information in relation to it.concept-primary-refresh-token

    As for MFA, do you have a CA policy enforced which uses device state as a condition? I normally look at azure sign-ins for clues.

    0 comments No comments