Cant sign in Work email

Nikoloz Tskhovrebadze 0 Reputation points
2024-07-18T12:16:23.38+00:00

i got this problem. so i have azure and i am administrator, i registered new user name Nika and gave him username and credentials to sign in, i gave him a completely new pc and told him to sign in with his work credentials, when he tries to add his work account problem occurs - Error code: CAA301F4, because he is just a user, he cant sign in i think, what we have to do is, i should sign in as an administrator using work account and after i sign in, manually add Nika by myself on the work account, what i am trying to do is that when i give user credentials, he/she should sign in with no problem and with no errors, i changed in AAD -> devices -> Device Settings - "Users may join devices to Microsoft Entra" and set it to "ALL" but problem still occurs how can i solve it?

Windows
Windows
A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.
5,486 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
22,068 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Akhilesh Vallamkonda 10,150 Reputation points Microsoft Vendor
    2024-07-22T09:40:40.3166667+00:00

    Hi @Nikoloz Tskhovrebadze

    Thank you for reaching us!

    When a user attempts to join or register a Windows device under the MDM Enrollment policy, the registration token will include information about automatic enrollment in Intune.

    At this stage, the process may fail due to navigation issues (indicated by error CAA301F4) or because the user does not have an Intune license.

    If a user lacks an Intune license, they should not be included in the MDM Enrollment policy scope.

    To resolve this, you have two options:

    1. Assign an Intune license to the user.
    2. Adjust the MDM Enrollment scope from "All Users" to a specific group of users who have Intune licenses assigned.

    User's image

    Hope this helps. Do let us know if you any further queries.

    Thanks,

    Akhilesh.


    If this answers your query, do click Accept Answer and Yes for was this answer helpful. And, if you have any further query do let us know.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.