Androids: Password compliance check returning incompliance, although complex password set, requirements met-> returning the wrong result?

Miriam Krueger (DE) 0 Reputation points
2023-02-27T12:23:58.16+00:00

Hi, we have set an Android compliance policy with following settings as being part:

User's image

The strange thing is that in monitoring a lot of devices still appear as incompliant with minimum pw length and type, although most of those affected users really indeed meet the password requirements set and have a 6 digit alphanumeric pw set.

Even a resync of the device policies from console or user site does not help and still is showing incompliance.

I tried to find a pattern on Android manufacturer types or Android versions. Most of the affected users /devices are Samsung Galaxy devices with Samsung Knox or some kind of Xiaomi or Vivo devices. All with Android versions 11 or lower.

But not all on Samsung Knox. Therefore this article I found https://docs.samsungknox.com/admin/knox-platform-for-enterprise/kbas/kba-360039092694.htm also did not really help.

Can you give me more information why the password sufficiency policy (compliance policy) might not work correctly or display incompliance, although there is none? What can we do to get rid of those incompliances in monitoring?

For some tested it helped to retire and reenroll the device, but we want to prevent to guide each affected user to reenrollment process. Any other idea?

Microsoft Security Intune Microsoft Intune Android
Microsoft Security Intune Configuration
Microsoft Security Intune Compliance
Microsoft Security Intune Other
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Simon Ren-MSFT 40,341 Reputation points Microsoft External Staff
    2023-02-28T08:44:07.6866667+00:00

    Hi,

    Thank you for posting in Microsoft Q&A forum.

    Are the affected devices Android 9 and earlier version? "Require a password to unlock mobile devices" and "Required password type" settings are supported on Android 9.0 and earlier, and any version of Samsung Knox. Refer to:

    Device Compliance settings for Android device administrator in Intune

    Thanks for your time. Have a nice day!

    Best regards,

    Simon


    If the response is helpful, please click "Accept Answer" and upvote it.

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.