2016345612(Syncml(500) - Intune Compliance Policy Error

Craig Pennington 310 Reputation points
2023-09-05T13:23:04.57+00:00

We have had this recurring issue for a long time now, and despite searching the error all over the place, there seem to be a lot of other IT professionals in the same boat, but no obvious answers.

The error is on the Anti-Virus setting on the default compliance policy.

2016345612(Syncml(500): The recipient encountered an unexpected condition which prevented it from fulfilling the request)User's image

The compliance policy in question is assigned to all users.

This is a very annoying issue as it stops users from being able to access any MSFT apps as it marks the device as non compliant.

we are forced to add users to the exclusion list of the policy until the error clears on it's own days/weeks later.

If anyone has any ideas on what could be the cause or any possible fixes, it would be greatly appreciated

Microsoft Security | Intune | Compliance
Microsoft Security | Intune | Other
{count} votes

22 answers

Sort by: Most helpful
  1. Efstratios Stratis 56 Reputation points
    2023-10-16T17:46:39.1+00:00

    Apparently intune thinks (defender firewall) real time or cloud protection setting is not enabled while in reality it is.

    As I mentioned before, retire the machine from intune, delete from azure, than try to reset windows on the machine, let it re enrol to both azure and intune and chances are the issue will be gone. No more compliance errors.

    Resetting machine apparently does not resolve the issue, that's just a workaround on win11 machines. MS need to fix that.

    Let me know if the above procedure helped.

    Thanks

    1 person found this answer helpful.

  2. Anthony Yeshan Isuru De Silva 5 Reputation points
    2024-04-05T04:24:06.85+00:00

    Hi Guys, i have had this issue for several users. fix is to turn off the windows firewall and turn it back again. then go to company portal click once on check access and wait 2-3mins until it completes. do not click again and again as it will then take more time. if its taking way too long turn off the conditional access policy that check for compliance. then once company portal check is ok you can turn on the conditional access.

    To verify further you can check azure ad portal devices and select the device you are checking on. check if its compliant. Then you can go to intune portal check if it shows compliant. it may be compliant on azure ad and not in intune. give it some time and then it will show compliant on intune as well.

    1 person found this answer helpful.
    0 comments No comments

  3. David Gorman 5 Reputation points
    2024-07-12T08:09:52.4833333+00:00

    Oh, this is still a problem. How frustrating.

    Maybe there should be a Grant Access check on Conditional Access policies to at least check if it's a company device, which would be comparable to hybrid join criteria.

    1 person found this answer helpful.
    0 comments No comments

  4. Laurens Driessen 15 Reputation points
    2024-09-16T11:45:33.5366667+00:00

    Ok so we also have this error for some devices for some customers.
    This customer uses a password and PIN to sign-in. Lot's of them only use their PIN.
    The password was recently changed (a few days), is correct and every application works with it.

    I could fix the not compliant issue by locking the device and sign-in with the password instead of the PIN. Then rebooted the device and let the user sign-in with the password aswel instead of the PIN.

    Started multiple syncs from the Settings > accounts > work/school > Emailadress > Info > Sync.

    Suddenly, after 10m and many many many refresh of intune device page later the device came compliant =)

    1 person found this answer helpful.
    0 comments No comments

  5. YuriL 5 Reputation points
    2024-09-20T08:29:54.86+00:00

    Change default windows compliance assignment group to device instead of user

    1 person found this answer helpful.

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.