Azure Active Directory Non Compliant Devices

jpcapone 1,776 Reputation points
2022-08-29T13:49:28.98+00:00

When I go to Azure Active Directory > Devices I see information indicating that there are 37 noncompliant devices. I am unsure of how I should address these items. Any suggestions would be appreciated.
235739-image.png

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

5 answers

Sort by: Most helpful
  1. jpcapone 1,776 Reputation points
    2022-08-29T18:58:37.923+00:00

    235680-image.png

    1 person found this answer helpful.
    0 comments No comments

  2. Dillon Silzer 57,831 Reputation points Volunteer Moderator
    2022-08-29T14:47:47.377+00:00

    Hi @jpcapone

    When you click on See all noncompliant devices you need to go to each device > Under Monitor > Device compliance

    It will tell you which policy it is not compliant with:

    235757-image.png

    Common error codes and descriptions in Microsoft Intune

    https://learn.microsoft.com/en-us/troubleshoot/mem/intune/troubleshoot-company-resource-access-problems

    Monitor results of your Intune Device compliance policies

    https://learn.microsoft.com/en-us/mem/intune/protect/compliance-policy-monitor

    ---------------------------------------------

    If this is helpful please accept answer.

    0 comments No comments

  3. jpcapone 1,776 Reputation points
    2022-08-29T15:03:08.53+00:00

    Thanks for your reply. When I click See all noncompliant devices and select a device, I don't see Monitor on the left hand side. Please advise:
    235812-image.png


  4. David Broggy 6,371 Reputation points MVP Volunteer Moderator
    2022-08-29T18:39:30.01+00:00

    I believe that my colleague is referring to the menu in Intone, not Azure AD.

    endpoint.microsoft.com


  5. Alfredo Revilla - Upwork Top Talent | IAM SWE SWA 27,526 Reputation points Moderator
    2022-09-01T02:23:48.717+00:00

    Hello @jpcapone and thanks for reaching out. As a minimum, authentication done from non-compliant devices should require MFA or Intune registration trough Conditional Access. Also, Common Zero Trust identity and device access policies recommend devices to be marked as compliant for Enterprise grade protection.

    To locate what policies and settings are causing a device to be marked as non-compliant go to Microsoft Endpoint Manager admin center > Reports > Device compliance > Reports.

    Let us know if you need additional assistance. If the answer was helpful, please accept it and complete the quality survey so that others can find a solution.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.