Intune ABE macOS enrollment failing

Jerry Loper 6 Reputation points
2022-12-14T18:50:27.883+00:00

I am testing Intune Apple Business Enrollment (ABE) for our MacBooks. We currently us Jamf and looking to save some money. I have everything setup in Intune and Apple Business Manager. iOS devices work well. I've assigned my test MacBook to the Enrollment profile I created and when the MacBook starts going through Out of the Box experience I get a Bad Request - Request Too Long HTTP Error 400. The size of the request headers is too long. Doesn't seem to be an issue with the Intune profile as it happens when it is trying to contact portal.manage.microsoft.com. I can see the different hands offs in the bottom of the window and when it hits that is when it fails with above message. Below are my settings for the enrollment profile. Any assistance would be great.

270721-image.png270677-image.png

Microsoft Intune MacOs
Microsoft Intune MacOs
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.MacOs: A family of Apple operating systems for the Apple Mac line of computers.
66 questions
Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,244 questions
{count} vote

3 answers

Sort by: Most helpful
  1. Onepath Admin 0 Reputation points
    2023-03-29T00:17:16.6633333+00:00

    Hello,

    I am having this exact same issue, did anyone figure out what the issue is?

    Thank you,

    0 comments No comments

  2. Jerry Loper 6 Reputation points
    2023-03-29T12:01:50.4633333+00:00

    Sorry bad forum etiquette on my part I did figure it out. Under Devices | Enroll devices => Enroll devices=> Enrollment device platform restrictions my Default restrictions I had macOS blocked for everything because before the time I was playing with Intune we didn't want someone inadvertently enrolling a Macbook in Intune. Set it to Allow and it started working properly. I have since abandoned Intune for the MacBooks because Jamf is just so much better at everything.

    0 comments No comments

  3. Jerry Loper 6 Reputation points
    2023-03-29T12:17:00.9033333+00:00

    Yeah bad forum etiquette, I didn't come and explain what I found. I had MacBooks blocked for enrollment, because at the time we didn't want anyone enrolling a MacBook into Intune. Device | Enroll devices => Enroll device | Enrollment device platform restrictions => All Users. Set macOS to Allow. I still left Personally owned as Block and I was then able to do DEP enrollment with Intune. I have since abandoned Intune for the MacBooks because Jamf is just so much better in every way.

    0 comments No comments