Sync not working for non-primary user on hybrid AD Joined device
Hi. I was trying out multiple users on a single device and I have encountered a problem where it seems that the device cannot verify the account I am signning in after signing out of the primary user's account.
It is a Hybrid-Azure AD Joined environment and the device have been synced to AAD. I used the user account ******@domain.com to sign in as a hybrid user WHFB\user01 and I can see the device being enrolled onto Intune and getting the profiles(I have it set up for Windows Hello for Business). But after signning out of the user01 account and using the other hybrid account ******@domain.com, it immediately prompts me that there is a "Work or school account problem" and asked me to sign in to fix my credentials. I signed into ******@domain.com in Settings but it took a looooong time to sign in. It showed error "caa50021" and the "sign in" windows dissappeared after a while. However, the "Work or school account problam" notification keeps popping up but there is no "Sign in" screen popping up when I click on it again. I couldn't sync the device using ******@domain.com since it "weren't able to verify your credentials". I also cannot sign into User01's account using the Windows Hello for Business PIN profile I've set earlier as it shows "Your credentials couldn't be verified" and shows status 0x00000bb.
I have set a user group in AAD and assigned the group for MDM enrollment and the Windows Hello for Business Profile on Intune. Both User01 and 02 have E3 license. What am I doing wrong here? Thanks!