Cannot Add a Pin and Cannot Disconnect from Intune

Anonymous
2023-06-15T23:34:07.14+00:00

Hi Last week around 8.06.23, this stared to happen to PC being built:

  1. On the same PC which has been joined/enrolled to Intune
  2. Log in as a local user .\xyz
  3. Go to Work and School and ADD the Pin - pin is succesfully added; the Windows Security window pops up ( I can see pinenrellmentbroker.exe in Task Manager Processes)
  4. log out
  5. Log in as Azure AD user (the intune joined user)
  6. go to Work and School and try to ADD the pin - the Windows Security window DOES Not pop up (and I can NOT see pinenrellmentbroker.exe in Task Manager Processes)
  7. not able to set the pin
  8. I check Azure and the device has been joined and is complient
  9. Sactually joined via Azure AD and the device is joined and complient.
  10. Policies are synchronised

My theory is that due to some issue suffered by Azure and or Intune around the 8.06.23 has has caused thus issues and confirmation is that we no longer can Disconnect PCs from Intune:

  1. we now cannot disconnect these devices from Intune
  2. The Disconnect windows just keeps trying to dicconnect
  3. Have to use tack manager to stop process
  4. (posibility linked to not beinf able to add the PIN ad the Windows Security authentiction window, cannot identify the machine name used to enroll and complete the password check

Can any one help?

Microsoft Security | Microsoft Entra | Microsoft Entra ID
Microsoft Security | Intune | Other
{count} votes

2 answers

Sort by: Most helpful
  1. Anonymous
    2023-06-16T06:53:45.8066667+00:00

    Hi Lu, apprecite the direction, many thanks jari

    0 comments No comments

  2. Anonymous
    2023-06-16T03:24:13.8666667+00:00

    Please keep in mind that this only started happening last week, around the 8-9 June 2023. Till then we deployed thousands of devices and I have succesfully completed below test with no issues many times. In Azure the groups are the same unchanged

    Ok ADD PIN Issue:

    1. first login as local user (Admin) and enroll/join the PC to Azure AD user e.g "******@AD365.xx.com"
    2. as the local user (Admin) Go to Work and School and ADD the Pin - pin is succesfully added; the Windows Security window pops up ( I can see pinenrellmentbroker.exe in Task Manager Processes)
    3. log out
    4. Log in as Azure AD user e.g. "******@AD365.xx.com" (the Azure AD joined user)
    5. go to Work and School and try to ADD the pin - the Windows Security window DOES Not pop up (and I can NOT see pinenrellmentbroker.exe in Task Manager Processes)
    6. not able to set the pin
    7. Policies are synchronised
    8. I log in to MS Azure and check device settings:

    Azure Decice name = PC Machine name

    Join Type = Azure AD Joined

    MDM = Microsoft Intune

    Compliant = Yes

    Disconnect Test:

    I discovered this issues when I thought I could try to disconnect and then reconnect the same and add the Pin.

    1. select the connected
    2. press disconnecr
    3. Windows to confirm disconeection
    4. Window to enter local admin user details to ensure one can reconnect to the device
    5. These are entered
    6. Screen stays on and circcle of .... just sits there 10-20-30min
    7. Use task manager to break out
    8. Result cannot disconnect

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.