AutoPilot Issue on device Setup "IME"

Lazher YAAKOUBI 381 Reputation points
2023-09-19T17:33:22.5166667+00:00

Hello,

Recently I had a problem with AutoPilot, the device can download the profile and when configuring the device (Apps), the deployment failed. I found that the IME was installed correctly, but on intunemanagementextension.log, many connection errors to the service location.

I used Fiddler to capture traffic during AutoPilot deployment and found that the device was trying to use the https://r.manage.microsoft.com/EnrollmentServer/CertificateFallback.aspx 

<head><title>Document Moved</title></head>
<body><h1>Object Moved</h1>This document may be found <a HREF="https://r.manage.microsoft.com/EnrollmentServer/CertificateFallback.aspx">here</a></body>

in my environment, I have : Enable auto-discovery of Intune enrollment server | Microsoft Learn configured with enrollment.manage.microsoft.com

https://github.com/MicrosoftDocs/IntuneDocs/issues/2581

Windows Autopilot
Windows Autopilot
A collection of Microsoft technologies used to set up and pre-configure new devices and to reset, repurpose, and recover devices.
468 questions
Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,360 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,055 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Lu Dai-MSFT 28,401 Reputation points
    2023-09-20T02:50:56.1933333+00:00

    @Lazher YAAKOUBI Thanks for posting in our Q&A.

    For this issue, did you not enroll windows devices using MDM automatic enrollment? Here is the article about setting up automatic enrollment:

    https://learn.microsoft.com/en-us/mem/intune/enrollment/windows-enroll

    If we enroll Windows 10/11 devices using MDM automatic enrollment, we don’t have to worry about configuring CNAME records for the MDM server.

    I think setting up automatic enrollment is more convenient. If possible, please try it.


    If the answer is the right solution, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.