Invalid Client Whenever Joining a Laptop to EntraID

Riley Farmer 5 Reputation points
2025-03-31T19:47:56.57+00:00

Hey Everyone,

I was seeing if anyone ran into this issue as MS support seemed to not know what was happening when I asked them. I work for a MSP and we are joining a laptop the same way we have since we have been using AzureAD, now EntraID, and whenever we go to join this new laptop it just gives us a "Invalid_Client" error. We have re-wiped the laptop, tried to join from set up, tried different accounts, tried to join with other accounts that are known working, used the same accounts on other computers to verify they work, but this laptop just keeps throwing a Invalid_Client error and we can't get it to join at all. Any idea on any resolutions for this?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
24,327 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Goutam Pratti 4,170 Reputation points Microsoft External Staff
    2025-04-07T16:10:59.2333333+00:00

    Hello @Riley Farmer ,If you are getting error which I mentioned in below screen shot:
    How to Solve Invalid_Client Error When Joining Windows 10 to Azure AD

    There can be the two possibilities that you are facing this error:

    1. The user who tries to enroll the device doesn't have a valid Intune license or an Office 365 license. In this situation may cause the above error.
    2. The MDM terms and conditions in Microsoft Entra ID is blank or doesn't contain the correct URL.

    To fix the issue you can follow the one of the methods:

    1. Assign either an Intune or a Microsoft 365 license to the user.
    2. Correct the MDM terms of use URL:
      Sign in to the Azure portal, and then select Microsoft Entra ID.
      Select Mobility (MDM and MAM), and then click Microsoft Intune.
      Select Restore default MDM URLs, verify that the MDM terms of use URL is set to https://portal.manage.microsoft.com/TermsofUse.aspx.
      Choose Save.

    This error can also occur when you try to join or register a device in Entra ID, causing the device to be automatically enrolled in the MDM scope. To resolve this, you can disable the scope by assigning the proper license I mentioned above. Additionally, you can set the user scope to "None" and try again to remove the error.
    User's image

    User's image

    For additional Information follow: https://learn.microsoft.com/en-us/troubleshoot/mem/intune/device-enrollment/troubleshoot-windows-enrollment-errors#looks-like-the-mdm-terms-of-use-endpoint-is-not-correctly-configured

    Hope this Helps. Let us Know if you have any additional queries. Happy to assist you further.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.