hi Rita,
check if dave's device is properly registered in azure ad. sometimes devices just... forget they're part of the team ) u can verify this in the azure portal under 'devices' azure ad device registration.
next, peek at the conditional access policies. maybe dave got caught in a rule that others skipped. look for anything related to onedrive or sso. details conditional access policies.
also, clear his cached credentials. old tokens love to cling on like bad habits )) run this in command prompt as admin: cmdkey /delete:LegacyGeneric:target=OneDrive
then restart. might just do the trick )
general tips this might help in other tools too always check the user's browser settings. sso can get blocked by extensions or strict privacy modes. worth looking into ))
if u haven't yet, grab the correlation id next time it happens. makes troubleshooting way easier. how to find it troubleshoot sso.
good luck Rita! hope dave's onedrive starts playing nice soon,
Best regards,
Alex
and "yes" if you would follow me at Q&A - personaly thx.
P.S. If my answer help to you, please Accept my answer