This blog examines Error code 65000 when deploying Settings Catalog policies in Intune, specifically for ADMX-backed policies. Normally, Intune delivers the required ADMX template via ADMXInstall CSP, allowing policies to be configured. However, multiple organizations...
This blog explores why Windows Autopilot devices refused to enroll into MDM/Intune despite successfully joining Entra ID. The funny thing? Autopilot for pre-provisioned deployment worked (White Glove), but user-driven enrollment didn’t. By analyzing dsregcmd, Fiddler,...
This blog will explore a common issue with Win32 app updates on Intune-managed kiosk devices. While these devices are designed for restricted access and often run without an Entra user session, this setup creates a challenge in which Win32 apps initially install fine...
This blog explores what happened when a device enrolled with Autopilot pre-provisioning got stuck at “Please Wait while we set up your device” for 10 minutes, ending with error 801c03ed / Invalid Token the moment it should have re-joined Entra Id /Azure...
Welcome to the complete guide to understanding your organization’s security posture and how it relates to security practice. This guide covers the hows and whys of security posture, such as how to perform a security posture assessment, ensure preventative measures are...
It’s well known that Microsoft Entra ID supports a maximum of 200 BitLocker recovery keys per device. Once this limit is reached, new recovery keys cannot be escrowed to Entra. Silent encryption will fail if the BitLocker policy enforces key escrow before...