In automatic mac enrollment authentication will not go with Microsoft credentials

N-M 191 Reputation points
2024-08-12T19:26:19.96+00:00

Hello,

I set up everything in ABM and Intune. I want to enroll Mac devices automatically.

In intune:

1-MDM push certificated was set and is active.

2-Enrollment program tokens was set and is active.

3- Mac profile "Enroll with User Affinity" was set to device.

In ABM section:

setting up is like this:

User's image

The mac device does not ask for Microsoft credentials for login. I do not see following page. User's image

instead I see bellow page that I don't want.

2 (2).jpeg

it would be great if someone can help me.

Microsoft Intune MacOs
Microsoft Intune MacOs
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.MacOs: A family of Apple operating systems for the Apple Mac line of computers.
90 questions
Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,380 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,251 questions
0 comments No comments
{count} votes

4 answers

Sort by: Most helpful
  1. N-M 191 Reputation points
    2024-08-12T19:59:17.3933333+00:00

    I even though don't know what kind of credentials does it asks

    0 comments No comments

  2. Xenia-MSFT 2,835 Reputation points Microsoft Vendor
    2024-08-13T02:00:27.94+00:00

    @N-M Thanks for posting in our Q&A.

    For this issue, we appreciate your help to collect some information:

    1.Did you use ADE enrollment method to enroll this device?

    2.How did you configure the setting "Authentication method" in this Mac profile? Based on my research, different authentication methods will lead different results.

    https://learn.microsoft.com/en-us/mem/intune/fundamentals/deployment-guide-enrollment-macos#ade-end-user-tasks

    If there is anything update, feel free to let us know.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


  3. N-M 191 Reputation points
    2024-08-13T18:24:50.7133333+00:00

    Thank you for helping me.

    For your questions:

    1- Yes.

    2-Enroll with user affinity + Setup Assistant with modern authentication

    I double check configurations

    I set these in Apple business manager:

    1- the mac device is in the Apple business manager. 2-MDM server assigned for target mac device. 3-The target user is in apple business manager. I created the user in ABM.

    3-MDM server was added in ABM

    As you see in bellow picture domain and Microsoft Entra ID was set. ( Should I do something specific here?)

    User's image

    When I click on manage in above picture I see bellow window. Do I need to enable Sign in with Microsoft Entra ID?

    I created Apple ID ( username in ABM) and it was working fine before.

    User's image

    I set up these steps in Intune:

    1-Enrollment programs tokens was set and active in Intune. 2-Mac profile in Intune was set to Enroll with user affinity and authentication method is " setup assistant with modern authentication". 3-Apple MDM push certificate is active. 4- I can see device in Enrollment program token->devices to ready to enroll.

    User's image

    User's image

    When I try to enroll the mac it does not accept the username and password that I created in ABM. As I said everything was working correctly before soddenly something that I cannot find went wrong.

    0 comments No comments

  4. N-M 191 Reputation points
    2024-08-13T18:25:43.56+00:00

    Thank you for helping me.

    For your questions:

    1- Yes.

    2-Enroll with user affinity + Setup Assistant with modern authentication

    I double check configurations

    I set these in Apple business manager:

    1- the mac device is in the Apple business manager. 2-MDM server assigned for target mac device. 3-The target user is in apple business manager. I created the user in ABM.

    3-MDM server was added in ABM

    As you see in bellow picture domain and Microsoft Entra ID was set. ( Should I do something specific here?)

    User's image

    When I click on manage in above picture I see bellow window. Do I need to enable Sign in with Microsoft Entra ID?

    I created Apple ID ( username in ABM) and it was working fine before.

    User's image

    I set up these steps in Intune:

    1-Enrollment programs tokens was set and active in Intune. 2-Mac profile in Intune was set to Enroll with user affinity and authentication method is " setup assistant with modern authentication". 3-Apple MDM push certificate is active. 4- I can see device in Enrollment program token->devices to ready to enroll.

    User's image

    User's image

    When I try to enroll the mac it does not accept the username and password that I created in ABM. As I said everything was working correctly before soddenly something that I cannot find went wrong.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.