I'm encountering a Conditional Access loop on Android when attempting to sign in to Microsoft Teams or Outlook. My device is enrolled and compliant via the Company Portal, but login attempts redirect me to re-enroll unnecessarily.
- Steps to Reproduce:
- Open Teams or Outlook app
- Receive message: “Set up your device to get access”
- Tap Continue → Redirects to browser login
- After successful login → Redirected to install Company Portal
- Company Portal is already installed, device is already enrolled, and shown as compliant
- Device Info -
- Android 15.0
- Device is shown as Compliant in Microsoft Intune
- Managed by Microsoft Intune
- Primary User = None in the Intune device record
- Licensed with Office 365 E3 + Microsoft Entra ID P2
- What I’ve Verified -
- Device is enrolled and compliant
- Company Portal reflects successful enrollment
- Another E3 user can log in successfully on a same device
- Conditional Access policy likely includes "Require compliant device"
- Apps (Teams/Outlook) and Company Portal are fully updated
- Troubleshooting Already Tried:
- Reinstalled Teams, Outlook, and Company Portal
- Re-enrolled device from scratch
- Cleared cache/data for all Microsoft apps
- Confirmed all compliance settings are satisfied
Entra Admin Center (Affected User)
Join type = (blank)
MDM = Microsoft Intune
Owner = None
User principal name = None
Compliant = Yes
Working User’s Device:
Entra Admin Center shows:
Join type = Microsoft Entra registered
Owner = user's name
User principal name = email
MDM = Office 365 mobile