how to conner to the URL for the URL organization's MDM' term of use?

Gilbert Wong 0 Reputation points
2025-11-13T04:00:34.2266667+00:00

I'm trying to connect to Entra ID, but getting this error
(Moved from Microsoft System Center Other)

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Q&A Assist
    2025-11-13T04:00:45.87+00:00
    AI generated content. This question contains an answer created with AI from Q&A Assist. Learn more

    To connect to the URL for your organization's MDM terms of use, you need to ensure that the MDM terms and conditions in Microsoft Entra ID are correctly configured. If you are encountering an error, it might be due to one of the following reasons:

    1. The user trying to enroll the device does not have a valid Intune or Office 365 license.
    2. The MDM terms and conditions URL is blank or incorrect.

    To resolve this issue, follow these steps:

    1. Assign a valid license to the user: Go to the Microsoft 365 Admin Center and assign either an Intune or a Microsoft 365 license to the user.
    2. Correct the MDM terms of use URL:
      • Sign in to the Azure portal.
      • Select Microsoft Entra ID.
      • Go to Mobility (MDM and MAM) and then click on Microsoft Intune.
      • Select Restore default MDM URLs and verify that the MDM terms of use URL is set to https://portal.manage.microsoft.com/TermsofUse.aspx.
      • Choose Save.

    Once these configurations are in place, you should be able to connect to the MDM terms of use URL without encountering errors.

    0 comments No comments

  2. Monalisha Jena 3,680 Reputation points Microsoft External Staff Moderator
    2025-11-13T05:26:44.1566667+00:00

    Hello Gilbert Wong,

    Welcome to Microsoft Q&A Platform. Thank you for reaching out & hope you are doing well.

    I will try to clarify your doubts and help you out in this issue.

    The error occurs during the device registration/join flow when the MDM User Scope is set to All or Some users in Microsoft Entra ID. This configuration triggers an MDM auto-enrollment attempt.

    1.The Entra ID service attempts to redirect the user to the configured MDM Terms of Use URL.

    2.The error indicates that the URL is unreachable or improperly set in the MDM configuration settings within Entra ID.

    3.This failure prevents the mandatory Terms of Use step, which in turn halts the MDM enrollment, causing the device join process to fail entirely.

    A frequent underlying cause is the user attempting to join does not have an Entra ID Premium P1/P2 license (or an equivalent license like an M365 E3/E5 subscription that includes Intune/MDM) required for the automatic enrollment to proceed.

    I will recommend you to check below and let us know:

    • Are MDM terms of use URLs configured in Microsoft Entra ID Admin Center under Mobility (MDM and MAM)?
    • Does the user/device have an Intune or applicable Microsoft 365 license?
    • What is the MDM user scope setting (None, Some, or All)?
    • Are there Conditional Access policies requiring MDM device compliance?

    The workaround will be to navigate to the Mobility (MDM and MAM) settings in the Microsoft Entra admin center and correct the configuration.

    A.Correct the MDM URLs (If you intend to use MDM/Intune):

    • Sign in to the Microsoft Entra admin center as a Global Administrator.
    • Navigate to Identity > Devices > All devices.
    • In the top menu, click Device settings.
    • Scroll down to the Mobility (MDM and MAM) section.
    • Click on the relevant MDM application (usually Microsoft Intune).
    • Look at the three URLs: MDM Terms of use URL, MDM discovery URL, and MDM compliance URL.
    • Verify the URLs, if using Microsoft Intune, click Restore default MDM URLs and ensure the MDM Terms of use URL is set to the default: https://portal.manage.microsoft.com/TermsofUse.aspx
    • Ensure the users attempting to enroll have a valid Intune/MDM license and that the MDM User Scope is set correctly to target those users.

    B.Disable MDM Auto-Enrollment (If you do not intend to use MDM/Intune):

    If you do not have licenses or do not want devices to automatically enroll in MDM, you must disable the scope.

    • Follow steps above till navigate to Mobility (MDM and MAM) and select the MDM application.
    • Set the MDM user scope to None > Click Save.

    This prevents Entra ID from attempting to redirect to the non-existent or faulty Terms of Use URL during the device join process.

    Please do refer below docs for more understanding:

    https://learn.microsoft.com/en-us/windows/client-management/azure-active-directory-integration-with-mdm

    https://learn.microsoft.com/en-us/entra/identity/devices/device-join-plan

    Hope this helps! If it answered your question, please consider clicking Accept Answer and Upvote. This will help us and others in the community as well.

    If you need more info, feel free to ask in the comments. Happy to help!

    Regards,

    Monalisha

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.