Posted on 04-25-2024 06:15 AM
We use Jamf Pro and have an integration with Conditional Access to register Macbooks within Microsoft Intune.
We have recently started receiving this error message and have not been able to resolve it. Who can help me think about how we can tackle this issue?
Posted on 04-25-2024 06:18 AM
04-25-2024 07:03 AM - edited 04-25-2024 07:10 AM
Its a problem with the Comp Portal App, I would suggest starting with following Microsoft troubleshooting doc linked below. This specific error is something to do with the broker function of the Comp Portal. However, for the love of God skip the first two steps of removing the MDM profile and Jamf framework, I'm not sure what clown put that in there.
Troubleshooting Jamf Pro integration with Microsoft Intune - Intune | Microsoft Learn
Posted on 04-26-2024 04:26 AM
I know it is unrelated to this thread, but speaking of clowns giving bad advice at MS. We had a ticket open a week or two back related to the Data Collection notices issues for AutoUpdate. It was related to the deprecated key in the config profile. Anyway, the MS "Mac Specialist" that was assigned the ticket gave the info below to resolve the issue. 1000% not related and why the hell is MS telling users to disable SIP?!?!?! I asked our TAM about it but it will go unanswered as usual. SMH.
"Disable System Integrity Protection (SIP):
Boot your Mac into Recovery Mode (hold down Command+R during startup).
Open Terminal from the Utilities menu.
Type the command csrutil disable to disable SIP, which may allow you to address the issue2.
Remember to exercise caution when modifying system settings, especially if you’re dealing with administrative permissions. If you encounter any roadblocks, professional assistance from Apple Support is recommended."
Posted on 04-26-2024 05:18 AM
"clowns giving bad advice"....LOL LOVE it!
Posted on 04-29-2024 10:41 PM
Have you tried removing this computer object in Intune and then re-registering using company portal app on the mac??
Posted on 04-30-2024 12:34 AM
yes already done.
Posted on 04-30-2024 06:11 AM
Object does not yet exist in Intune and Azure AD
Posted on 04-30-2024 06:45 AM
In Azure AD we got the following message:
Failure reason
Broker app needs to be installed for device authentication to succeed.
Posted on 05-14-2024 05:39 AM
I have the same issue
Failure "Broker app needs to be installed for device authentication to succeed."
Error code: 501271
It works for me in Poland after this command typed in terminal "defaults write com.jamf.management.jamfAAD useWKWebView -bool true"
However for other locations company portal is just crashing with error and i have the same error code on intune side.
Conditional access policy is set to report only so it cannot block anything.
In case you have a solution for this please share it here.