Mobile Devices
Mobile Device Management Troubleshooting
Browse issue-specific guidance for Mobile Device Management.
- Android zero touch or Samsung enrollment token assigns wrong configuration profile
- App assignment required for phones remains available only because filter excludes device model
- App configuration token rotates and mobile apps keep stale tenant endpoints
- Compliance policy evaluates slowly and users lose access during phone onboarding window
- Compliance script marks rooted or jailbroken incorrectly after OS patch cycle
- Conditional Access blocks approved phones because device record is stale
- Conditional Access requires compliant device but browser session sees phone as unknown
- Device cleanup rule retires active phones because last check-in timestamps are stale
- Enrollment restriction blocks personally owned phones after platform filter change
- Intune device record duplicates after phone replacement and blocks new compliance state
- Intune enrollment succeeds but device never becomes compliant
- Location-based conditional access misreads mobile IP path and blocks approved users
- Managed app protection policy applies to tablets but not phones in same user group
- Managed browser required policy conflicts with line-of-business mobile app deep links
- MDM admin sees successful policy push but device never checks in after carrier swap
- MDM certificate renewal completes but old SCEP profiles remain on phones
- MDM remote wipe completes in console but device stays active for hours
- MDM Wi-Fi profile installs but hidden SSID settings differ between iPhone and Android
- Mobile threat defense integration flags risk but conditional access never consumes the signal
- New mobile app deployment shows as assigned but never installs on phones
- Phones enrolled through Apple Business Manager land without expected naming convention
- Push certificate or APNs issue stops iPhone profile updates from applying
- Push notification service healthy but iOS app inventory stops updating in portal
- Retire action removes work apps but leaves company data accessible in personal browser
- Shared device mode signs out correctly but next user gets previous app cache