Mobile Device Management

Minimal guidance for messy support realities.

MDM certificate renewal completes but old SCEP profiles remain on phones

Issue Summary

This article covers a Mobile Device Management issue within Mobile Devices where MDM certificate renewal completes but old SCEP profiles remain on phones. Use the path below to confirm scope, isolate whether the break is device-side, app-side, identity-driven, compliance-driven, or network-related, and move from basic checks to controlled administrative remediation.

Android zero touch or Samsung enrollment token assigns wrong configuration profile

Issue Summary

This article covers a Mobile Device Management issue within Mobile Devices where Android zero touch or Samsung enrollment token assigns wrong configuration profile. Use the path below to confirm scope, isolate whether the break is device-side, app-side, identity-driven, compliance-driven, or network-related, and move from basic checks to controlled administrative remediation.

Push notification service healthy but iOS app inventory stops updating in portal

Issue Summary

This article covers a Mobile Device Management issue within Mobile Devices where Push notification service healthy but iOS app inventory stops updating in portal. Use the path below to confirm scope, isolate whether the break is device-side, app-side, identity-driven, compliance-driven, or network-related, and move from basic checks to controlled administrative remediation.

Enrollment restriction blocks personally owned phones after platform filter change

Issue Summary

This article covers a Mobile Device Management issue within Mobile Devices where Enrollment restriction blocks personally owned phones after platform filter change. Use the path below to confirm scope, isolate whether the break is device-side, app-side, identity-driven, compliance-driven, or network-related, and move from basic checks to controlled administrative remediation.

App assignment required for phones remains available only because filter excludes device model

Issue Summary

This article covers a Mobile Device Management issue within Mobile Devices where App assignment required for phones remains available only because filter excludes device model. Use the path below to confirm scope, isolate whether the break is device-side, app-side, identity-driven, compliance-driven, or network-related, and move from basic checks to controlled administrative remediation.

Conditional Access requires compliant device but browser session sees phone as unknown

Issue Summary

This article covers a Mobile Device Management issue within Mobile Devices where Conditional Access requires compliant device but browser session sees phone as unknown. Use the path below to confirm scope, isolate whether the break is device-side, app-side, identity-driven, compliance-driven, or network-related, and move from basic checks to controlled administrative remediation.

MDM Wi-Fi profile installs but hidden SSID settings differ between iPhone and Android

Issue Summary

This article covers a Mobile Device Management issue within Mobile Devices where MDM Wi-Fi profile installs but hidden SSID settings differ between iPhone and Android. Use the path below to confirm scope, isolate whether the break is device-side, app-side, identity-driven, compliance-driven, or network-related, and move from basic checks to controlled administrative remediation.

Device cleanup rule retires active phones because last check-in timestamps are stale

Issue Summary

This article covers a Mobile Device Management issue within Mobile Devices where Device cleanup rule retires active phones because last check-in timestamps are stale. Use the path below to confirm scope, isolate whether the break is device-side, app-side, identity-driven, compliance-driven, or network-related, and move from basic checks to controlled administrative remediation.

Managed app protection policy applies to tablets but not phones in same user group

Issue Summary

This article covers a Mobile Device Management issue within Mobile Devices where Managed app protection policy applies to tablets but not phones in same user group. Use the path below to confirm scope, isolate whether the break is device-side, app-side, identity-driven, compliance-driven, or network-related, and move from basic checks to controlled administrative remediation.

Intune device record duplicates after phone replacement and blocks new compliance state

Issue Summary

This article covers a Mobile Device Management issue within Mobile Devices where Intune device record duplicates after phone replacement and blocks new compliance state. Use the path below to confirm scope, isolate whether the break is device-side, app-side, identity-driven, compliance-driven, or network-related, and move from basic checks to controlled administrative remediation.