Registering devices with Intune for management and policy enforcement
Use the following checks and actions to troubleshoot:
- Confirm the device is actually enrolled in Intune, not just registered in Entra ID:
- In the Microsoft Intune admin center, go to Devices > All devices and verify whether the device appears and what Managed by shows.
- Devices managed only by Microsoft Defender for Endpoint security settings management will show Managed by = MDE, not full Intune MDM enrollment.
- Check that the device can check in to Intune:
- On the device, force a sync/check-in:
- Windows: Settings > Accounts > Access work or school > select the work account/MDM enrollment > Info > Sync.
- iOS/iPadOS: Open Company Portal > Devices > select the device > Check Settings.
- Android: Open Company Portal > Devices > select the device > Check Device Settings.
- Then, in the Intune admin center Troubleshoot pane, verify:
- Intune compliant = Yes
- Microsoft Entra compliant = Yes
- Last check-in is recent (by default devices check in every 8 hours). If Last check-in is older than 24 hours, there may be a connectivity or enrollment issue.
- On the device, force a sync/check-in:
- Verify enrollment actually completed via Company Portal:
- Open the Company Portal app on the device and confirm it shows the device as enrolled and compliant, not just registered.
- If the Company Portal shows errors or the device as Not registered, remove the device from Intune (Retire/Unenroll from Company Portal where available), then re-enroll following the platform-specific steps.
- If using Microsoft Defender for Endpoint security settings management only:
- In the Intune admin center All devices view, devices onboarded via Defender will appear with Managed by = MDE.
- In the Defender portal, confirm MDE Enrollment status = Success. If not, ensure the device is in scope for security settings management and has been updated.
If, after a forced sync and confirming full MDM enrollment via Company Portal, the device still does not appear under Devices > All devices in Intune, re-enroll the device and verify again after the next check-in cycle.
References:
- Troubleshooting policies and profiles in Microsoft Intune
- Learn how to use Intune endpoint security policies to manage Microsoft Defender for Endpoint on devices that are not enrolled with Intune
- What is device enrollment?
- How to Configure the Intune Company Portal Apps, Company Portal Website, and Intune App
- Troubleshooting integration of Jamf Pro with Microsoft Intune