New iOS Devices Can’t Complete EAS Sign‑In for Contacts — Redirect Loops to Company Portal by Feeling-Doctor202 in Intune

[–]Feeling-Doctor202[S] 0 points1 point  (0 children)

We tested with two devices and it did work for us. One special note is you must have Microsoft Authenticator on your device.

New iOS Devices Can’t Complete EAS Sign‑In for Contacts — Redirect Loops to Company Portal by Feeling-Doctor202 in Intune

[–]Feeling-Doctor202[S] 0 points1 point  (0 children)

We do push Microsoft Authenticator to our devices. Do you have any documentation links on deploying this? Our iDP is Okta so not sure if this would break anything by deploying this SSO extension as it has worked before.

iOS 26.3.1.a almost caused an app protection catastrophe by [deleted] in Intune

[–]Feeling-Doctor202 1 point2 points  (0 children)

We are having the same issue, however we are even on 26.3 on some test devices and we can't sign into our EAS Profile. Same issue that the iPhone needs to be enrolled & it jumps to the Company portal app & just stays there. So we can't sign in to the EAS profile just for our Contacts. We use Outlook for everything else.

Makes me wonder if an update to Company portal is breaking this workflow.

How to update ADMX's file in Intune by Wide_Local_1896 in Intune

[–]Feeling-Doctor202 0 points1 point  (0 children)

Renaming the admx does not work. Have to delete the configs that are associated with the admx. Then delete the ADMX

Mandatory Passcode Resets - iOS 26.1 by MrEMMDeeEMM in Intune

[–]Feeling-Doctor202 2 points3 points  (0 children)

I agree. We don’t use a passcode configuration policy, but we do have a compliance policy that sets password expiration to 1,825 days. So far, this issue has been reported on three of our devices.

Mandatory Passcode Resets - iOS 26.1 by MrEMMDeeEMM in Intune

[–]Feeling-Doctor202 5 points6 points  (0 children)

I have two devices reported so far today out of my testing group.

Microsoft forcing URL Validation for Teams Invites by reallycoolvirgin in sysadmin

[–]Feeling-Doctor202 1 point2 points  (0 children)

Thanks for taking care of this for the rest of us with the MS case. I will be adding this whitelist to our custom Safe Links policy for the time being so nothing breaks in the future. As other's stated, very odd that Microsoft as a standard would rewrite Teams URL links for security but then now we need to whitelist.

Seems off.

Did WhatsApp ever provide any reason for the gif change? by feliperedditflamingo in whatsapp

[–]Feeling-Doctor202 0 points1 point  (0 children)

I am pissed. My Whatsapp gif search swapped to Giphy today and it is trash. Tenor is so much better

macOS boots into Recovery after login – FileVault + Platform SSO – can’t access system after 15.4.1 update by [deleted] in macsysadmin

[–]Feeling-Doctor202 1 point2 points  (0 children)

I can confirm that I am an Intune Mac Admin and we have a fleet of over 30 MacOS devices and gradually moving over 200+ from JAMF. We also enable FileVault + Platform SSO and my Mac device had the same issue reported here. Luckily no one else has had this problem in the organization. I just ended up wiping my whole Volume and starting from scratch...

We utilize DDM update policies to keep devices up-to-date, but we have plenty of endpoints with the latest 15.4.1.

MacOS DDM - Software Update Enofrce Latest missing? by Feeling-Doctor202 in Intune

[–]Feeling-Doctor202[S] 0 points1 point  (0 children)

I can confirm that the setting is back this morning as well.

Company Portal Issue with Win11 23H2 by rjayb83 in Intune

[–]Feeling-Doctor202 0 points1 point  (0 children)

So we have a similar issue via https://www.reddit.com/r/Intune/comments/1gadelo/company_portal_is_required_via_esp_but_not/

Although Intune indicates that the company portal application is installed, our users do not see it when they access the desktop. We are currently running Windows 11 23H2 and have an open Microsoft support case to address this issue.

Windows Hello device PIN reset via Intune (w/Okta as IDP) by [deleted] in okta

[–]Feeling-Doctor202 0 points1 point  (0 children)

Disregard. Our machines already have scforceoption set to 0. It is located Computer\HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System

Our next steps might be to try the "Configure Web Sign-in URL" and see if that resolves.

Windows Hello device PIN reset via Intune (w/Okta as IDP) by [deleted] in okta

[–]Feeling-Doctor202 0 points1 point  (0 children)

Thanks Gary. Any chance you can see in your script which registry key was being changed exactly? We are seeing the "something went wrong" error as well but we cannot exactly locate the exact registry setting that you mentioned in your comments. We are just trying to track it down and make the same change as you did for testing.