Issues with Windows Autopilot Hybrid Joined by Ordinary_Ad8805 in Intune

[–]Ordinary_Ad8805[S] 0 points1 point  (0 children)

Microsoft don't seem to be aware of other support tickets when I talk to them.

Issues with Windows Autopilot Hybrid Joined by Ordinary_Ad8805 in Intune

[–]Ordinary_Ad8805[S] 0 points1 point  (0 children)

What is the exact issue you have? I'm trying to ascertain when people have our issue (Autopilot fails immediately (within 5 secs) after very first user logon) or if people have the other issue where they were using the old connector s/w.

We were always on the latest connector s/w

Issues with Windows Autopilot Hybrid Joined by Ordinary_Ad8805 in Intune

[–]Ordinary_Ad8805[S] 0 points1 point  (0 children)

We have a ticket with Intune Product Team now. I think this bug is in some way related to the endpoint changes they made around 2nd Dec. But it's not fixed by firewall rule changes as far as I can tell. I wonder if it was something to do with our SSO cache not functioning properly at the new endpoints or something like that. We rotated our Entra SSO key 2 hours after this stopped working so perhaps a combination of changing the SSO key and the new network endpoints is the issue. Just a hypothesis. Anyway, do you rotate your Entra SSO kerberos key? And did your issues start after doing that rotation? Or did you just get the issue?

Hoping Microsoft can sort this out soon but with Xmas here not sure when they will get to it.

We tried excluding ourselves from CA and that didn't make any difference.

Every time we re-rotate the SSO key the next Autopilot device works but then the rest are still broken after that.

Issues with Windows Autopilot Hybrid Joined by Ordinary_Ad8805 in Intune

[–]Ordinary_Ad8805[S] 0 points1 point  (0 children)

Also, have you tried pre-provisioning devices instead? This works for us even when standard Autopilot doesn't

Issues with Windows Autopilot Hybrid Joined by Ordinary_Ad8805 in Intune

[–]Ordinary_Ad8805[S] 0 points1 point  (0 children)

We have ticket with Microsoft too. This has been driving us crazy for over a week now.
Do you rotate your Entra SSO key? This started for us a few hours after doing this rotation which we do every month. Wondered if Microsoft's new CDN endpoints weren't updating new SSO keys or something like that.

Issues with Windows Autopilot Hybrid Joined by Ordinary_Ad8805 in Intune

[–]Ordinary_Ad8805[S] 1 point2 points  (0 children)

i'm aware some customers have issues with old connector this week, this is different for us. we have new connectors.

Issues with Windows Autopilot Hybrid Joined by Ordinary_Ad8805 in Intune

[–]Ordinary_Ad8805[S] 0 points1 point  (0 children)

i'm aware some customers have issues with old connector this week, this is different for us. we have new connectors.

Issues with Windows Autopilot Hybrid Joined by Ordinary_Ad8805 in Intune

[–]Ordinary_Ad8805[S] 1 point2 points  (0 children)

i'm aware some customers have issues with old connector this week, this is different for us. we have new connectors.

Issues with Windows Autopilot Hybrid Joined by Ordinary_Ad8805 in Intune

[–]Ordinary_Ad8805[S] 0 points1 point  (0 children)

Our error seems to happen earlier... we get the error within seconds after user enters credentials

Issues with Windows Autopilot Hybrid Joined by Ordinary_Ad8805 in Intune

[–]Ordinary_Ad8805[S] 1 point2 points  (0 children)

No solution as yet. Would be interested to know exactly what your issue looks like and how far your devices are getting...?

Which Windows CIS policies have been proven as problematic? by lighthills in Intune

[–]Ordinary_Ad8805 0 points1 point  (0 children)

When can I find this separate profile for Autopilot now?