enroll only in device management setting not founded

PRK 16 Reputation points
2020-12-03T21:20:36.853+00:00

Hello,
I'm trying to manually enroll a windows 10 device into Intune. When I go to Accounts->Access work or school and look for "enroll only in device management" It seems to be missing.
This is a new Laptop that is not managed by any other MDM software or SCCM. I also reset Windows to see if that would fix it but was i was unsuccessful.

Any help will be greatly appreciated.

Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,390 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,364 questions
0 comments No comments
{count} votes

6 answers

Sort by: Most helpful
  1. Tareq Baji 20 Reputation points
    2023-07-17T06:59:37.4166667+00:00

    Hi

    go to Computer\HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Enrollments\ and expand all folders and search for EnrollmentState as image below if it value 1 change it to 4 restart the PC and go to account in setting you will find enroll only in device management Intune error 2

    4 people found this answer helpful.

  2. John Neu 5 Reputation points
    2024-12-19T23:40:40.0766667+00:00

    For new Intune admins, like myself who struggled a lot with Intune, know that some PCs will register fine, but I found that about half of ours required the registry modification that Tareq Baji above gave.
    So, here's my step-by-step...

    • The user must have Microsoft 365 Business Premium, so that on admin.microsoft.com, under their Apps, “Microsoft Intune” is selected.
    • On user laptop: Launch Microsoft STORE > search and install “COMPANY PORTAL” by Microsoft
    • Tap WINDOWS > run COMPANY PORTAL and login as user of PC > [x]ALLOW MY ORGANIZATION TO MANAGE MY DEVICE > [DONE]
    • click [THIS DEVICE HASN’T BEEN SET UP FOR CORPORATE USE YET] > it shows ! by “connect this device to work” [NEXT] > [CONNECT] > [NEXT] on the setup work or school page > ..”it’ll take a few minutes to connect to your school or workplace…” [GOT IT] ..It took ~5 minutes for mine to sign in all the way.

    If it says “THIS DEVICE HASN'T BEEN SET UP FOR CORPORATE USE YET. SELECT THIS MESSAGE TO BEGIN SETUP" then chances are that it won’t work when you click to sign in. In my case, when I clicked it, I got error “YOUR DEVICE IS ALREADY BEING MANAGED BY AN ORGANIZATION” and indeed I see the device is already existing in Azure/Entra (ENTRA.MICROSOFT.COM > left pane DEVICES / ALL DEVICES).

    In this case, you will need to do the following Registry modifications as per Tareq Baji above:

    • REGEDIT >> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Enrollments\ and Control F to search for all “EnrollmentState” entries under this “Enrollments” branch and set it from 1 to 4 (there will be 3 or 4 “EnrollmentState” you won’t be allowed to change)
    • Go to admin site ENTRA.MICROSOFT.COM >DEVICES > ALL DEVICES > and delete the PC you're working on, if it's there.
    • RESTART the PC and sign in again.
    • Tap windows, type in CMD, right-click CMD and choose RUN AS ADMINISTRATOR > ..type in.. DSREGCMD /DEBUG /LEAVE > ..wait a few seconds.. > DSREGCMD /FORCERECOVERY > ..sign in.. it’ll spin for a minute > ..this adds the PC back to Azure/Entra -- If you want to check, go to admin site Entra.Microsoft.com > left pane Devices / All Devices ..and it should be there, but it takes ~2 minutes before it shows “MDM=Microsoft Intune” and “Security settings management=Microsoft Intune”
    • Click the taskbar’s Windows icon, then click the top search bar and if it says to verify your login, click your name & it should auto-login.
    • Now run COMPANY PORTAL and it should sign itself in as your username, and under left-pane HOME, under YOUR DEVICES, your PC name should be there.
    • For rounding out things, you should launch Edge and click the top left Avatar and it should show “sync is on.” Also launch an MS Office product like MS Word (winword.exe) to ensure that it auto-logs in with your username.

    Note that there is a default limit of 5 enrollments per user ID. In my case, I prepare PCs without a hired user yet, so I have a few test IDs with Windows Licensing, but I had to increase from 5 to 15: go to admin site INTUNE.MICROSOFT.COM > left pane ALL SERVICES > middle row DEVICE ONBOARDING / ENROLLMENT > right row DEVICE LIMIT RESTRICTION > “ALL USERS AND ALL DEVICES” > Device Limit: ..click the # show, probably 5 > Device Limit EDIT > DEVICE LIMIT: 15 [REVIEW + SAVE] > [SAVE]

    1 person found this answer helpful.
    0 comments No comments

  3. Rahul Jindal [MVP] 10,441 Reputation points MVP
    2020-12-03T23:09:52.917+00:00

    I know there was an issue with 1607 build, but haven’t seen this in a long time. What version are you on?


  4. Lu Dai-MSFT 28,436 Reputation points
    2020-12-04T04:23:47.583+00:00

    @PRK Thanks for posting in our Q&A. From your description, I know that enroll only in device management setting is missing in the windows 10 device. If there is any misunderstanding, feel free to let us know.

    In my research, enroll only in device management setting is available in OS Build 14393.82 (Windows 10 1607 with KB3176934) and later. We can see more details in the following link. So we suggest to check the version of our Windows 10 device. If it is lower than the required version, we suggest to upgrade to later version.
    https://learn.microsoft.com/en-us/windows/client-management/mdm/mdm-enrollment-of-windows-devices#connect-to-mdm-on-a-desktop-enrolling-in-device-management

    Hope it can help.


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


  5. PRK 16 Reputation points
    2020-12-04T13:39:23.98+00:00

    The device is running Version 20H2


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.