User not recieveing MDM url for Intune automatic enrollment

Rookie{} 61 Reputation points
2022-09-12T14:30:09.527+00:00

Hey everyone,

We have been going through the process of enrolling our existing Windows domain joined machines to Intune MDM, we had about 180 users and most of them have been enrolled fine. These are all Hybrid AAD Joined machines.
A quick summary of procedure we followed:

  • Made sure we had the machine object in Azure AD as Hybrid Joined and registered (this is how we check if the machine is Azure AD joined)
  • Check on the machine for dsregcmd /status and see if the MDM url is populated
  • Apply the Automatic enrollment GPO on the machine

We have had most success when we have followed the above method.
But we have one machine which is failing at the second point where it is not getting the MDM url. I have checked and made sure that the user who is logged into the machine has an Intune license. I understand this usually takes time, but for this user it has been more than two weeks. The machine is joined to Azure AD successfully, it has an hybrid Azure AD record with a registered date and an activity date. This is the first user among 150+ users we have enrolled who is having this issue.

I have noticed with previous enrolments that without MDM url, the machine won't automatically enroll into intune even if the intune automatic enrollment GPO is applied on the machine.

What we have done for troubleshooting:

  • Remove/unjoin the machine from Azure AAD using dsregcmd /leave
  • Made sure the Hybrid Azure AD object was deleted
  • Rejoined the machine back to Azure AD

This process didn't help, it has been 5 days since we did this troubleshooting steps.

Any help would be appreciated.

Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,415 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,533 questions
0 comments No comments
{count} votes

13 answers

Sort by: Most helpful
  1. Jason Sandys 31,391 Reputation points Microsoft Employee
    2022-09-13T18:50:57.887+00:00

    Off-hand, I have no idea what that means, but it sounds like the device does not have connectivity to the domain at the time it is attempting to complete the HAAD join (which happens when a user logs into the device).

    0 comments No comments

  2. Rookie{} 61 Reputation points
    2022-09-19T15:22:36.887+00:00

    Just an update, the issue was for some reason the password was not synced between AD and O365/Azure for this user. Hence the user was not getting the mdm url.

    Got to know this when user somehow mentioned that they had to type their older credentials for Outlook on machine. So had the user reset their password made sure this time the sync was fine and after about 15 min, the machine has the MDM url and machine enrolls into Intune successfully. Though before this process we had the process of unjoin the machine completely from HAAD and AD, then rejoin it.


  3. NRCCF Admin 0 Reputation points
    2025-01-06T20:48:02.0333333+00:00

    Also having this issue and the "fix" which works 100% of the time is to deploy the MDMURL and other URLs missing from the dsregcmd /status command via GPO.

    After joining a device to the domain and rebooting, then running gpupdate, the MDM enrollment scheduled task appears in task scheduler and successfully runs every time.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.