Your device does not meet organization requirements to enroll error

Vishnu Anand 205 Reputation points
2025-02-12T09:58:47.7233333+00:00

We have set up an App Protection Policy for personal Android users. At first, they did not want to install the Company Portal app when we started using the policy.

After a few months, some Android users reported that they could not access Teams or Outlook on their devices. The issue was fixed after they installed the Company Portal app.

Some users who logged into the Company Portal are seeing this error: "Your device does not meet organization requirements to enroll and may not be able to gain access to some of the organization's resources. Contact your organization's support to learn more."

As far as I know, the Company Portal app is not required for App Protection Policies to work. M365 apps should still function even if this error appears in Company Portal, as we are not enrolling personal devices.

Any help or information on this would be appreciated.

Microsoft Intune Android
Microsoft Intune Android
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Android: An open-source mobile platform based on the Linux kernel, developed by Google, and maintained by the Open Handset Alliance.
342 questions
Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,420 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,553 questions
{count} votes

Accepted answer
  1. ZhoumingDuan-MSFT 15,810 Reputation points Microsoft Vendor
    2025-02-13T02:12:44.09+00:00

    @Vishnu Anand, Thanks for posting in Q&A.

    For your issue, I have done some research, here are some information you can refer to.

    Based on the official document, it says much of app protection functionality is built into the Company Portal app. Device enrollment isn't required even though the Company Portal app is always required. For Mobile Application Management (MAM), the end user just needs to have the Company Portal app installed on the device.

    https://learn.microsoft.com/en-us/mem/intune/apps/app-protection-policy#company-portal-app-and-intune-app-protection

    When using APP, the company portal app simply needs to be installed on Android devices and shouldn't be signed in to. If you try and sign in to it, it will try to enroll the device, which you don't want and will get the error message.

    So, for unmanaged devices, there is no need to login Company portal to get the app protection policy, we just install it and then the app protection policy can apply automatically.

    Hope above information can help you.

    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.