Microsoft Entra hybrid joined devices fail to enroll and generate error 0x8018002a

Muhammad Safeer Saqib 6 Reputation points
2025-02-13T08:53:35.3966667+00:00

I have an issue when try to enroll in Intune as Hybrid joined and i am getting error "Error: Auto MDM Enroll: Device Credential (0x0), Failed (Unknown Win32 Error code: 0x8018002a) Warning: Auto MDM Enroll DmRaiseToastNotificationAndWait Failure (Unknown Win32 Error code: 0x8018002a)" user is part of MFA conditional access policy and "device should be compliant" conditional access policy where I excluded the device from the Conditional Access policy requiring "device compliance" but didn't disable MFA and it start working I'm now considering whether excluding Microsoft Intune and Microsoft Intune Enrollment from the Conditional Access policy would work, instead of disabling MFA for all users?

Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,431 questions
Microsoft Intune Compliance
Microsoft Intune Compliance
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Compliance: Adhering to rules, standards, policies, and laws.
181 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Rahul Jindal [MVP] 10,776 Reputation points MVP
    2025-02-13T10:29:57.07+00:00

    In my experience, I have found conditional access policy requiring mfa or other conditions like compliant device can interfere with the automatic enrolment especially for hybrid joined devices. I had to almost every time exclude the Intune enrolment apps from the CA policies.

    0 comments No comments

  2. Crystal-MSFT 52,216 Reputation points Microsoft Vendor
    2025-02-14T01:16:11.3033333+00:00

    @Muhammad Safeer Saqib, Thanks for posting in Q&A. Yes, the issue occurs when multifactor authentication (MFA) is Enforced.

    https://learn.microsoft.com/en-us/troubleshoot/mem/intune/comanage-configmgr/troubleshoot-co-management-auto-enrolling#microsoft-entra-hybrid-joined-devices-fail-to-enroll-and-generate-error-0x8018002a

    To fix the issue, use one of the following methods:

    You can try the above suggestion to see if it can help.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.