Microsoft Intune Company Portal for Linux and Conditional Access Issue
Greetings everyone,
I have the following scenario implemented regarding conditional access:
-
Rule#1: For pilotuser1, for all cloud apps, for all platforms –> require MFA
-
Rule#2: For pilotuser1, for all cloud apps except Microsoft Intune Enrollment and Microsoft Intune, for all platforms –> Require Device marked as compliant
This should allow me to enroll to Intune successfully a non-enrolled device and require the device compliance for the other workloads. For Windows it works just fine. The problem lies with Linux.
Following the instructions on Enroll a Linux device in Intune | Microsoft Learn & Get the Microsoft Intune app for Linux | Microsoft Learn I installed Intune App and Edge (Version 109.0.1518.52 (Official build) (64-bit)) on a VM with Ubuntu 22.04.
I open the Intune App and try to sign in:
First step is to Register the Device on Azure AD, it goes without a problem –>
On the next stage I get the following and press continue:
At this stage Microsoft Edge opens and I sign in successfully but the Intune App throws an error:
The sign in logs on Azure AD show that even though I excluded Intune Enrollment from the CA policy, it is not enough.
Apparently something is different in the enrollment process of Linux because I had no issues with Windows 10 enrollment .
Any thoughts on the subject would be appreciated.
Kind Regards,
Panos