Azure

Something Went Wrong the User is Not Authorised to Enroll

I’ve been rolling out a setup of intune to a client for about 30 machines, during the migration they are configuring the machines off site and using a single account to register the devices in Azure and then intune via AutoPilot.

After they had did a handful of devices they received the following error:

Something went wrong. This user is not authorized to enroll. You can try to do this again or contact your administrator with the error code 801c0003.

something went wrong the user is not authorised to enroll

Now as they had already registered a few devices I was pretty sure that the issue was because they where using a single account to register devices in Azure AD, with AutoPilot configured to auto enroll devices they will have hit the default limit of 5 fairly quick. To resolve this we can increase the limit as seen below. Additionally I’ve listed other issues that may cause this.

Increase Intune Device Limit

  1. Log into the Azure Portal
  2. Click search and enter intune
  3. Select intune
  4. Select Enrollment Restrictions
  5. Select Properties
  6. Change Device Limit Restrictions to chosen value

Increase Intune Device Limit

Other Causes of the 801c0003 Error

As mentioned, there a other issues that may generate this error as seen below:

Devices no longer used

You r user may of hit the 5 limit threshold but no longer have the device, we can remove with the following.

  1. In the Azure Portat select > Azure Active Directory > Devices.
  2. Locate the Device and select
  3. Delete the device

Does the User have Permissions to Enroll

The user in question may not have the relevant permissions or be in the correct group to enroll a device. If you have Auto Pilot enable make sure the user is in the relevant auto Pilot Group.

  1. In the Azure Portal select > Azure Active Directory > Device enrollment – Windows enrollment > Deployment Profiles
  2. Select the profile
  3. Select Properties
  4. Select Assignements
  5. Ensure user is assigned or in correct group.

 

add user to intune auto pilot

We can also check the user is in MDM scope with the following:

  1. In the Azure Portal select > Azure Active Directory > Mobility (MDM and MAM) > Microsoft Intune
  2. Check the scop, Either None, Some or All will be slected
  3. Add the user or group if required.

Intune MDM scope

Tags: intune

Allen White

Allen is an IT Consultant and holds the following accreditations. MCSA, MCSE, MCTS, MCITP, CCA, CCSP, VCP 4,5, 6 and HP ASE, AIS - Network Infrastructure.

Leave a comment

Categories

Vote!

What Web Browser Do You Use?

View Results

Loading ... Loading ...

Vote!

What do you prefer..VMware or Hyper-V?

View Results

Loading ... Loading ...