Since this morning no Apple device in a tenant has been able to enrol in Microsoft Intune, while Windows enrolment continues to succeed. Before any enrolment policy is altered, an administrator must establish whether a tenant level condition accounts for the failure. Which TWO checks on the Tenant status page of the Microsoft Intune admin center address that question? Select TWO.
- AReview the service health information on the Tenant status page for an active Microsoft Intune incident or advisory affecting enrolment. Correct
- BCreate an alert rule for the device enrolment failure condition and name the operations mailbox as the recipient of the notification.
- COpen the Endpoint Analytics device health scores and read the values reported for the Apple devices that failed to enrol today.
- DReview the connector status on the Tenant status page for an Apple MDM push certificate that has passed its expiry date. Correct
- EExport the device compliance report from Microsoft Intune and filter it for the Apple devices recorded in the tenant.
Why A is correct: Service health on the Tenant status page reports the incidents and advisories Microsoft has raised against the service, so it establishes whether the failure originates in the service rather than in the tenant's own configuration.
Why B is wrong: An alert rule is a reasonable thing to hold for the future and enrolment failure is a genuine alert condition, but a rule created now watches for later occurrences and explains nothing about the failure already in progress.
Why C is wrong: Endpoint Analytics is tempting because it carries the word health, yet it scores the experience of managed Windows devices already reporting data and holds nothing about a device that never completed enrolment.
Why D is correct: Connector status on the same page reports the state of the tenant's connectors and tokens, and an expired Apple MDM push certificate stops every Apple enrolment while leaving other platforms untouched.
Why E is wrong: A compliance report describes the policy state of devices that are already enrolled, so a handset that failed to enrol has no row in it and the export cannot show why enrolment stopped.