<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content

Okta Device Managed Status Fails to Update from Microsoft Intune Configuration Policy for Mobile Devices

Okta Classic Engine
Okta Identity Engine
FastPass

Overview

The Okta device managed status fluctuates between true and false for Apple iOS and Android devices due to an improperly formatted configuration key or a manual application installation. Correct the configuration key for Apple iOS devices or reinstall the application from the Mobile Device Management (MDM) for Android devices. Administrators observe devices switching between managed and unmanaged states within the environment, preventing consistent device management. Furthermore, the MDM configuration policy fails to apply correctly or appears missing, and the device does not show as managed in the Okta Devices Directory, but shows as managed in the System Log events.

Applies To

  • Okta Identity Engine (OIE)
  • Okta Classic Engine
  • Apple iOS
  • Android
  • Microsoft Intune
  • Okta FastPass
  • Mobile Device Management (MDM)

Cause

The issue stems from two distinct causes depending on the operating system. For Apple iOS devices, the Mobile Device Management (MDM) configuration policy contains an improperly formatted configuration key. The configuration policy incorrectly formats the management hint attribute as Management Hint (or other examples) instead of the required exact string of managementHint. For Android devices, the application remains stuck in an unmanaged status because the end user manually installed the application from the Google Play Store instead of downloading it directly from the MDM.

Solution

How do administrators resolve the managed status for Apple iOS devices?

Access the Microsoft Intune Mobile Device Management (MDM) configuration policy, modify the configuration key, and authenticate the user with Okta FastPass.

  1. Access the Microsoft Intune MDM configuration policy for the Apple iOS devices.
  2. Modify the configuration key from Management Hint (or other examples) to managementHint.
  3. Authenticate the user with Okta FastPass.
  4. Verify the device now displays as managed.

NOTE: For more information regarding Apple iOS deployment, review Deploy Okta Verify to iOS devices.

How do administrators resolve the managed status for Android devices?

Uninstall the manually installed Okta Verify application, reinstall it from the Mobile Device Management (MDM), and re-enroll the device using Okta FastPass.

  1. Uninstall the manually installed Okta Verify application from the device.
  2. Reinstall the application by downloading it directly from the MDM.
  3. Re-enroll the device using Okta FastPass.
  4. Verify the device now displays as managed.
Loading
Okta Support - Okta Device Managed Status Fails to Update from Microsoft Intune Configuration Policy for Mobile Devices