Windows Tablet workplace turn on device management failed on auto-discovery without any error

Hi
I am using windows surface pro 3 to test windows mdm function. I set up a CNAME for my test domain and pointed it to my develop desktop. My discovery service uses a publicly signed cert from VeriSign. If I turn off the auto detect server address switch and
input the discovery server manually, everything works well. But if I using the auto-discovery, the enrollment stopped before sending the discovery SOAP request.
Below is the network traffic between my tablet and my server:
step1: https to enterpriseenrollment.mydomain.com and failed for SSL certificate mismatch
step2: http to enterpriseenrollment.mydomain.com and get 302 redirect(my discovery service)
step3: https get to my discovery server and get HTTP 200.
Then the tablet does not send any request any more, it should send a HTTP get again with Content-Type: soap+xml and then a POST with soap but it not.
These work flow is as same as the Windows Intune and Intune works! I don't know why.
Thanks for any help!

Yes, because if you are using the actual hostname in the manual address, something like
https://yourServer/..., and if the SSL Certificate is issued to "yourServer" (CN=yourServer), then there is no certificate name mismatch or SSL errors during certificate validation.
However, when the automatic enrollment happens and the HTTPS request is sent to
https://enterpriseenrollment.yourServer.com/..., then even though the underlying connection is made to yourServer IP Address, the certificate that the server presents is for yourServer, not enterpriseenrollment.yourServer.com.
So there will be a certificate name mismatch and the secure channel establishment will fail.
For this automatic scenario to work properly, the server certificate must be issued to the correct domain - such as a wildcard certificate (*.yourServer.com). That should ensure that there are no secure channel errors and then the enrollment process can
continue further.
You can use the manual address for development/testing purposes, but once you decide to release the solution, you may want to use the automatic discovery for easier end user interaction and use the right SSL certificates - issued to the right CN.
Windows Store Developer Solutions, follow us on Twitter:
@WSDevSol|| Want more solutions? See our blog

Similar Messages

  • Workspace join works, turning on device management fails

    i'm testing workspace join. Joining my windows 8.1 device to my local ADFS/DC setup is succeeding. In this environment i also use a SCCM 2012 R2 site system with an active and working Intune subscription. I workspace joined with the UPN matching a local
    user using <labname>.onmicrosoft.com. 
    The workspace join is working however turning on device management is failing? Anyone knows what might be the issue here?
    regards!

    Hi,
    I’m glad to hear that you got it working. 
    Thank you for sharing your solutions & experience here. It will be very beneficial for other community members who have similar questions. 
    Regards,
    Kelvin hsu
    TechNet Community Support

  • Known Issue: Emulators for Windows Mobile 10.0.10069 : The installer failed. User cancelled installation. Error code: -2147023294

    Some users are receiving the following errors after Visual Studio setup completes
    Emulators for Windows Mobile 10.0.10069 : The installer failed. User cancelled installation. Error code: -2147023294
    Windows 10 SDK 10.0.10069 : The installer failed. User cancelled
    installation. Error code: -2147023294

    We've fixed this issue, and have released an update as of 7PM PDT 30 April 2015.
    New installs of Visual Studio 2015 RC should expect to no longer encounter this problem, unless
    you lose your internet connection during installation. (That is, this error now indicates that the Windows SDK or Windows Emulator setup invoked by Visual Studio setup has lost internet connectivity and cannot download necessary files.)
    To fix the issue, re-run setup and select the features "Universal Windows App Development Tools" and/or "Emulators for Windows Mobile" again.
    If you have already installed Visual Studio and encountered this problem, you can now modify your Visual Studio installation to successfully install.
    Go to Program & Features, select Visual Studio 2015 RC, and select Change. Click
    Modify, then select the features "Universal Windows App Development Tools" and/or "Emulators for Windows Mobile", and click
    Update.
    Note that "Universal Windows App Development Tools" will be already selected. This is expected. Keep it selected, and click
    Update.
    An alternate solution is to install the Windows 10 SDK and Windows Emulators separately. Go to
    https://dev.windows.com/downloads/windows-10-developer-tools. Scroll to the bottom of the page and install
    the Windows 10 SDK and Windows 10 emulators outside of Visual Studio setup.
    Thanks!
    -Paul

  • AR Autoivoice fails without any error

    Autoivoice fails without any error, the lines remains in the Interface Lines. I do not get any exception or error, but the invoice is not created. After running Autoinvoce, Sales Order status is closed, so the problem is with the Autoinvoice..
    Any ideas of solving this problem? Thank you..

    It is completed, there is nothing in the log file but this Warning: some records remaining in ra_interface_lines..it looks as if it had completed normally, but the invoices are not created..there is no error shown..
    Could it be the problem the Accounting and Invoicing rules that are set to Monthly?
    Thank you.

  • Windows 8.1 not booting : "Boot manager failed to find OS loader"

    Hello all,
    I know this question came up before, but I have being trying to fix this for many days now, without luck and I feel I need some new ideas...
    The short story:
    My Windows 8.1 is not booting, and gets trapped in cycle of Boot Manager until I tell the UEFI to boot from disk or USB
    I can boot up from external CD or USB Windows RE, from which I can get to prompt line
    In the log file in C:\Windows\System 32\LogFiles\Srt\SrtTrail.txt I read: 
    Boot manager failed to find OS loader
    Repair Action File Repair à Failed (err code 0x4001)
    Repair Action Boot Config Data Store Repair à Failed (err code 0x2)
       4. My disk is GPT partitioned, with UEFI Bios
       5. I tried the typical Bootrec commands: FixMbr, FixBoot, ScanOs, RebuildBCD but I always get the error:
    Identified Windows install:0
        6. I tried Bcdedit but I get:
    the boot configuration data (BCD) store could not be opened
        7. I tried to create a new BCD store in the FAT32 partition (temporarily named "v:\") with  
    bcdboot c:\Windows  /l en-gb  /s  v: /f ALL
    but I get:
    Failure when attempted to copy boot files
        8. Finally, I noticed that in
      C:\Windows\System32\
    I DO NOT have the file  winload.efi
    while in: ESP\EFI\Microsoft\Boot\
    I DO have the file   Bootmgfw.efi
       One question I have is: Is it possible to copy a "healthy" winload.efi from somewhere in my PC into C:\Windows\System32\ ?
    Where (which path) could I find it?
    Any other ideas? Please help !!!!
    Many thanks!! This is literarily driving me crazy because I really don't want to reinstall windows....

    Hello Kermit_70,
    What is your current situation?
    Please try the suggestion as aw00t mentioned.
    Additionally, please try to use Automatic Repair to fix problems that keep Windows from loading.
    For more information, please take a look at the following article.
    http://www.eightforums.com/tutorials/2269-system-recovery-options-boot-windows-8-a.html
    Please note: Since the website is not hosted by Microsoft, the link may change without notice. Microsoft does not guarantee the accuracy of this information.
    Best regards,
    Fangzhou CHEN
    Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • Update of device manager failed

    hi,
    i use a BOLD 9900. lately, BB DEVICE MGR failed to detect the phone "disconnected" so i installed an update reported by DEVICE MGR.  the update updated v7.1 bundle 2108 to v7.1 bundle 2807. during the sequence of steps shown on screen (BACK UP; INSTALL; REBOOT; RESTORE), the process has stalled at REBOOT , reporting CONNECTING TO DEVICE (this may take  a few minutes). the phone is off and nothing has happened in about 1 hour. what do i do?
    Solved!
    Go to Solution.

    today, the update software showed "failure to open conneciton to device. password may be required" (or equivalent). RETRY or CANCEL? i previously selected RETRY and the software returned to reboot phase. this morning (after leaving computer overnight), the same "password may be required" window was open and i selected CANCEL. 
    I beleive the phone no longer has an operating system. pushing and holding the off/on button does not start the phone. what can i do? I assume that i need to re-install the operating system. any guidance? anyone?

  • W510 w/WinXP, device manager reports issue w/1394 Net Adapter (error code=10)

    I recently reimaged a brand new W510 w/WinXP w/SP3 & installed Lenovo Toolbox utility. Which immediately identified an issue w/the 1394 Net Adapter in Device Manager. Looking at the Device Status (details) it states "The Device Cannot Start (code 10)" and suggests reloading the drivers. I've tried updating them using the UPDATE DRIVER button and searching the web but it states Windows cannot find a better match then the one I have. I've copied the driver from a 2nd WinXP machine (nic1394.sys). I've installed all of the Microsoft updates (for Critical Software and Hardware). Installed the Lenovo Driver Update utility & installed all available driver updates and flashed the BIOS and nothing has resolved it.  I've run the full Lenovo toolbox diags and everything passes (including the 1394 adapters) I've also sent the PC into Lenovo for repair and they indicate everything tests fine as well..
    Question, does anyone one know if this device is compatible w/WinXP ? Any other suggestions ?
    Thanks,

    hey acekc77,
    the Lenovo Toolbox, is it version :6.0.5802.24 ? If it isn't, could yo go here and install the latest version >>
    http://www-307.ibm.com/pc/support/site.wss/document.do?lndocid=MIGR-73783
    At the same do go here and ensure all driver/software is updated
    >> http://www-307.ibm.com/pc/support/site.wss/MIGR-74582.html
    WW Social Media
    Important Note: If you need help, post your question in the forum, and include your system type, model number and OS. Do not post your serial number.
    Did someone help you today? Press the star on the left to thank them with a Kudo!
    If you find a post helpful and it answers your question, please mark it as an "Accepted Solution"!
    Follow @LenovoForums on Twitter!
    Have you checked out the Community Knowledgebase yet?!
    How to send a private message? --> Check out this article.

  • Windows install problems, "No bootable device. Insert boot disk and press any key" and general wrongness

    Hi,
    I've been having this issue with a Windows 7 install.
    Firstly, I have successfully installed Windows 7 before. I partitioned my HDD, held down option when booting up, booted off a USB and after a few goes it all worked fine. I didn't use boot camp assistant to install. I then proceeded to remove Windows a little while later. To do this I used disk utility to erase the partition on my HDD and but afterwards discovered my imac would continue to try to boot off the now non existant Windows partition. I solved this problem by using boot camp assistant via the "Remove Windows 7 Install" option. My imac booted up exactly as I would like it to from then on.
    I am now trying to reinstall windows. I tried the way that I did it the first time but after partitioning my HDD via disk utility, inserting my USB and rebooting with option held down I am only given the option of my main HDD and my recovery drive. I have tried burning the files on the USB to DVD and booting off the disk drive by holding down C while starting up. Neither the USB or DVD are visible to be selected when I hold down option during startup.
    When I try to use boot camp assistant to install I get a "No bootable device. Insert boot disk and press any key" error after the step where it partitions your HDD you. Also, my option to create an install USB via boot camp assistant is greyed out and unavailable for clicking.
    Help?

    Fix your superdrive.

  • Oracle XE 10g install fails without any error or message

    Hi,
    I searched many posts in this form, and could not find an answer to my problem.
    Trying to install XE on a server 2003. Installation proceeds successfully almost to an end, and then installation window disappears, without any message, error or warning.
    New ORACLE_HOME, created up to this point, also disappears.
    Logfile has the following entries, C:\WINDOWS\OracleDatabaseXEServerInstall.log:
    MSI (s) (F8:C0) [16:04:44:540]: Note: 1: 1708
    MSI (s) (F8:C0) [16:04:44:540]: Product: Oracle Database 10g Express Edition -- Installation operation failed.
    I know that the server is behind the firewall, and does not have connection to the internet. It is connected to the network, and other servers and desktops, though.
    Does it have to have access to the outside world to install XE?

    Hi,
    I am having the same issue, both on a windows 2003 server and on a XP client PC. The installation progresses up to a point after which the installation window disappears without errors or messages. I tried as a domain administrator, as a local administrator and removed other Oracle software, rebooted, checked for virus scanners etcetera, withou result.
    I searched through the forums but could not find a solution.
    Any idea's?
    Regards,
    Gerrit
    Hi,
    I searched many posts in this form, and could not
    find an answer to my problem.
    Trying to install XE on a server 2003. Installation
    proceeds successfully almost to an end, and then
    installation window disappears, without any message,
    error or warning.
    New ORACLE_HOME, created up to this point, also
    disappears.
    Logfile has the following entries,
    C:\WINDOWS\OracleDatabaseXEServerInstall.log:
    MSI (s) (F8:C0) [16:04:44:540]: Note: 1: 1708
    MSI (s) (F8:C0) [16:04:44:540]: Product: Oracle
    Database 10g Express Edition -- Installation
    operation failed.
    I know that the server is behind the firewall, and
    does not have connection to the internet. It is
    connected to the network, and other servers and
    desktops, though.
    Does it have to have access to the outside world to
    install XE?

  • Photoshop cs2 crashes and reboot windows xp without any error message when I try to open a file

    Hi,
    I downloaded the trial version (assessment for thirty days) of Adobe Photoshop cs2. Once installed the trial version, the program works correctly, except for a basic function: to open files and modify them. Any image files (jpeg-gif-png-tiff-bmp-psd) on press command FILE>OPEN, or Ctrl+O, to open it, sends the system in crash, and without any warning message, send to "restart" the operating system, in my case , windows xp.
    I use also photoshop cs, and it works correctly and allows to open file image also; but not with cs2.
    What's the problem?

    The error message I see in a Event Viewer after the program crashed is the following:
    Event Type: Error
    Event Source: Userenv
    Event Category: None
    Event ID: 1041
    Date: 22/03/2009
    Time: 09:05:52
    User: NT AUTHORITY\SYSTEM
    Computer: PENTA
    Description:
    Windows cannot query DllName registry entry for
    {CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D} and it will not be loaded. This is most likely caused by a faulty registration.
    For more information, see Help and Support Center at
    http://go.microsoft.com/fwlink/events.asp.

  • Payables Open Interface Pgm fails without any error(Very urgent)

    All,
    I'm into an integration project where in I'm pushing Invoice doc from a third party appln to Oracle apps (11.5.10.2) thru payables open interface. The integration is smooth till today. We pushed a record today, but the concurrent neither picks up the data but failed with 'completed error' status. When I delete the same record from the interface, the concurrent runs fine. So we are sure there is some issue with the data in my record. Since concurrent is failed without any reason, from where I can get the log to know what is the actual problem with that record? Pls help me with your inputs.
    Thanks,
    Sen

    Sen,
    To enable trace, please refer to this document (skip the part about generating TKPROF, just check the concurrent request output file if more details about the error are logged after enabling trace and setting the profile option).
    Note: 453527.1 - How To Trace a Concurrent Request And Generate TKPROF File
    https://metalink2.oracle.com/metalink/plsql/ml2_documents.showDocument?p_database_id=NOT&p_id=453527.1
    The database log file can be usually found under $ORACLE_HOME/admin/<SID>_<hostname>/bdump directory (or from SQL*Plus, issue "show parameter background_dump_dest").
    Regards,
    Hussein

  • Set-item failing to work - but without an error

    A co-worker is working with a vendor. He and the vendor have been setting up the Powershell environment, remote signing, etc. The vendor recommended that the following command be executed:
    Set-Item WSMan:\localhost\Plugin\Microsoft.PowerShell\Quotas\MaxMemoryPerShellMB 1024
    The user executed this, and the command returned without any output. When he checked, however, the value of MaxMemoryPerShellMB using winrm get winrm/config , MaxMemoryPerShellMB had the original value of 300, rather than 1024.
    Is there a setting that might have turned off error reporting? Or is there something else going on here?

    Hi Lwvirden,
    Agree with tommymaynard, To set MaxMemoryPerShellMB to 1024 MB, please follow the script below:
    Set-Item WSMan:\localhost\Shell\MaxMemoryPerShellMB 1024
    Set-Item WSMan:\localhost\Plugin\Microsoft.PowerShell\Quotas\MaxMemoryPerShellMB 1024
    get-Item WSMan:\localhost\Plugin\Microsoft.PowerShell\Quotas\MaxMemoryPerShellMB
    Restart-Service winrm
    winrm get winrm/config
    For more detailed information, please go through this article:
    Learn How to Configure PowerShell Memory
    If there is anything else regarding this issue, please feel free to post back.
    Best Regards,
    Anna Wang

  • Backup failing without any errors in sys prefrerences time machine

    What happens: Time Machine scans, prepares, but does not actually back up. It does not report any errors through System Preferences > Time Machine.
    I've used Disk Utility to verify both my local disk and my time machine disk (external USB drive).
    I've done a full reset of Time Machine ("A4").
    Here's the relevant log:
    Nov 26 03:07:31 computerName com.apple.backupd[522]: Starting standard backup
    Nov 26 03:07:31 computerName com.apple.backupd[522]: Backing up to: /Volumes/Time Machine Backups/Backups.backupdb
    Nov 26 03:07:32 computerName com.apple.backupd[522]: Event store UUIDs don't match for volume: Macintosh HD
    Nov 26 03:07:32 computerName com.apple.backupd[522]: Node requires deep traversal:/ reason:must scan subdirs|new event db|
    Nov 26 03:10:18 computerName mds[34]: (/Volumes/Time Machine Backups/.Spotlight-V100/Store-V1/Stores/039F4DE9-98EB-4474-A60B-665902E6BC99)(E rror) IndexSDB in dbflushdatastore:/Volumes/Time Machine Backups/.Spotlight-V100/Store-V1/Stores/039F4DE9-98EB-4474-A60B-665902E6BC99/st ore.db : dbsyncdatastore: !WARNING! prior write-errors invalidate sync.
    Nov 26 03:10:18 computerName mds[34]: (/Volumes/Time Machine Backups/.Spotlight-V100/Store-V1/Stores/039F4DE9-98EB-4474-A60B-665902E6BC99)(E rror) IndexCI in _ContentIndexSyncIndexBulk:preSync error:22 0
    Nov 26 03:10:18 computerName mds[34]: (/Volumes/Time Machine Backups/.Spotlight-V100/Store-V1/Stores/039F4DE9-98EB-4474-A60B-665902E6BC99)(E rror) IndexSDB in dbflushdatastore:/Volumes/Time Machine Backups/.Spotlight-V100/Store-V1/Stores/039F4DE9-98EB-4474-A60B-665902E6BC99/st ore.db : dbsyncdatastore: !WARNING! prior write-errors invalidate sync.
    Nov 26 03:10:18 computerName mds[34]: (/Volumes/Time Machine Backups/.Spotlight-V100/Store-V1/Stores/039F4DE9-98EB-4474-A60B-665902E6BC99)(E rror) IndexCI in _ContentIndexSyncIndexBulk:preSync error:22 0
    Nov 26 03:11:00 computerName com.apple.backupd[522]: Error: Flushing index to disk returned an error: 0
    Nov 26 03:11:00 computerName com.apple.backupd[522]: Backup canceled.
    Thanks for any pointers you can provide.
    - Evan

    evan_j wrote:
    Hi Pondini!
    Thanks for your help.
    I added the entire Time Machine disk to the spotlight privacy exception, waited for a bit, and removed it. From this line, I assume that it triggered the re-indexing of the drive:
    Nov 27 10:26:58 computerName mds[34]: (Normal) DiskStore: Creating index for /Volumes/Time Machine Backups
    Yup.
    I think one of the issues was that I had the power settings to shut down disks.
    That shouldn't be a problem, as they should "spin up" when necessary. Some external HDs respond to that setting, some don't -- they have their own settings. But unchecking the option sometimes fixes the problem, so at least you know what it is.
    Nov 27 05:57:05 computerName mds[34]: (/Volumes/Time Machine Backups/.Spotlight-V100/Store-V1/Stores/039F4DE9-98EB-4474-A60B-665902E6BC99)(E rror) IndexSDB in dbflushdatastore:/Volumes/Time Machine Backups/.Spotlight-V100/Store-V1/Stores/039F4DE9-98EB-4474-A60B-665902E6BC99/st ore.db : dbsyncdatastore: !WARNING! prior write-errors invalidate sync.
    Nov 27 05:57:05 computerName mds[34]: (/Volumes/Time Machine Backups/.Spotlight-V100/Store-V1/Stores/039F4DE9-98EB-4474-A60B-665902E6BC99)(E rror) IndexCI in _ContentIndexSyncIndexBulk:preSync error:22 0
    . . . {that pair of lines repeats ~ 6 times} . . .
    Nov 27 06:15:16 computerName mDNSResponder[35]: PenaltyTimeForServer: PenaltyTime negative -180458, (server penaltyTime -1014959037, timenow -1014778579) resetting the penalty
    It repeats the 1st and 2nd lines every ~ 6 minutes, then the PenaltyTimeForServer, then the cycle starts again.
    Any ideas?
    The UUID mismatch message sent by backupd in your first post is because TM hasn't completed a backup, and isn't sure what's changed on your system and needs to be saved. So it does a "deep traversal," comparing your system to the backups (that's the "scanning" in the messages). That has to be repeated every time, until a backup is completed. On subsequent backups, it can use a log of changes that OSX keeps, and will be much quicker.
    It sounds like something is corrupted, somewhere. Exclude your TM drive from Spotlight again,but leave it excluded. Verify your internal HD and Repair the TM drive again. (Unfortunately, those will find directory errors and the like, but not necessarily problems within files.)
    Then try another backup.
    How old is your external HD? Are you just starting with TM or that disk, or have you been backing-up successfully for a while?
    Are you running any kind of Sync application? A couple of the messages mention some sort of sync, but I don't know enough about Spotlight to know whether that's relevant.
    Are you running Windows via Parallels, VmWare, or the like?

  • Acrobat x installation failed without any error message

    I installed Acrobat X on Window 7 (64-bit) from downloaded files. The installer poped up the installation options up to the typical or custom installation. After clicking "Next", nothing happened. I have already disabled the antivirus software and my Win 7 has the latest updates installed. In addition, I also tried the downloaded trial version of the Acrobat X from Adobe. But nothing happened either after clicking "Next" in the final stage of the installation options. Does anybody know how to solve this problem? Thanks a lot.  

    Troubleshoot with install logs
    Mylenium

  • I cannot see my iPod in my iTunes or in Computer in Windows 7, but it shows up in the Device Manager

    I am running Windows 7 and have had no problems with with the 3 iPods we connect, but as of a couple days ago, the computer will no longer recognize them. Other USB devices (flash drives and Android phone) have no problem being recognized. Additionally, if I have my iPod plugged in before I start iTunes, my laptop will not open iTunes until I unplug my iPod. My laptop will also not shut down if my iPod is plugged in, and will only shut down if I unplug it. It will recognize that my iPod is plugged in and connected (it lights up and charges), but does not show up in the My Computer. The iPod is recognized in Device Manager.  Also, when I unplug any of the iPods, it will show up for just a second in the My Computer before disappearing. I have tried the following:
    Restart computer
    Uninstall/reinstall iTunes and all Apple programs
    Renaming for a higher drive (Other drives aren't in E: drive)
    Putting anti-virus programs on my computer and doing a full-scan
    Disk defragment
    Deleting Temp folder (I have stopped all programs on my laptop and it still won't let me)
    Stopped iTunes/Apple services and re-enabled them
    Updating Driver Software
    Please Help

    have had no problems with with the 3 iPods we connect, but as of a couple days ago, the computer will no longer recognize them.
    The problem is with ALL of the iPods, at the same time?  Are they are shuffles?
    It is unlikely that three iPods would go bad at the same time, so the other possibilities are bad USB cable, the bad USB port on computer, or a software issue on computer?
    If these are different types of iPods and you are using different USB cables, that probably rules out bad USB cable.  Since the iPod is recognized by the computer and other devices are recognized, that probably rules out a problem with the USB port.  So, that leave a software issue on computer as the most likely cause.
    Did you install any new software (or change the setting of software) on the computer at the time this problem started, particularly something that runs continuously in the background, such as security software?
    You've trying uninstalling and re-installing Apple software.  Is there a way you can disable other third-party software systematically?

Maybe you are looking for

  • Can't attach USB devices in Windows XP Mode

    I am still trying to set up my new Probook G1 450.  It is presently in the original Win 7 Pro 64-bit OS. I am trying to use Windows XP Mode.  I can set up XP Mode, but I can't get USB access under it. But for me, the whole point of getting XP Mode is

  • Contract value not updated in open order value of credit management

    My requirement is i have created the contract and activated the credit management by assigning credit  group to contract document type, In item category the credit is active and in pricing subtotal is also assigned . But when i create the contract ,

  • What is the transaction code to change a service master ?

    Hi, can any one please tell me the  path or the transaction code to change a service master

  • Getting user password after valid login

    How do I get the user's password after a valid login?

  • Win 7 on Win 8

    Hi everyone! I am fed up with windows 8 which is the reaso why I would like to install on my machine win 7, but, unfortunately, for me it seems almost impossible. I have got lenovo H520s low profile machine with pre-installed win 8. I can't even get