Forum Discussion

DK's avatar
DK
Level 1.5: Cupcake
3 days ago

Unable to start AE (Android Enterprise) Enrollment in Microsoft Intune MDM

We are currently using Microsoft Intune Mobile Device management solution to manage Android mobile devices, and these devices are currently enrolled in the mode of Android Device Administrator in Microsoft Intune.
 
Google has deprecated Android device administrator management, continues to remove management capabilities, and no longer provides fixes or improvements. 
Intune will be ending support for Android device administrator management on devices with access to Google Mobile Services GMS beginning December 31, 2024.
 
Hence, we're trying to setup Android Enterprise method of enrollment in Microsoft Intune. As part of pre-requisites in Intune, it's essential to connect Microsoft Intune account to managed Google play account. As per Microsoft recommendation, we are using Microsoft Entra account to connect to Google Play. After entering the Entra account username & password, authentication is redirecting to Google sign-in page and ending with below error.
Someone at ABCD.com domain has already signed up
 
Microsoft Intune Reference Article: https://learn.microsoft.com/en-us/mem/intune/enrollment/connect-intune-android-enterprise#connect-accounts
Note: ABCD.com should be referred as domain name registered & verified in Microsoft Entra.

  • jasonbayton's avatar
    jasonbayton
    Level 4.0: Ice Cream Sandwich
    3 days ago

    Hey, 

     

    At risk of repeating the error, it means someone has already set up a Google Workspace environment within your organisation. 

     

    The first place to start is with a ticket to IT asking who owns the Workspace domain, and then either requesting an account with super admin permissions from them within that domain, or reaching out to workspace support to recover access to it. 

     

    You do have the option (option 3 on the choice screen) to set up with a Gmail account, but it's no longer the preferred method due to Gmail accounts being consumer (and a pain to manage).

    • DK's avatar
      DK
      Level 1.5: Cupcake
      2 days ago

      Hello Jason,

      Thanks for the reply. I have super admin permissions in Google workspace and Mobile management option is set to custom. Attached screenshot for your reference.

       

      What option should be enabled in Google Workspace so that we can establish Microsoft Intune to enroll Android devices in AE method?

       

       

      • jasonbayton's avatar
        jasonbayton
        Level 4.0: Ice Cream Sandwich
        2 days ago

        OK, in the workspace environment, does the domain match that used in M365? If so and you have SSO configured between 365 and Workspace already, just use the super admin email account to set up the connection.