Hey everyone! I'm struggling with a setup for Mobile Application Management (MAM) on some BYOD devices, and I've been at it for a few hours. I've followed a bunch of guides and watched videos, but I'm still hitting roadblocks. I've created an Intune App Protection Policy and assigned it to both a security group and a Microsoft 365 group. I'm testing with a single user who has a Microsoft 365 Business Premium license. When I check in the Intune Admin Center, it shows that they have Intune licensing and 37 check-ins. I'm using Microsoft Authenticator and have re-added the user account to the app. The weird thing is, when I log in without the Conditional Access policy, everything works fine—no issues at all. But once I turn on the Conditional Access policy, I get this error: "Access needed: Your organization requires that you have an Intune policy to access data for this account, but we couldn't find one." The Conditional Access policy is set to cover all Microsoft apps, and the test user is included in the group. The user's location is accurate too. Has anyone experienced this or have suggestions? Appreciate any help!
3 Answers
Is your test device running Android or iOS? If it's Android, make sure you have the Company Portal app installed, as it acts as the broker for MAM policies.
I don't have a direct answer here, but if any of you are facing Outlook issues on mobile, check the Exchange admin for the shell commands. Sometimes, the GUI doesn't set the proper settings automatically.
I'm in a similar boat! Just keep exploring the Intune interface. There are so many options and settings that can be easy to miss. Let's see if someone can shed light on this issue!

Related Questions
Can't Load PhpMyadmin On After Server Update
Redirect www to non-www in Apache Conf
How To Check If Your SSL Cert Is SHA 1
Windows TrackPad Gestures