I’m posting this to see if anyone has run into this situation to see what their outcome was.
We currently have two devices that do not show an active policy on the client, the platform shows a policy and that it is connected, but the device will not pull a policy.
We have tried using the agentprotectionutility to generate a token but that token does not work. We have tried this with several computers, verified the token does work on a device that is not having the issue.
Now we’ve tried moving that device to a test policy with agentprotectionstate set to 0, requested update from the device through the BT platform, rebooted the device, same issue.
This device will not show a BT prompt for anything, UAC for everything, unable to modify any registry settings regarding BT, token does not work, moving to another policy with agentprotection disabled didn’t change anything. Reinstalling the agent doesn’t change anything.
At this point it seems like there is nothing else that can be done and support doesn’t have any answers so it seems like the only option is to reprovision the machine.





