For everyone wondering how I fixed this issue:
You have to explicity set the password complexity to "medium".
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Hello!
I am using Intune for our MDM. Some users reported that their Android Device (which is configured using BYOD) requires an 8-Digit Passcode. Our configuration policy only requires 4-Digits though. Can somebody help me point into the right direction?
It only affects BYOD Users (for now)
Thanks!
For everyone wondering how I fixed this issue:
You have to explicity set the password complexity to "medium".
The configuration profile only states the minimum required length of 4, but a length of 4-16 can be used. I am not very familiar with newer Android devices, but this could be a restriction of newer versions of Android not allowing passcodes shorter than 6 or 8 digits.
Please accept as an answer if this was helpful.
Do you have a MAM policy applied by any chance?
Context:
The key to this is the Android versions. I encountered this issue after getting a new Android phone, (last phone was a Pixel 5, new one is a Pixel 8 Pro, the Pixel 5 was updated to Android 14 and still had no issues with Intune MDM compliance despite having a 6 character password).
When I went to set up my new phone, despite me still having a 6 character password to unlock my phone, the Company Portal app was forcing me to set up an 8 character password.
Solution (for our environment):
I'm not sure why we all weren't retroactively forced to set up 8 character passwords for our Android devices in my company, but I was able to resolve this issue by doing what Matthias Mader suggested (setting the Android 12 and newer password complexity to Low). My suspicion is that because we had it originally set to "None", Microsoft/Intune was defaulting to High instead for the sake of security, but only applying this to new MDM enrollments. This makes the most sense to me since in November of last year, Google stopped supporting the more granular password complexity/length requirements for BYOD, instead they switched over to what we see for the Android 12 and newer password complexity settings. This timeline matches up pretty well since at my company, we've only run into this issue at the beginning of this year when some people got new Android phones.
In short: If your Android 12 or newer Work Profile Password Complexity is set to None, change it to anything else (Low, Medium, High). After some digging, I found some better information on this available here: https://learn.microsoft.com/en-us/mem/intune/protect/compliance-policy-create-android-for-work#android-12-and-later---for-personally-owned-work-profile