Learning and Sharing
  • Home
  • Blog
  • Linux
  • macOS
  • Virtualization
    • VMware
    • VirtualBox
  • Windows
    • Windows 11
    • Windows 10
    • Windows Server
  • Series
    • Symantec
    • Intune
    • Microsoft Azure
    • Powershell
    • VirtualBox
    • VMware
    • PowerShell Learning
    • Microsoft Graph
  • More
    • Auto Installation
    • AEC Installation
  • Contact
No Result
View All Result
  • Home
  • Blog
  • Linux
  • macOS
  • Virtualization
    • VMware
    • VirtualBox
  • Windows
    • Windows 11
    • Windows 10
    • Windows Server
  • Series
    • Symantec
    • Intune
    • Microsoft Azure
    • Powershell
    • VirtualBox
    • VMware
    • PowerShell Learning
    • Microsoft Graph
  • More
    • Auto Installation
    • AEC Installation
  • Contact
No Result
View All Result
No Result
View All Result

How to Fix Bulk Token Retrieval Failed With Windows Configuration Designer (WCD)

January 24, 2024
in Blog, Microsoft 365
0
ADVERTISEMENT

Table of Contents

Bulk Token Retrieval Failed in Windows Configuration Designer

Windows Configuration Designer is a tool used to create provisioning packages to easily configure devices running Windows client. Windows Configuration Designer is primarily used by IT departments for business and educational institutions who need to provision bring-your-own-device (BYOD) and business-supplied devices.

In this case, it was used to create a provisioning package containing a Bulk Primary Refresh Token (BPRT) for enrolling Windows clients to Intune, instead of doing it manually.

But the tool has its issues…The Microsoft Store version of the tool was installed, the credentials for the tenant were entered and authenticated, and then this error “The operation returned and empty response“.

aTeL5ewgRV0klfaM2LbM3XljdNzDvZQ1xD7fWu3w3buVVZzwNV0CxsTYz3SZ

The ICD.log file, located in C:\Users\Username\Documents\Windows Imaging and Configuration Designer (WICD), weren’t of much help, but gave a different description of the error, “AADSTS90092: Non-retryable error has occurred“. 

1/24/2024 9:07:26 AM Error Bulk token retrieval failed: {“error”:”server_error”,”error_description”:”AADSTS90092: Non-retryable error has occurred. Trace ID: 8e044b95-346d-4a67-94c2-619a37fa7000 Correlation ID: becf39dc-51df-4030-a7ba-2e0ea9c4b2a2 Timestamp: 2024-01-24 02:07:27Z”,”error_codes”:[90092],”timestamp”:”2024-01-24 02:07:27Z”,”trace_id”:”8e044b95-346d-4a67-94c2-619a37fa7000″,”correlation_id”:”becf39dc-51df-4030-a7ba-2e0ea9c4b2a2″}

A quick internet search later, and the WCD from the Windows Assessment and Deployment Kit (ADK) was installed and tested. The result was a different error, “Bad request”, but the bottom line was that it also failed.

Note Note: The ADK version of WCD doesn't have the "Refresh AAD credentials" option.

You got this because there was a Service Principal missing in the tenant, Microsoft.Azure.SyncFabric (AppID 00000014-0000-0000-c000-000000000000). So, we need to creat tje Service Principal manually:

1. Open PowerShell as administrator then run the below command to install the AzureAD module.

Install-Module AzureAD -Scope CurrentUser

2. Connect to Azure AD using an administrative account.

Connect-AzureAD

3. Create the Service Principal.

New-AzureADServicePrincipal `
    -AccountEnabled $true `
    -AppId 00000014-0000-0000-c000-000000000000 `
    -AppRoleAssignmentRequired $False `
    -DisplayName Microsoft.Azure.SyncFabric `
    -Tags {WindowsAzureActiveDirectoryIntegratedApp}

4. Verify the Service Principal has been created successfully in Azure AD.

Get-AzureADServicePrincipal | Where-Object {$_.AppId -eq "00000014-0000-0000-c000-000000000000"}
ObjectId                             AppId                                DisplayName
--------                             -----                                -----------
17fddd56-711a-4f80-97f1-f067f4a38ab6 00000014-0000-0000-c000-000000000000 Microsoft.Azure.SyncFabric

5. After creating the Service Principal manually, the token was successfully retrieved by WCD.

dx82X582CWkFHN5uG4IrRMjorDI4YU8bSDOhDn1HSwjZESw6gY8GDo74h6aM

So, it turns out the tool doesn’t have issues after all. Some tenants have similar issues even though the Service Principal is present, the recommended fix for that is to delete and recreate the Service Principal.

Regardless, I spent many frustrating hours troubleshooting this, and if you are having issues similar to the above, I hope this helps. Until next time, happy enrolling!

ADVERTISEMENT

Not a reader? Watch this related video tutorial:

5/5 - (1 vote)
Previous Post

How to Check Microsoft 365 Tenant Name is Available for Creation

Next Post

How to Download CMTrace from Microsoft

Related Posts

Running Hyper-V and VMware Workstation on The Same Machine

August 15, 2024

How to Uninstall All Autodesk Products At Once Silently

July 29, 2024
Ftr5

How to Uninstall the Autodesk Genuine Service on Windows

July 29, 2024
Ftr19

How to Fix Windows Cannot Read the ProductKey From the Unattend Answer File in VirtualBox

July 26, 2024
Ftr25

How to Update Windows Terminal in Windows 10/11

July 26, 2024

How to Disable The Beep Sound in WSL Terminal on Windows

July 26, 2024

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • How To Turn On uBlock Origin Extension in Chrome (2025)
  • Images Hidden Due To Mature Content Settings In CivitAI
  • Azure OpenAI vs Azure AI Hub, How to Choose the Right One for Your Needs

Categories

Stay in Touch

Discord Server

Join the Discord server with the site members for all questions and discussions.

Telegram Community

Jump in Telegram server. Ask questions and discuss everything with the site members.

Youtube Channel

Watch more videos, learning and sharing with Leo ❤❤❤. Sharing to be better.

Newsletter

Join the movement and receive our weekly Tech related newsletter. It’s Free.

General

Microsoft Windows

Microsoft Office

VMware

VirtualBox

Technology

PowerShell

Microsoft 365

Microsoft Teams

Email Servers

Copyright 2025 © All rights Reserved. Design by Leo with ❤

No Result
View All Result
  • Home
  • Linux
  • Intune
  • macOS
  • VMware
  • VirtualBox
  • Powershell
  • Windows 10
  • Windows 11
  • Microsoft 365
  • Microsoft Azure
  • Microsoft Office
  • Active Directory

No Result
View All Result
  • Home
  • Linux
  • Intune
  • macOS
  • VMware
  • VirtualBox
  • Powershell
  • Windows 10
  • Windows 11
  • Microsoft 365
  • Microsoft Azure
  • Microsoft Office
  • Active Directory