Join us for an expert-led overview of the tools and concepts you'll need to pass exam PL-300. The first session starts on June 11th. See you there!
Get registeredPower BI is turning 10! Let’s celebrate together with dataviz contests, interactive sessions, and giveaways. Register now.
Hi,
I re-published my report earlier today and noticed the following error message, does anyone know what it means and what I can do to fix it?
Thanks
Solved! Go to Solution.
So the problem is fixed, the solution was something completely different, I had to re-enter my credentials (Edit Credentials option) and reselect my Microsoft Account and, after doing so the report refreshed at the first attempt. Thanks everyone for your help and advice on this!
So the problem is fixed, the solution was something completely different, I had to re-enter my credentials (Edit Credentials option) and reselect my Microsoft Account and, after doing so the report refreshed at the first attempt. Thanks everyone for your help and advice on this!
Hi @ArchStanton ,
The error you’re seeing happens when your organization’s Azure AD Conditional Access Policy requires your device to be compliant—usually by enrolling it in a device management system like Microsoft Intune. If your device isn’t compliant, Power BI can’t use OAuth tokens to refresh or access the data, which leads to this error.
Here’s how you can fix it:
If you can’t enroll your device, another option is to set up an On-Premises Data Gateway, which can bypass these device restrictions by running the refresh through a compliant gateway server.
If you need step-by-step help with device enrollment or setting up the gateway, let me know your environment and I can point you to the right resources. This issue is pretty common when organizations tighten security, so you’re definitely not the only one running into it.
Hi, thanks for you reply.
My IT department has made everything compliant but the refreshes are still not working so they suggested I go into the office tomorrow and they will re-synch again - hopefully being directly connected to the network will make this work.
Lets see what happens!
Hi @ArchStanton
Your organization’s Azure AD Conditional Access Policy requires that the device used to access the data is compliant (typically enforced through an MDM solution like Microsoft Intune).
Your current device is not compliant, so authentication is blocked for Power BI dataset refreshes.
Resolutions:
1.Ensure your device is enrolled and marked as compliant in Microsoft Intune or the MDM system used by your organization.
🌟 I hope this solution helps you unlock your Power BI potential! If you found it helpful, click 'Mark as Solution' to guide others toward the answers they need.
💡 Love the effort? Drop the kudos! Your appreciation fuels community spirit and innovation.
🎖 As a proud SuperUser and Microsoft Partner, we’re here to empower your data journey and the Power BI Community at large.
🔗 Curious to explore more? [Discover here].
Let’s keep building smarter solutions together!
Hi, thanks for you reply.
My IT department has made everything compliant but the refreshes are still not working so they suggested I go into the office tomorrow and re-synch - hopefully being directly connected to the network will make this work.
Lets see what happens!
Hi @ArchStanton ,
Thanks for reaching out to the Microsoft fabric community forum.
There are two ways to fix this issue. The best option is to make your device compliant by enrolling it in Intune. Just go to Settings > Accounts > Access work or school, select your work account, click Info, and choose Enroll only in device management. Follow the steps and make sure your device meets your company's security policies (like antivirus, encryption, etc.). Once done, try publishing or refreshing the report again.
If that’s not possible, the alternative is to use an On-Premises Data Gateway. Set it up with a compliant account or service principal that isn’t blocked by Conditional Access. Then, in Power BI Service, link your dataset to this gateway under Settings > Gateway Connection, and schedule your refresh through it.
Reference Links -
Conditional Access: Require compliant device
This explains how Conditional Access can enforce device compliance before allowing access.
https://learn.microsoft.com/en-us/azure/active-directory/conditional-access/concept-conditional-acce...
MSAL Conditional Access Claims and Error AADSTS53000
How to handle Conditional Access claims challenges
https://learn.microsoft.com/en-us/entra/identity-platform/claims-challenge
This page provides official guidance on how to handle OAuth claims challenges related to Conditional Access, such as device compliance requirements, MFA, or re-authentication.
Intune Device Compliance Policies Setup
Create and assign compliance policies in Microsoft Intune
https://learn.microsoft.com/en-us/mem/intune/protect/device-compliance-get-started
This documentation walks you through creating and deploying compliance policies that ensure devices meet your organization's security standards.
Install and configure an on-premises data gateway
For bypassing device restrictions using a secure gateway.
https://learn.microsoft.com/en-us/data-integration/gateway/service-gateway-install
If the response has addressed your query, please Accept it as a solution and give a 'Kudos' so other members can easily find it
Best Regards,
Sreeteja.
Community Support Team
Hi, thanks for you reply.
My IT department has made everything compliant but the refreshes are still not working so the suggested I go into the office tomorrow and re-synch - hopefully being directly connected to the network will make this work.
Lets see what happens!
Hi @ArchStanton,
Thanks for the update. Hopefully, the on-site network connection will resolve the refresh issues. Let me know how it goes after the re-sync.If the problem persists, we can explore additional troubleshooting steps. Appreciate your patience and effort in getting this sorted!
If the response has addressed your query, please Accept it as a solution and give a 'Kudos' so other members can easily find it
Best Regards,
Sreeteja.
Community Support Team
Even though the error appears in Power BI, it's caused by Azure Active Directory Conditional Access policies applied at the organizational level not by Power BI itself
Power BI uses OAuth tokens to access data (like SQL, SharePoint, etc.). If Conditional Access requires a compliant device to issue or refresh that token, and your device isn’t compliant, the token fails leading to this exact error in Power BI.
To resolve it:
User | Count |
---|---|
84 | |
80 | |
70 | |
47 | |
43 |
User | Count |
---|---|
108 | |
54 | |
50 | |
40 | |
40 |