You'll noticeTier: how much it should matter to you
1Useful: my rating, 1 to 5
1Signal: worth watching, 1 to 5
AuthArea: what it touches
ImprovementsKind: in v2.1.281,
ImprovementsSection of the release
What
The error messages around trusted devices are clearer:
no_device_proof now explains that an organization that does not require trusted devices provides no trusted-device token.
trusted_devices_off is a new reason.
enrollment_paused is a new reason. Its message says there is no trusted-device token here and that enrolling new trusted devices is temporarily disabled, so you should try again later.
Why
If a trusted-device check fails, the message now says why: your organization does not use trusted devices, or enrollment is paused for now and a later retry may work.