Join on prem computers to azure ad

Kak Tak 11 Reputation points
2020-06-11T08:12:16.097+00:00

Hi all,

We have computers that are joined to local AD and we would like to join them even in azure AD. What we need to do?

Second question: Is there an option to mass add computers to azure ad without manually login to each one with user creds. Keep in mind that all computers must be joined to local domain as well.

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,473 questions
0 comments No comments
{count} vote

2 answers

Sort by: Most helpful
  1. soumi-MSFT 11,716 Reputation points Microsoft Employee
    2020-06-11T08:30:17.767+00:00

    @KakTak-8938, Thank you for reaching out. Yes you can keep the machines (Windows 10) in both states that is joined to local AD as well as joined to Azure AD. This type of setup is referred to as Hybrid AAD join scenario. In this case your machine remains joined to the on-prem AD as well as to Azure AD and here the machine join to azure AD happens in machine's context and not in user's context. Hence after your machines get joined to Azure AD, your cloud users can simply login using their upn and experience a whole new SSO experience.

    You can refer to the following articles below for a proper deployment:

    1. Plan the hybrid AAD join implementation: https://learn.microsoft.com/en-us/azure/active-directory/devices/hybrid-azuread-join-plan
    2. Controlled validation of Hybrid AAD join: https://learn.microsoft.com/en-us/azure/active-directory/devices/hybrid-azuread-join-control
    3. Configure Hybrid AAD join for managed domains: https://learn.microsoft.com/en-us/azure/active-directory/devices/hybrid-azuread-join-managed-domains
    4. Configure Hybrid AAD join for federated domains: https://learn.microsoft.com/en-us/azure/active-directory/devices/hybrid-azuread-join-federated-domains
    5. First Run Experience with Hybrid AAD joined machines: https://learn.microsoft.com/en-us/azure/active-directory/devices/azuread-joined-devices-frx

    Hope this helps.

    Do let us know if this helps and if there are any more queries around this, please do let us know so that we can help you further. Also, please do not forget to accept the response as Answer; if the above response helped in answering your query.

    1 person found this answer helpful.

  2. Muhammad Mughees 0 Reputation points
    2024-01-01T09:10:31.8666667+00:00

    @soumi-MSFT would be the devices wipe out or clean in this method?

    0 comments No comments