Device shows in Intune as Azure AD Joined but MDM is NONE

Seb Z 1 Reputation point
2022-09-13T10:11:42.847+00:00

As in the subject.

How can I add it back so it's managed by Intune?

We only have Azure AD.

Thanks!

Microsoft Security | Intune | Other
{count} votes

2 answers

Sort by: Most helpful
  1. Crystal-MSFT 53,986 Reputation points Microsoft External Staff
    2022-09-14T01:00:42.963+00:00

    @Seb Z , From your description, it seems you are enrolling device into Intune. But it seems the device is only Azure AD joined. Not enroll into Intune. If there's any misunderstanding, please let us know.

    To troubleshoot our issue, please check the following information:

    1. Please check if the user we used to enroll the device has Microsoft Intune license and Azure AD Premium license assigned.
    2. Please check the automatic enrollment configuration to see if the "MDM user scope" is set as ALL and if the "MAM user scope is set none".
    3. Did we get any error when we enroll the device?
    4. How many devices are affected? What are the platform of them? What enrollment method we used?
      https://learn.microsoft.com/en-us/mem/intune/enrollment/device-enrollment

    Please check the above information and if there's any update, feel free to let us know.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    3 people found this answer helpful.

  2. Crystal-MSFT 53,986 Reputation points Microsoft External Staff
    2022-09-15T03:21:42.273+00:00

    @Seb Z , Thanks for your reply. From your description, I know the device is Azure AD registered. And both MDM user scope and MAM user scope are set all. MAM user scope will take precedence. The device will not be MDM enrolled.
    241282-image.png
    https://learn.microsoft.com/en-us/mem/intune/enrollment/windows-enroll#configure-automatic-mdm-enrollment

    To confirm this, please go to the affected device, Settings->Accounts->Access work or school, check if there's any account there. Click info button of the account and see what is the Management Server Address? Is it one with the following address?
    241301-image.png

    If yes, we need to disconnect it and connect again, you can choose "Join the device to Azure Active Directory", with automatic enrollment configured. It will auto enroll into Intune MDM.
    241187-image.png
    https://support.microsoft.com/en-us/account-billing/join-your-work-device-to-your-work-or-school-network-ef4d6adb-5095-4e51-829e-5457430f3973

    Hope it can help.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    1 person found this answer helpful.

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.