A cloud-based identity and access management service for securing user authentication and resource access
Thanks Jimmy, it definitely helps!
In the link you referenced it states - "Hybrid Azure AD join isn't supported for Windows Server running the Domain Controller (DC) role."
From that I assume it just won't hybrid join the Domain Controller, even if it is in the AADC scope and won't cause a problem?
For testing the hybrid join, I understand it's an option, but potentially what issues might that flag up? Without targeting a subset, the worst case is that devices won't successfully Hybrid Join? I assume? Plus I guess I could manage the targeting by changing the OU Filtering in the AADC scope to exclude devices except those I want to hybrid join?