Azure Hybrid joind and compliant device

Irin Sultana 371 Reputation points
2023-01-26T23:33:01.05+00:00

Hi,

I want to join my devices as hybrid join. Currently, my devices are azure registered and domain joined. I aslo another issue for device compliant. Some of my device are showing non compliant status. Could anyone help me to solve this issue?

Thank You!

Irin Sultana

Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,322 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,454 questions
0 comments No comments
{count} votes

Accepted answer
  1. Givary-MSFT 27,796 Reputation points Microsoft Employee
    2023-01-31T03:45:51.4833333+00:00

    @Irin Sultana Thank you for reaching out to us, As I understand you wanted to join devices as hybrid azure ad join. Refer to this Configure hybrid Azure AD join how this can be achieved.

    Also refer to this Handling devices with Azure AD registered state as it would help you if the devices are showing in dual state.

    Refer to this QnA post on how to troubleshoot Non-Compliant device issue

    [https://learn.microsoft.com/en-us/answers/questions/985761/azure-active-directory-non-compliant-devices

    If this doesnt help to resolve non-compliant device issue, let me know we can connect offline and troubleshoot further on this.

    1 person found this answer helpful.

1 additional answer

Sort by: Most helpful
  1. Akshay-MSFT 16,026 Reputation points Microsoft Employee
    2023-01-30T08:26:11.38+00:00

    Hello @Irin Sultana ,

    If you are looking to apply the MDM policy then devices needs to be synced from setting > Accounts> Access work or School > select the account and hit Info > Sync :

    User's image

    • Within Azure AD you must be able to see 2 device entries the one with Hybrid AD join would remain and the AAD registered will be removed of its own down the line. User's image

    If the issue still persist kindly validate the following:

    • If the devices were on-prem AD joined before you enabled MDM enrollment via GPO?
    • If the devices were On-prem AD joined and AAD registered via BYOD enrollment before you applied GPO? Please do let me know if you have any further queries in the comments section.

    Thanks,

    Akshay Kaushik

    Please "Accept the answer", "Upvote" and share your feedback (Yes/No) if the suggestion works as per your business need. This will help us and others in the community as well.