How to enroll existing Azure AD joined devices to Intune.

Ramesh Rao 5 Reputation points
2023-03-28T10:48:25.03+00:00

I have a tenant in which Windows devices are Azure AD joined. The environment doesn't have local AD. Intune is not configured. Now I want to enroll all

the Windows devices in Intune automatically. Is there a automatic way to enroll the existing Azure AD joined windows devices to Intune?

Any suggestion would be helpful.

Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,377 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,222 questions
{count} votes

3 answers

Sort by: Most helpful
  1. Rudy Ooms 611 Reputation points MVP
    2023-03-29T08:37:09.8266667+00:00

    Hi... devices that are already AADJ are NOT going to enroll automatically in Intune. Even when you configure the MDM scope and license the users.. You will not to perform some manual labor :)

    https://call4cloud.nl/2020/05/intune-auto-mdm-enrollment-for-devices-already-azure-ad-joined/

    2 people found this answer helpful.
    0 comments No comments

  2. Pavel yannara Mirochnitchenko 12,611 Reputation points MVP
    2023-03-28T14:08:55.2366667+00:00

    You need to enable User MDM Scope for User group or for All Users. You also need to have a intune license (M365 Business premium, E3 or E5) to end user assigned. After this is done, AAD devices should be appeared in Intune automatically. Underline me, if this is not happening and I can help you forward.


  3. Crystal-MSFT 49,436 Reputation points Microsoft Vendor
    2023-03-29T01:40:19.3166667+00:00

    @Ramesh Rao, Thanks for posting in Q&A.

    Currently, to enroll existing Azure AD joined devices to Intune, the options we can try are as below which mentioned by the article Rudy provided:

    Option 1: Group Policy. (Local Group Policy)

    Option 2. Registry:

    Option 3. PowerShell

    If there are a lot such devices, I think PowerShell script maybe more suitable for you.

    Meanwhile, please ensure the Microsoft Intune licenses and Azure AD Premium license are assigned. And the MDM user scope under Automatic enrollment is set as all.

    In General, there are many enrollment methods for windows device. If you have any new device which is not Azure AD joined yet, you can choose one method according to your situation. Here is a link with the details of windows enrollment methods for your reference:

    https://learn.microsoft.com/en-us/mem/intune/fundamentals/deployment-guide-enrollment-windows

    Hope it can help.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.