AZURE AD - registering devices

Luis Bernardo 61 Reputation points
2023-07-23T17:10:58.9766667+00:00

Hi,

Anyone know the option below is greyed out ?

User's image

Thank you !

Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,210 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
18,718 questions
{count} votes

Accepted answer
  1. Lu Dai-MSFT 28,241 Reputation points
    2023-07-24T02:11:03.4666667+00:00

    @Luis Bernardo Thanks for posting in our Q&A.

    This setting is used to allow users to register their devices with Azure AD. Enrollment with Microsoft Intune or Mobile Device Management for Office 365 requires Device Registration. If you have configured either of these services, “ALL” will be selected, and the button will be disabled.

    Currently, for tenants using the 1911 service release and later, the MDM authority is automatically set to Intune. So, this setting "Users may register their devices with Azure AD" is automatically set to "ALL".

    Hope it will clarify something.


    If the answer is the right solution, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

3 additional answers

Sort by: Most helpful
  1. Vahid Ghafarpour 15,090 Reputation points
    2023-07-23T18:06:26.68+00:00

    It is available in Azure AD Premium P1 and P2 editions, but not in the Free or Basic editions

    0 comments No comments

  2. Sandeep G-MSFT 13,496 Reputation points Microsoft Employee
    2023-07-24T10:38:49.6766667+00:00

    @Luis Bernardo

    You must be assigned one of the following roles to view device settings in the Azure portal:

    Global Administrator

    Global Reader

    Cloud Device Administrator

    Intune Administrator

    Windows 365 Administrator

    Directory Reviewer

    You must be assigned one of the following roles to manage device settings in the Azure portal:

    Global Administrator

    • Cloud Device Administrator

    Users may register their devices with Azure AD: You need to configure this setting to allow users to register Windows 10 or newer personal, iOS, Android, and macOS devices with Azure AD. If you select None, devices aren't allowed to register with Azure AD. Enrollment with Microsoft Intune or mobile device management for Microsoft 365 requires registration. If you've configured either of these services, ALL is selected, and NONE is unavailable.

    Let me know if you have any further questions on this.

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    0 comments No comments

  3. Luis Bernardo 61 Reputation points
    2023-07-27T12:48:00.0666667+00:00

    Thank you all for your answers

    0 comments No comments