Can I add my intune enrolled device into my work domain?

Sabur Mirza 20 Reputation points
2023-08-16T16:02:38.91+00:00

I am currently trying to implement Windows Intune for my company. My question is, the devices that I have enrolled into Intune, can I add them into my work domain through intune without me having to going into the client machine's settings and manually having to add the domain, and if so how would I do it?

Thanks

Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,570 questions
Microsoft Entra
Microsoft Entra
A group of Microsoft multicloud identity and access solutions.
2,551 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
24,209 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Dillon Silzer 57,711 Reputation points
    2023-08-16T16:09:18.3633333+00:00

    First, you cannot force someone into your domain unless you have enrolled the device or they choose to add their work account to their device.

    You have a couple of options:

    #1 Get into Windows Autopilot, which gives you full control over your devices within your environment:

    https://learn.microsoft.com/en-us/autopilot/windows-autopilot

    #2 Educate your users to Add work or school account to their device:

    https://support.microsoft.com/en-us/account-billing/join-your-work-device-to-your-work-or-school-network-ef4d6adb-5095-4e51-829e-5457430f3973


    If this is helpful please accept answer.


  2. Lu Dai-MSFT 28,486 Reputation points
    2023-08-17T02:29:35.5866667+00:00

    @Sabur Mirza Thanks for posting in our Q&A.

    A device joined to on-prem domain, and both joined to AAD means that it is a hybrid azure AD joined device. Currently, your devices are purely AAD joined. AAD joined cannot be changed to hybrid-AAD unless you use autopilot with hybrid AAD join profile or manually join the devices to on-prem domain.

    To summarize: we can't directly convert.

    Based on my understanding, it is suggested to remove the device from the existing Azure AD and then domain join them and let hybrid take over, or I would just recommend wiping them and do the hybrid join through autopilot.

    https://learn.microsoft.com/en-us/autopilot/windows-autopilot-hybrid


    If the answer is the right solution, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.