how to enable hybrid azure ad join without ad connect sync when Organizational Unit is not in sync scope of AADC, still can we make device as Hybrid Azure AD join

Kumkuse 21 Reputation points
2024-03-14T04:33:06.28+00:00

I wanted to enable hybrid azure ad join without ad connect sync when Organizational Unit is not in sync scope of AADC, still can we make device as Hybrid Azure AD join.

I am able to check the documentations where sync is necessary/required . can the device can be joined as Hybrid Azure AD Join with out sync scope.

Please assist me on this issue.

Windows
Windows
A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.
4,724 questions
Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,389 questions
{count} votes

2 answers

Sort by: Most helpful
  1. Akhilesh 4,615 Reputation points Microsoft Vendor
    2024-03-14T13:28:43.03+00:00

    Hi @Kumkuse

    Thank you for reaching out to the community forum!

    For your query I understand that you would like to know is it possible to enable hybrid Microsoft Entra ID join without AD Connect sync when the organizational unit is not in the sync scope of AADC.

    To answer your question, it is not possible to enable Hybrid Microsoft Entra ID join without Microsoft Entra Connect sync, because hybrid Microsoft Entra ID join relies on Microsoft Entra Connect to synchronize computer objects from the on-premises Active Directory to Microsoft Entra ID.

    Without synchronization, the computer object will not be available in Microsoft Entra ID, and the device cannot be Hybrid Microsoft Entra ID joined.

    To enable Hybrid Microsoft Entra ID join, it’s necessary to configure Microsoft Entra Connect to synchronize the computer objects from the on-premises Active Directory to Microsoft Entra ID.

    Hope this helps. Do let us know if you any further queries.

    Thanks,
    Akhilesh.

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.


  2. Thameur-BOURBITA 32,496 Reputation points
    2024-03-14T14:53:56.7833333+00:00

    Hi @Kumkuse

    I am able to check the documentations where sync is necessary/required . can the device can be joined as Hybrid Azure AD Join with out sync scope.

    The synchronization of computer object is required for hybrid join. We cannot talk about hybrid join without the synchronization of computer object through Entra connect For more information please read the microsoft article here : Configure Microsoft Entra hybrid join


    Please don't forget to accept helpful answer