how to enable hybrid azure ad join without ad connect sync when Organizational Unit is not in sync scope of AADC, still can we make device as Hybrid Azure AD join

Kumkuse 21 Reputation points
2024-03-14T04:33:06.28+00:00

I wanted to enable hybrid azure ad join without ad connect sync when Organizational Unit is not in sync scope of AADC, still can we make device as Hybrid Azure AD join.

I am able to check the documentations where sync is necessary/required . can the device can be joined as Hybrid Azure AD Join with out sync scope.

Please assist me on this issue.

Microsoft Security | Microsoft Entra | Microsoft Entra ID
Windows for business | Windows Client for IT Pros | User experience | Other
Microsoft Security | Microsoft Entra | Other
{count} votes

2 answers

Sort by: Most helpful
  1. Akhilesh Vallamkonda 15,320 Reputation points Microsoft External Staff Moderator
    2024-03-14T13:28:43.03+00:00

    Hi @Kumkuse

    Thank you for reaching out to the community forum!

    For your query I understand that you would like to know is it possible to enable hybrid Microsoft Entra ID join without AD Connect sync when the organizational unit is not in the sync scope of AADC.

    To answer your question, it is not possible to enable Hybrid Microsoft Entra ID join without Microsoft Entra Connect sync, because hybrid Microsoft Entra ID join relies on Microsoft Entra Connect to synchronize computer objects from the on-premises Active Directory to Microsoft Entra ID.

    Without synchronization, the computer object will not be available in Microsoft Entra ID, and the device cannot be Hybrid Microsoft Entra ID joined.

    To enable Hybrid Microsoft Entra ID join, it’s necessary to configure Microsoft Entra Connect to synchronize the computer objects from the on-premises Active Directory to Microsoft Entra ID.

    Hope this helps. Do let us know if you any further queries.

    Thanks,
    Akhilesh.

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.


  2. Thameur-BOURBITA 36,261 Reputation points Moderator
    2024-03-14T14:53:56.7833333+00:00

    Hi @Kumkuse

    I am able to check the documentations where sync is necessary/required . can the device can be joined as Hybrid Azure AD Join with out sync scope.

    The synchronization of computer object is required for hybrid join. We cannot talk about hybrid join without the synchronization of computer object through Entra connect For more information please read the microsoft article here : Configure Microsoft Entra hybrid join


    Please don't forget to accept helpful answer


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.