Add to Intune AzureAD Joined mobile device

Konstantin Terekhin 1 Reputation point
2020-11-18T09:35:40.243+00:00

Hello!
Our organization has enabled the MDM autoenrollment function when joining Azure AD (if a user in the group).
I connected the Windows mobile device to Azure AD, but the user was not in the group for auto enrollment and now he is joined to Azure AD, but the device is not added to the Intune.
Please tell me what are the ways to add this device to the Intune?

40711-chrome-ipa9hkic1y.png

Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,282 questions
0 comments No comments
{count} votes

3 answers

Sort by: Most helpful
  1. Timmy Andersson 411 Reputation points MVP
    2020-11-18T12:00:10.543+00:00

    If its just one or a few devices, the simplest way is to manually turn on the local group policy referenced here :

    https://learn.microsoft.com/en-us/windows/client-management/mdm/enroll-a-windows-10-device-automatically-using-group-policy#configure-the-auto-enrollment-group-policy-for-a-single-pc

    If you have a lot of devices its a bit tricky but I wrote a blog post on how it can be done using a provisioning package:

    https://timmyit.com/2018/12/17/mdm-join-an-already-azure-ad-joined-windows-10-pcs-to-intune-with-a-provisioning-package/

    Hope this helps,

    1 person found this answer helpful.

  2. Lu Dai-MSFT 28,366 Reputation points
    2020-11-19T04:35:32.473+00:00

    @Konstantin Terekhin From your description, my understanding is that this device has been added to Azure AD, but it hasn't enrolled in intune. If there is any problem with my understanding, please let me know.

    To clarify our issue, could you check the following information:

    1. Please check the windows mobile version to see if it is in the supported OS list in the following article:
      https://learn.microsoft.com/en-us/mem/intune/fundamentals/supported-devices-browsers
    2. Please check if the MAM user scope is set to "None" . If no, please let us know how is we set this. We can see more details about setting MDM and MAM scope in the following link:
      https://learn.microsoft.com/en-us/mem/intune/enrollment/windows-enroll#enable-windows-10-automatic-enrollment

    However, if the above requirement are all met, we can go to Microsoft Endpoint Manager admin center->Troubleshooting+support, select the user and check if there’s enrollment failures .

    Please check the above information and if there’s anything unclear, feel free to let us know.


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


  3. Konstantin Terekhin 1 Reputation point
    2020-11-24T12:38:07.377+00:00

    42182-rk2.jpg

    Just made in manually in Settings

    0 comments No comments