Hybrid Azure AD Join Issue

karthik palani 1,036 Reputation points
2021-01-13T11:59:11.433+00:00

Hi All,

I am trying to enable Co-Management for SCCM & Intune. The Hybrid setup is already enabled in AD connect almost 1 year before

From Azure AD users are synced from AD connect but when i verified the devices most are azure AD registered (most are VPN and Internet connected users) and few are Hybrid AD (mostly intranet users who are connected actively)

  • I tried removing the devices from Azure AD and resynced for VPN users. Device got reflected but under registration it is PENDING.
  • Also another concern is most of the users password are not in sync. One of the VPN user using the old password though he has new password and when he tries new password it doesn't logon to his laptop.

Need your advice on where to start checking. Is it ADFS, AD connect level issue. Please suggest

Azure Migrate
Azure Migrate
A central hub of Azure cloud migration services and tools to discover, assess, and migrate workloads to the cloud.
927 questions
Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
{count} votes

2 answers

Sort by: Most helpful
  1. Nick Hogarth 3,521 Reputation points Volunteer Moderator
    2021-01-13T21:29:45.373+00:00

    Are you using ADFS or password sync? (based on your question "Is it ADFS" and that you said the passwords aren't syncing)

    Also what version of Windows 10 is it that are stuck on registered? See https://learn.microsoft.com/en-us/azure/active-directory/devices/hybrid-azuread-join-plan#handling-devices-with-azure-ad-registered-state


  2. karthik palani 1,036 Reputation points
    2021-01-24T05:16:27.887+00:00

    Hi All,

    During my investigation i found that

    • AD computer account - Published Certificate is expired. Will this cause issue please
    • Also in ADFS server - Device registration service is stopped - Is it needed
    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.