Intune - Windows 10 EAS Device - Howto Azure AD Join

Fred Eric S 51 Reputation points
2021-03-23T14:30:50.07+00:00

Hi Everyone,

I currently have a case which I can't try in my environment as I don't have an Exchange Server running on-prem. The case is as follows - an on-prem Exchange is running and an Intune Active Sync Connector was previously configured (I know it is depricated since 07/2020) and has been successfully syncing devices to Azure/Intune. These devices are of course, Azure AD Registered. Intune wasn't used for device management and is now being configured. We wanted to properly onboard an existing device without too much impact to the user, so we removed the EAS/MDM device object in Intune and the Azure AD Registered device object. Then, we had the user join his device via Settings - Accounts - Access Work or School - Connect. This works, however, the device still appears as Azure AD Registered and EAS/MDM in Intune. My understanding until now was, if I join the device in the aforementioned way, it would appear as Azure AD Joined in Azure and as EAS/MDM in Intune, bu this isn't the case.

How would I need to proceed, if I wanted to have the device properly join as AAD Joined? Would I have to remove the EAS device entry from Exchange? Would that have any lasting impact on the user? As far as I understand, EAS should "see" the device is managed by Intune, so it shouldn't be a problem, right?

Cheers,

Fred

Microsoft Intune Configuration
Microsoft Intune Configuration
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Configuration: The process of arranging or setting up computer systems, hardware, or software.
1,708 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,305 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Jason Sandys 31,151 Reputation points Microsoft Employee
    2021-03-23T20:14:18.477+00:00

    it would appear as Azure AD Joined

    No, what you've described is still a user centric AAD registration.

    Are the devices in question already (on-prem) AD domain joined?

    0 comments No comments

  2. Crystal-MSFT 42,631 Reputation points Microsoft Vendor
    2021-03-24T01:36:28.307+00:00

    @Fred Eric S , For our issue, I would like to confirm if we enter the Azure AD user email address under "Email address" after we click "Connect". If yes, it will be Azure AD registered. To do Azure AD join, we can choose "Join the device to Azure Actives Directory ".
    80911-image.png
    Please try the above suggestion. if there's any update, feel free to let us know.


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.