Join on prem computers to azure ad

Kak Tak 6 Reputation points

Hi all,

We have computers that are joined to local AD and we would like to join them even in azure AD. What we need to do?

Second question: Is there an option to mass add computers to azure ad without manually login to each one with user creds. Keep in mind that all computers must be joined to local domain as well.

Azure Active Directory
Azure Active Directory
An Azure enterprise identity service that provides single sign-on and multi-factor authentication.
14,619 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. soumi-MSFT 11,651 Reputation points Microsoft Employee

    @KakTak-8938, Thank you for reaching out. Yes you can keep the machines (Windows 10) in both states that is joined to local AD as well as joined to Azure AD. This type of setup is referred to as Hybrid AAD join scenario. In this case your machine remains joined to the on-prem AD as well as to Azure AD and here the machine join to azure AD happens in machine's context and not in user's context. Hence after your machines get joined to Azure AD, your cloud users can simply login using their upn and experience a whole new SSO experience.

    You can refer to the following articles below for a proper deployment:

    1. Plan the hybrid AAD join implementation:
    2. Controlled validation of Hybrid AAD join:
    3. Configure Hybrid AAD join for managed domains:
    4. Configure Hybrid AAD join for federated domains:
    5. First Run Experience with Hybrid AAD joined machines:

    Hope this helps.

    Do let us know if this helps and if there are any more queries around this, please do let us know so that we can help you further. Also, please do not forget to accept the response as Answer; if the above response helped in answering your query.

    1 person found this answer helpful.