Best practice implementing Intune

andreas bright 521 Reputation points
2020-09-05T20:34:40.517+00:00

Hi,

We have an environment with local domain controllers, some clients are added to the local domain and some are not, they are just added to the tenant. Most of them are Azure AD registered. We would like to now go all Microsoft 365 without any local domain.
How would you go forward, to have every device Azure AD Joined ?

Thanks for reply

/Andy

Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
2,100 questions
No comments
{count} votes

Accepted answer
  1. Nick Hogarth 3,411 Reputation points Microsoft MVP
    2020-09-05T23:39:07.467+00:00

    You can reimage the devices and use Autopilot to get the devices to be Azure AD Joined and enrolled into Intune. If you don't want to reimage the existing on-prem AD joined devices , you can use a GPO to enroll them into Intune.

    No comments

2 additional answers

Sort by: Most helpful
  1. CiciWu-MSFT 1,166 Reputation points
    2020-09-07T02:49:06.62+00:00

    Please understand whether Azure AD registered or Azure AD joined depends on account type not the enrollment type.
    For Azure AD registered, it means devices that are Azure AD registered are typically personally owned or mobile devices, and are signed in with a personal Microsoft account or another local account.
    o Windows 10
    o iOS
    o Android
    o MacOS
    For Azure AD joined, it means Devices that are Azure AD joined are owned by an organization, and are signed in with an Azure AD account belonging to that organization. They exist only in the cloud.
    o Windows 10
    o Windows Server 2019 Virtual Machines running in Azure (Server core is not supported)
    Reference: https://learn.microsoft.com/en-us/azure/active-directory/devices/overview


    If an Answer is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    No comments

  2. andreas bright 521 Reputation points
    2020-09-06T08:15:50.667+00:00

    Hi,

    Thanks for reply. If I use a GPO they will still be AD registered and not AD Joined ?

    /Andy