Azure AD registered devices not in MDM intune

Anzy21 21 Reputation points
2022-07-18T13:37:42.483+00:00

Hi I have a question regarding Azure AD registered devices not being shown in Intune

1) the user scope is set to all
2) The only device that is listed under MDM Intune and is Azure AD registered is a virtual machine which is quite odd.

Microsoft Security | Intune | Enrollment
0 comments No comments
{count} votes

Accepted answer
  1. Crystal-MSFT 53,991 Reputation points Microsoft External Staff
    2022-07-19T01:18:29.237+00:00

    @Anzy21 , For your issue, I would like to confirm if you means when we do Azure AD register, and the user scope is set to all. the device did not enroll into Intune automatically? If there's any misunderstanding, feel free to let us know.

    Firstly, we need to confirm which user scope we set for all? did we set the "MDM user scope" as All and "MAM user scope" as None. If not, change to it.
    222062-image.png

    I notice there's only one virtual machine can enroll into Intune MDM. What are the other not working devices? Are these devices with a supported OS version?
    https://learn.microsoft.com/en-us/mem/intune/fundamentals/supported-devices-browsers

    Meanwhile, we can go to Event Viewer, checking the log under Applications and Services Logs/Microsoft/Windows/DeviceManagement-Enterprise-Diagnostics-Provider/Admin :to see if there's any error with the enrollment. Here is a link to troubleshoot windows device enrollment in intune for the reference:
    https://learn.microsoft.com/en-us/troubleshoot/mem/intune/troubleshoot-windows-enrollment-errors#auto-mdm-enroll-failed

    Please check the above information and if there's any update, feel free to let us know.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


1 additional answer

Sort by: Most helpful
  1. Jason Sandys 31,411 Reputation points Microsoft Employee Moderator
    2022-07-18T14:19:58.763+00:00

    First, these answers assume Windows is the target OS.

    Is this a BYOD scenario? AAD registration of Windows endpoints is generally meant only for BYOD scenarios. Anything else and you should strongly consider either hybrid Azure AD join or [full] Azure AD join.

    Have you enabled auto-enrollment (see https://learn.microsoft.com/en-us/mem/intune/enrollment/quickstart-setup-auto-enrollment)?

    Are your users licensed for Azure AD P1 (or above)?

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.