azure ad registered device

testuser7 286 Reputation points
2022-09-08T17:43:45.763+00:00

Hello,

If I register my organization's hybrid-joined device into some 3rd party tenant, when I query this device object in this 3rd party tenant I want to see some attribute filled with information about my org's tenant ( where it is hybrid-joined)

Is it possible ?

As you can guess, I want to make some CA-policy with the help of device-filters around that attribute in this 3rd party tenant.

Thanks.

Microsoft Security | Microsoft Entra | Microsoft Entra ID
{count} votes

3 answers

Sort by: Most helpful
  1. Givary-MSFT 35,626 Reputation points Microsoft Employee Moderator
    2022-09-09T09:23:21.04+00:00

    @testuser7 Did a quick repro at my end, at first place you wont be able to register your hybrid azure ad device to a different tenant, on trying the same you will get the error like below.

    239406-test-device-1.jpg

    If a Device A is hybrid joined to Tenant A, wont be able to register to Tenant B.

    Let me know if you have any further questions.

    0 comments No comments

  2. testuser7 286 Reputation points
    2022-09-09T14:07:27.493+00:00

    @Givary-MSFT

    you need to relook your set up.

    I have AAD-registered 100 windows 10 devices to Tenant B which are ALREADY hybrid joined to tenant A


  3. testuser7 286 Reputation points
    2022-09-12T13:05:21.133+00:00

    my friend, you can always register the device is more than one tenant.

    I can see all those registration in dsregcmd /status

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.