Learn how to join Windows 11 to Azure AD & Intune

preview_player
Показать описание
In this episode I take a look at the numerous ways of joining and managing Windows 11 via Azure AD, with and without Intune (Endpoint Manager). We also look at the pro’s and cons of connecting your on-premises workstations as Hybrid Azure AD joined devices.The demo also includes managing devices with Azure AD dynamic device groups and conditional access. The session is time-coded for your convenience and features this weeks question time.

Time codes

00:00 Introduction
03:24 Scenario 1 Joining windows 11 to Azure AD
09:52 Scenario 2 Joining Windows 11 to Azure AD via Microsoft Intune / Endpoint Manager
16:09 Scenario 3 Connecting & managing corporate devices in Hybrid Azure AD Mode. Includes Dynamic groups & conditional access.
25:21 Question Time
27:07 Session Review
Рекомендации по теме
Комментарии
Автор

Hey Andy love your work. Doing some intune work with hybrid devices and would love an updated version of this ;)

fordhamfamilyfarms
Автор

Hi Andy, this is great man ! keep it up. Thank you for this amazing video.

NickLaoutaris
Автор

great learning videos, thanks for uploading them Andy

Elscorpio
Автор

Hi Andy. Great videos by the way. just for clarity but you absolutely can manage machines that are Azure AD Hybrid joined using Intune. We do exactly this. You need to enable a group policy that enrolls the device in MDM first. The setting is under Computer\Windows Components\MDM 'Enable Automatic MDM Enrolment using default Azure AD credentials'. Our client machines are currently joined to our on premise AD but are co managed in Intune, the idea being that we slowly but surely shift management of the endpoints away from group policy and into Endpoint Manager over time. Eventually, we'll be in a position to have all our endpoints completely cloud native ☁️

PrinceJohn
Автор

You help me and my partner so much in getting our O365 to Intune. Part of our cmmc certification and securing our tenant.

richarddinel
Автор

I'm a subscriber of your channel, and i will follow you all of the time. i do appreciate all of you videos . continue

emmanuelchrispher
Автор

I'd like to thank you for this Great efforts it's very helpful

bechirbendhief
Автор

Hope to be a guru one day thanks to you.For now just a basic computer technician.Just discover you chanels few days ago and subscribe right away.Thanks

barclayjamesharvest
Автор

Hi Andy, as always a fantastic insight.
However, i have a question that no one putting up videos of Azure AD joining seems to cover.
When you login to a device as the admin and join a standard user to AAD, it seems to then turn them into an administrator (presumably of the device they are logged in to). This can't be a good practice, surely. So how do you join them as standard users?

kevinjackson
Автор

Many Thanks for your work and affords. I've red that Hybrid Azure AD joined devices require network line of sight to your on-premises domain controllers periodically. If I've added device to on-prem AD and logged in under domain user, then that device has been given to the user who won't have that periodic connectivity. Does it mean the after some time that user won't be able to login under domain account?

rkh
Автор

The Video is indeed for me...Thank you so much for your efforts. one question from my end. How will we join AD installed in Server 2012 users and computers to AAD. are the existing Group Policies will Apply post sync to AAD? OR do we need to add different roles to Computers /Devices in AAD For Managing them.?

srikanths
Автор

Hi Andy great video. I have 40 laptops not in On-premise AD and 40 in On-premise AD. We like to use intune for mangement. How do we go from here? AD server is Windows 2022. All run win 10 and 11 (with Office 365 business premium)

Im thinking of letting all laptops join Azure AD and connect the AD server to Azure. That will give a mix of computer only in Azure AD and some in On-premiere AD, connected to Azure. Will that work? Or do we need to let all devices join on-premise AD before connevting the server to Azure

ts-cjym
Автор

Hi Andy, Great Video. My tenant has a whole bunch of devices I have connected to the basic Azure AD, I want to move them to intune. What's the process to move them from Azure to Intune?

tomirvine
Автор

Hi Andy, What is the downside of joining my 90 odd PC's and Laptops to Hybrid Azure AD? I want to get rid of Sophos Intercept X (cost) and use Microsoft Defender/Endpoint instead (that we are already licensed for), and for that we need to go down the route of enrolling in Intune. The process seems easy enough to do (via our already running AAD Connect on a DC) but you seem (from what you said at the start) to not like Hybrid joining? I am in no real hurry or any real desire to give up my On-Prem environment with all my GPO's, fileshares, SQL based accounting package etc ;)

OldFellaDave
Автор

Thank you for information Andy, it is very clear and easy to understand.

Could you please explain the difference between accessing corporate data on a personal laptop if using the Microsoft Company Portal app compared to the option within 'Settings' > Account > 'Add a Work or School account'?

kb
Автор

I enjoy your videos, I have one question: do you have to use answer files with deploying software apps in Intune?

techman
Автор

When joining AzureAD, what happens to the computer local User accounts- are they still there?

cpuuk
Автор

Hi Everyone,

I just upgraded our users from Windows 11 Home to Windows 11 Pro. Some were able to join Join this device to Azure Active Directory but two of our users don't have the Join this device to Azure Active Directory option.

devemanuelangelo
Автор

This video was meant for me no doubt about it. Our organization recently implemented a Teams VoIP telephony with yealink desk phones. The issue we are experiencing is some devices are not completing the sign up process on Company portal for intune and these are all Android OS devices. Is possible Andy to do a video on enrollment of Teams Android based desktop phones which will include MDM & Conditional access of these devices

uYahbonaEmbo
Автор

Hi Andy, what about Azure registered devices? It's registered the same way as Azure joined. I can't really see the difference. Thank you for your informative videos!

ThePatsev