How to automatically join Windows AutoPilot devices to On-Premises AD (Hybrid Azure AD Join)
This long awaited feature was introduced by Microsoft in okt. 2018 on Ignite. Now we can deploy a Windows 10 1809 or later via AutoPilot and automalically let that Windows 10 device make a on-prem domain join and then it transforms into a hybrid Azure AD joined device, how cool is that?!
In this scenario we will setup a Intune connector towords our Server 2016 on-Prem Active directory and Intune. Our test client will be a Windows 10 1809.
The Windows 10 devices to be enrolled must also:
Be running on Windows 10 1809 or later.
Have access to the internet.
Have access to an On-prem Active Directory domain controller, so it must be connected to the organization’s network.
The device must could resolve the DNS records for the AD domain and the AD domain controller, and with the on-prem domain controller to authenticate the user. VPN connection not supported at this time.
You should be able to ping the domain controller of the domain you are trying to join.
Make sure that the environment are Hybrid Azure Ad join configured
Read how to setup a Hybrid AAD join environment here:
Now that last thing we need to do is to assign the profile to a group (We use the dynamic group created earlier that includes our “upcomming AutoPilot units”) :
Note:All new AutoPilot devices deployed will now be domain joined on your on-prembecause they automatically becomes member of the group “AutoPilot ADD Hybird Joined Devices”
Now try to make a AutoPilot deployment and check that “OOBE” experience and enrollment status page (ESP) beeing presented:
Note:You can hit Shift +F10 to get a command prompt and try to see if you can ping the domain controller of the domain you whould like to join.If you cannot ping the DC the “Setting up the device screen will timeout with a “error 80070774” after a while.
The Windows 10 device will also be located in the newly created AutoPilot OU in our on-prem Active directory:
Now we can login to our domain joined AutoPilot deployed Windows 10 device: