"Step-by-Step Guide to Configure Hybrid AD Join for Your Organization"
Sign in to the Intune Admin Center:
Go to the Microsoft Endpoint Manager admin center.
Create a new Device Configuration Profile:
Navigate to Devices > Configuration profiles > Create profile.
Choose the Platform and Profile type:
Platform: Windows 10 and later.
Profile type: Templates > Domain Join.
Configure the Profile Settings:
Join Azure AD as: Hybrid Azure AD joined.
Computer Name Prefix: Enter a prefix for the computer names if desired.
Domain Name: Enter your on-premises domain name.
Organizational Unit: Specify the OU where the computer accounts will be created.
Assign the Profile:
On the Assignments page, select the groups that should receive this profile.
Review and Create the Profile:
Review your settings and click Create.
Step 4: Verify the Configuration
Check Device Enrolment:
Ensure that the devices in the specified groups are getting the policy and are being registered as hybrid Azure AD joined devices.
Verify in Azure AD:
Go to the Azure AD portal.
Navigate to Azure Active Directory > Devices > All devices.
Ensure the devices are listed as Hybrid Azure AD joined.
Additional Considerations
Network Requirements: Ensure the devices have access to both your on-premises domain controllers and the internet to reach Azure AD.
Troubleshooting: Use tools like dsregcmd to check the status of device registration on Windows 10 devices.
Following these steps, you can successfully configure a Hybrid Azure AD join configuration profile in Intune, allowing your devices to benefit from both on-premises and Azure AD services.









Comments