Intune auto MDM enrollment for devices already Azure AD joined

Intune auto MDM enrollment for devices already Azure AD joined

Today I spend some time to enrol existing azure ad joined devices into Intune. These devices were azure ad joined without Intune enabled/configured.

There are 2 ways to make sure the device will be registered in intune

  1. Group Policy:  Computer Configuration > Administrative Templates > Windows Components > MDM.

2. Registry:

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\MDM]
“AutoEnrollMDM”=dword:00000001
“UseAADCredentialType”=dword:00000001

When you apply these changes. You will notice a new Task is being created in the task scheduler.

Give it some time… and the device will register itself in Intune… 🙂

3 thoughts on “Intune auto MDM enrollment for devices already Azure AD joined

  1. Hi,
    thanks for your tutorial!
    Do you mean Azure AD joined or registered?
    https://media-exp1.licdn.com/dms/image/C5612AQE5lJbTDgF-Xw/article-inline_image-shrink_1000_1488/0?e=1609372800&v=beta&t=FfHYRZ9me0btNv9OnRT_1HJ4bCXb8a5G9ojexf9jLqg

    best regards
    Manuel

  2. how long does it take for the scheduled task to show up? How long on avg before it enrolls with Azure AD? Been waiting 4hrs and nothing on ether front. Running version 20H2

    1. Normally, when you configure this setting your already azure ad joined device will register itself in Intune. This setting will not join the device to azure.

Leave a Reply

Your email address will not be published. Required fields are marked *

  +  43  =  47