Thank you jlou65535 DavidBelanger
I see Windows 11 devices in Azure AD (devices)
I create and configure:
- Storage account
- Azure AD authentication for storage account
- Azure AD service principal & APP
- Set API permissions
- Configure Azure Files share
- Share level permissions
But all that is about azure files share...
The problem is when I try to get a kerberos ticket from Azure AD on any Windows 11 Azure AD-Join PC with the registry key or group policy (CloudKerberosTicketRetrievalEnabled) and using:
- dsregcmd /refreshprt
- Lock and unlock user session
- klist purge
- klist get krbtgt
Current LogonId is 0:0x527d6
Error calling API LsaCallAuthenticationPackage (GetTicket substatus): 0x520
klist failed with 0x8009030e/-2146893042: No credentials are available in the security package