Hey team (or anyone really),
What I am missing is this new enrollment process is a way to filter for devices when they are in the "inbetween" state (user affinity established but not fully AAD Registered). I am trying to figure out a way to use this new process to do a 'staged' rollout.
What I am trying to achieve is the following:
- Go through Set up Assistant with Modern Authentication until you reach the Home Screen [user affinity established]
- Push only Device targeted policies and only device targeted apps (i.e. Company Portal/Authenticator) [do not push user targeted policies/apps]
- Go through Company Portal user registration [AAD Registration completed]
- Only after this is finished, start pushing user targeted policies/apps
Is there a way to retrieve device status for the devices when the user affinity is established, but full AAD Registration is not yet completed?