Hi guys, this article and the comments are great. I'm a sysadmin and have been teaching myself Intune and Autopilot. It's perfect for any new laptops we get, now that we are on 365. There's no purpose for them to join our on prem domain. I've even got apps and policies setup, it's neat to see it all flow to a laptop after signing in with my 365 creds.
Desktops are a different story. Our current setup is that access to our network has to be authenticated with our domain. My net admin mentioned Palo may have something to interact with AAD but we are looking into it. Is there a solution you know of where we can convert existing ADDS only PCs and put all new PCs on AAD and still have 802.1x security to our LAN? Also we have an on-prem print server with a ton of printers, how does this factor in?