Ah! I understand your question now Darren Kattan, thank you. :-)
In our environment we definitely do not have users sign into a computer and then manually link their Microsoft "Work Account" to it themselves. Our PCs are bound to on-prem AD, but we have configured a Hybrid AAD environment per the link Ivan Talboys posted in reply to Bruce above. I don't know precisely how they did it, but our Systems team has things configured so that our regular on-prem domain accounts (user@ourschool.edu) and our AAD user accounts are the same. I think at one point we had a different domain suffix, like: user@msmail.ourschool.edu for our AAD user accounts, but now the two are identical. This allows the credentials to pass freely after PC login without having to manually connect the AAD account like you're describing.
The big hurdle for us was Step 2 https://docs.microsoft.com/en-us/azure/active-directory/device-management-hybrid-azuread-joined-devices-setup: "Setup the issuance of claims" - once we had that straightened out the OneDrive silent configuration worked like a charm.