Forum Discussion

MariusJ's avatar
MariusJ
Copper Contributor
Feb 22, 2021

How to Azure ADDS hybrid join WVD machines

Hello

I've just launched my first cloud-only WVD deployment using Azure ADDS (Active directory domain services). Now I want my users to be able to use SSO (single sign on) to connect to Office365 services. I tried searching, and found that WVD VM's need to be hybrid joined to Azure AD. This can be done only using AD Connect and I was not able to find how to do that with Azure ADDS solution. Manual way of joining WVD machines is also impossible, because Windows 10 multi-session SKU is missing "Access work or school" option in Settings. Is it possible to do at all ? How ?

thanks

  • bruoff's avatar
    bruoff
    Copper Contributor

    MariusJ 

     

    Hi, 

     

    there are several online tutorials discussing this issue, and we half also the same problem at the moment.

     

    The most promising tutorial for me was this one: WVD Windows 10 Multi-Session Intune Hybrid Azure AD Support (anoopcnair.com)

     

    But it atm it only works with an on-prem ad and Azure AD Connect. 

     

    ATM we can sync the GPO, mentioned in the tutorial, from our AADDS to our WVD Machines, but they are still not willing to join the Azure AD atm.

    We are getting the following error:

    TenantInfo::Discover: Failed reading registration data from AD. Defaulting to autojoin disabled 0x80070002
    DsrCmdJoinHelper::Join: TenantInfo::Discover failed with error code 0x801c001d.


    According to this Website we doesn't have the rights with AADDS for joining the devices. 

    Hybrid AAD join issue (microsoft.com)

    • MariusJ's avatar
      MariusJ
      Copper Contributor

      bruoff thanks. Yes I already found out multiple forums and uservoice requests to enable SSO for AADDS but this is still not implemented and not doable. You need to have your own DC with Azure AD Connector installed. I am not willing to do that, so I'll wait until Microsoft will allow doing this. In the meantime our users will suffer entering credentials multiple times in various places in WVD.

       

      • johnjjohn's avatar
        johnjjohn
        Brass Contributor
        How are you managing the WVD VM's? I'm in a similar situation whereas my environment is cloud only, and I'd like to manage the WVD VMs in Intune. Are you using GPO's within the AADDS instance?

Resources