Forum Discussion
WaySlow
Jun 04, 2025Copper Contributor
Temp admin for personal hosts
Hello,
We're looking to implement personal host pools for engineer users. These would be Windows 11, entra-joined and managed via Intune. Is there a recommended method to grant these users temp local admin? On our physical endpoints we've been using MakeMeAdmin, but thats not working for our test hosts. I've seen that PIM is an option but can be pricy.
Thanks.
3 Replies
Sort By
- KartikDograCopper Contributor
If you are using AVD Personal Pools then you can create an Entra group and add members in that entra group. this group then can be give RBAC role in IAM i.e. virtual Machine administrator at either resource group where VM's belong or at the Virtual Machines level. Users in that group will get the admin rights on VM's
- jlou65535Iron Contributor
Hey I think you are right, PIM and LAPS could be your only choices on that one
You may consider Intune Local User Group Policy, Azure AD PIM, SLAPS even PowerShell Scripts via Intune.