Forum Discussion

Iivo Kerminen's avatar
Iivo Kerminen
Brass Contributor
Mar 07, 2018
Solved

Azure AD user in Windows 10 - local admin problem

Hi   We have Office 365 Business Essentials and Premium licenses, we do not have AAD Premium, EMS, Intune licenses.   If I login to a new PC using some users (not O365 admin user account) O36...
  • Iivo Kerminen's avatar
    Iivo Kerminen
    Mar 17, 2018

    Hi

     

    Like I said, we do not have AAD Premium, EMS, Intune licenses. Those steps require EMS licenses or AAD Premium.

     

    I was able to set the secondary login account as admin account. Login using this secondary account, go to Control Panel/User Accounts/User Accounts/Change your account type and use O365 admin account or the first account used to login to PC to go past UAC. This way you can upgrade user account as local admin.

     

    Based on this link

    https://community.spiceworks.com/topic/1580701-azure-ad-users-given-local-admin-permissions

    it is not good idea to downgrade the first (O365)account used to login to PC as standard user. 

    Prefer to use O365 admin account or some other O365 account used as local admin account when login the first time to PC and add the actual user account to PC after this. This way normal users do not have local admin permissions and you dont have to downgrade user account permissions.

Resources