Forum Discussion
Admin Privilage for All users with Autopilot
I checked this out, thanks for that!
Like I said above the number of users are pretty high to add as an Admin for all the Azure Ad devices. Would love if there was an option to add as a Dynamic Security group here.
sheiksaad If I read the documentation; https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-restrictedgroups#restrictedgroups-configuregroupmembership
"The member SID can be a user account or a group in AD, Azure AD, or on the local machine."
A group in AAD. But it doesn`t work for me. I opened a support call for this, I want it to work either with a AAD group.
- sheiksaadApr 16, 2020Copper Contributor
PKlapwijk Hey Peter, Thanks for the link.
In that case, do you reckon a Powershell script can used to add - let's a Dynamic Security group where all the students reside in under additional local administrators for Azure Ad joined devices?
Appreciate the response.
Cheers!
- PKlapwijkApr 18, 2020MVP
sheiksaad seems to work fine on the new Windows 10 2004 release. During my first testing on that OS I thought the results where varying, but didn't realise one of the machines failed the upgrade and was running 1909.
On 2004 version it does work in my environment on multiple devices!
Have a look at this article https://www.inthecloud247.com/add-an-azure-ad-group-to-the-local-administrators-group-with-microsoft-intune/
Let me know if it does work in your environment.