Forum Discussion
Intune with G suite
Dman74 As far as I know, you will need to use an Azure AD account with the correct license, to enroll a device with Intune. This case is very interesting. I never had to deal with G suite and Intune combined before.
So I'm inviting @Rudy_Ooms_MVP, @NielsScheffers, @Moe_Kinani, @Oliver Kieselbach, @Harm_Veenstra and @Mr_Helaas, Hope you guys don't mind me spamming you with this but I know you all are very experienced with MEM too. Perhaps one of you had to deal with this kind of setup/config before.
Regards
Oktay
Hi Dman74 and Oktay Sari
I have couple questions for you?
1. Do you use Active Directory for On Prem authentication?
2. is your GSuite upn email address username @domain.com?
I'm gonna try to be detailed in my answer but pretty sure I will be missing few points, so please feel free to ask if you need clarification.
How do you start from Scratch?
1. Create your custom domain with O365, mx record is staying with GSuite.
Link below should help:
https://practical365.com/configure-a-custom-domain-in-office-365/
2. If you use AD for On Prem authentication, the easier way is to sync the users from local AD to Azure AD using ADConnect, make sure the user synced to the cloud with your custom domain as primary upn username @domain.com.
Once done, users will be able to use their Local AD creds to access Azure AD apps. I would sync test OU and test user to start with, then expand for more OUs and users.
3. Assign proper licensing, which I think A3 or A5 if you're working school district in US.
4. You're in good position now, your users are properly licensed, you need to setup CName validation in Endpoint Manager for easier Windows Enrollment.
https://docs.microsoft.com/en-us/mem/intune/enrollment/windows-enroll
5. You're MEM (Intune) is ready for MDM enrollment for Windows, IOS, Android and mac.
6. Do we need setup for SSO? Not really, but to make things pretty and organized for upcoming students, so they will be automatically signed-in to Google Cloud / G Suite Connector by Microsoft with their Azure AD accounts.
Hope this helps, happy to answer any questions during the setup, good luck!
Moe
- Dman74735Jun 07, 2022Copper Contributorthanks all,
still waiting for the complete picture on the org but my understanding at the moment is that they dont have any o365 identities. they use G suite for everything. So i guess this answers my point. at the very least to use Intune as a standalone product they will need an account in AD. - Oktay SariJun 07, 2022Iron Contributor