Forum Discussion
"Wipe" is better anyway to really clean the PC. Per https://docs.microsoft.com/en-us/intune/device-fresh-start "If you do not retain user data, the device will be restored to its out-of-box state. BYOD devices will be unenrolled from Azure AD and mobile device management. Azure AD joined devices will be enrolled into mobile device management again when an Azure Active Directory enabled user signs into the device." The important, and confusing, distinction is that Fresh Start without retaining user data gets it to the Out-of-the-box state, but doesn't run through the actual OOBE setup.
- treestryderJul 10, 2019Steel Contributor
I finally had an opportunity to perform the "Wipe, without Retain enrollment state and user account" function in Intune. In the end, I had to perform this action twice. Both times, left a the original Intune object, after changing its Azure AD Device ID to "00000000-0000-0000-0000-000000000000". The first attempt, the laptop had a Device Name template from a different Autopilot Enrollment Profile applied, though it showed as having the correct profile assigned. The second time I tried to Wipe the laptop, the device name was fine. Maybe the answer is to "Wipe" the machine through Intune and, once re-enrolled, delete the original Intune object?
- Simon_LSep 24, 2019Brass Contributor
Jeez, I got a headache just reading all of this. So is wipe the "correct" way to re-assign an AAD joined+Intune enrolled laptop to another user? Or is it the best way at the moment?
- SteveMacNZ_OldSep 24, 2019Copper ContributorHi Simon,
As per https://blogs.technet.microsoft.com/in-teaching-others-we-teach-ourselves/2017/10/19/windows-autopilot-and-windows-automatic-redeployment-with-windows-10-fall-creators-update/
Windows Automatic Redeployment
IT departments can use Windows Automatic Redeployment to quickly remove personal files, apps, and settings, and reset Windows 10 devices from the lock screen any time and apply original settings and keep management enrollment (Azure Active Directory and Mobile Device Management) so the devices are ready to use. With Windows Automatic Redeployment, devices are returned to a fully configured or known IT-approved state
Therefore unless you require a wipe redeployment is normally a quicker option for removing old user data and re-enrolling the device to a new owner