Forum Discussion
Azure Active Directory Premium P1 - Windows 7 - Group Policy
Azure AD does support users with Windows 7 but it does not help with managing GPOs by itself, you need Azure AD Domain Services for that type of functionality. AAD P1 is focused on account and application management. The win7 machines will still be domain joined and will still get GPOs like they always have.
You don't need GPOs to manage Self service password reset and MFA configuration options, those are handled directly in AAD P1 for all Operating systems.
Since you have O365, then you may want to look into using GPOs to help manage OneDrive client sync settings, see https://support.office.com/en-us/article/use-group-policy-to-control-onedrive-sync-client-settings-0ecb2cf5-8882-42b3-a6e9-be6bda30899c
You can have the Win10 machines registered with AAD without making them join the domain, see https://docs.microsoft.com/en-us/azure/active-directory/device-management-azuread-registered-devices-windows10-setup or you can have them in hybrid mode, see https://docs.microsoft.com/en-us/azure/active-directory/device-management-hybrid-azuread-joined-devices-setup
- Danny ChaplinMar 11, 2018Copper ContributorThanks,
I already have 365 and built a azure Server and installed gpo management. It’s joined to the domain too but needed to check the way it then connects from client as suspect will need a site2site vpn. I have also brought a P1 ADDS licence to test with but don’t see where manage this have applied it to my account.
It’s also not clear on the windows7 side.
I need to implement this in two companies
One windows10 devices thought.
Another mostly windows 7 with some 10.