Forum Discussion

tarosrcm's avatar
tarosrcm
Copper Contributor
Jun 16, 2021
Solved

How to change the tenant of Microsoft Defender for Endpoint

Hi, 

I have 2 accounts, aaa.onmicrosoft.com and bbb.onmicrosoft.com, and some Windows PCs already installed MS Defender for Endpoint and can see the device name on the management console with aaa.onmicrosoft.com account.

I would like to change the account to bbb.onmicrosoft.com but I can't do it at this time.

I installed MS Defender for Endpoint by using the local script as an onboarding from aaa.onmicrosoft.com and re-installed MS Defender for Endpoint again by using the local script from bbb.onmicrosoft.com.

After re-installing, the PCs are still seen on the management console with the aaa.onmicrosoft.com account.

 

What should I do about this? Should I uninstall it by using off-boarding process before re-install?

Best regards,

  • You need to offboard the devices in the first tenant. Please use the script referenced here, or a GPO or other item. https://docs.microsoft.com/en-us/microsoft-365/security/defender-endpoint/offboard-machines?view=o365-worldwide#offboard-windows-10-devices

    then you can onboard to the new one.

2 Replies

  • cberon's avatar
    cberon
    Brass Contributor
    You need to offboard the devices in the first tenant. Please use the script referenced here, or a GPO or other item. https://docs.microsoft.com/en-us/microsoft-365/security/defender-endpoint/offboard-machines?view=o365-worldwide#offboard-windows-10-devices

    then you can onboard to the new one.

Resources