Forum Discussion

MwWalker's avatar
MwWalker
Copper Contributor
Aug 04, 2021

Does Windows365 Enterprise Require AAD Connect?

Hi folks, 

I'm trying to provision one of these devices.  My business is pretty much 100% virtual.  I don't have or need local server.  But I've hit a wall trying to provision my "Cloud PC" when the device fails to connect to because "hybrid Azure AD connectivity check failed."  And that I should "make sure that Azure AD Connect is working and syncing." 

 

I know that AADC is for connecting and syncing an on-prem AD to Azure AD services.  But, if I don't have a local on-prem AD, given that my environment is virtual, what do I do?  

  • rtccoupe's avatar
    rtccoupe
    Copper Contributor
    Have you considered deploying a DC on an Azure vm and then integrating with Azure AD via AD Connect?
    • MwWalker's avatar
      MwWalker
      Copper Contributor
      Hi rtccoupe, an interesting idea, and I also thought about that before posting. I already have a domain, vNet, and AD in Azure. To build a DC seemed unnecessary expense just to make this cloud PC concept work. And rather than building a work-around, I'd prefer that they fix the problem. As was noted in other response to my post, AADC is not required in Business tier, so why is it not an option for the Enterprise tier?
      • EricOrman's avatar
        EricOrman
        Icon for Microsoft rankMicrosoft
        Support for AADJ within the Enterprise method is on roadmap. Stay tuned.
  • Yes, Enterprise option of Win365 requires a Active Directory domain the Cloud PC's will be AD joined. The Business option does not require AD and the Cloud PC's are Azure AD joined, this also allows the use of cloud only users and or synchronized users from AD are also allowed/possible.
    • MwWalker's avatar
      MwWalker
      Copper Contributor

      EricOrman Thanks for the quick reply, but my business works a lot with healthcare businesses.  I need to show proof of HIPAA and cybersec compliance.  Moving to Business doesn't seem give me that capability.  I lose Intune device management and significant cybersec control. From my interpretation, Business also reduces the value my Win10 Enterprise and M365 E5 licenses.  

       

      If MSFT can set up these cloud PCs without AADC on the Business tier, why have they restricted this capability on the Enterprise tier?  It seems counterintuitive to have less functionality.  I hope they are reading these comments and will address this soon.  I can't continue to test viability of this program until it's fixed.

       

       

Resources