SOLVED
Home

How to enroll existing Hybrid-AD joined device with intune for co-management?

%3CLINGO-SUB%20id%3D%22lingo-sub-130230%22%20slang%3D%22en-US%22%3EHow%20to%20enroll%20existing%20Hybrid-AD%20joined%20device%20with%20intune%20for%20co-management%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-130230%22%20slang%3D%22en-US%22%3E%3CP%3ENow%20that%20v1710%20has%20released%2C%20I'm%20experimenting%20with%20Co-management%2C%20trying%20to%20enroll%20a%20test%20client%20for%20it.%26nbsp%3B%20I%20went%20through%20the%20wizard%20in%20SCCM%20to%20configure%20co-management%2C%20setting%20Automatic%20enrollment%20in%20Intune%20to%20Pilot%2C%20and%20selecting%20a%20device%20collection%20which%20includes%20my%20test%20computer%20as%20the%20pilot%20group.%26nbsp%3B%20In%20AzureAD%20I%20set%20the%20MDM%20User%20Scope%20setting%20to%20SOME%2C%20and%20selected%20a%20security%20group%20containing%26nbsp%3Bmy%20user%20account.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EI've%20updated%20the%20SCCM%20client%20on%20the%20test%20computer%2C%20and%20am%20looking%20for%20some%20sign%20that%20it%20has%20been%20enrolled%20in%20Intune%2C%20but%20I'm%20not%20finding%20it.%26nbsp%3B%20In%20the%20%22Access%20work%20or%20school%22%20settings%20on%20the%20computer%2C%20it%20still%20just%20shows%20connected%20to%20our%20AD%20domain.%26nbsp%3B%20(Not%20sure%20if%20that%20would%20change...)%26nbsp%3B%20In%20our%20intune%20console%2C%20I%20don't%20see%20that%20this%20computer%20has%20been%20added%20as%20an%20enrolled%20device.%26nbsp%3B%20If%20I%20search%20in%20intune%20under%20AzureAD%20devices%2C%20I%20do%20find%20this%20computer%20listed%20there%2C%20but%20the%20Owner%20and%20MDM%20attributes%20are%26nbsp%3Bset%20to%20none.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EIs%20there%20something%20I'm%20missing%20when%20setting%20this%20up%3F%26nbsp%3B%20At%20what%20point%20should%20the%20device%20be%20enrolled%20in%20intune%3F%26nbsp%3B%26nbsp%3BHow%20can%20I%20verify%20that%20it%20has%20been%20enrolled%3F%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-130230%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3ECM%20current%20branch%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EIntune%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-277890%22%20slang%3D%22en-US%22%3ERe%3A%20How%20to%20enroll%20existing%20Hybrid-AD%20joined%20device%20with%20intune%20for%20co-management%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-277890%22%20slang%3D%22en-US%22%3E%3CP%3EHi%2C%20did%20you%20just%20configure%20the%20setting%20in%20Co-management%20for%20AutoEnrollment%3F%26nbsp%3B%20I%20see%20a%20post%20that%20says%20you%20should%20set%20the%20GPO%2C%20but%20others%20say%20you%20don't%20have%20to.%26nbsp%3B%20%26nbsp%3BAlso%2C%20did%20you%20reboot%20the%20device%20before%20it%20enrolled%3F%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-130242%22%20slang%3D%22en-US%22%3ERe%3A%20How%20to%20enroll%20existing%20Hybrid-AD%20joined%20device%20with%20intune%20for%20co-management%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-130242%22%20slang%3D%22en-US%22%3E%3CP%3ELooks%20like%20I%20was%20just%20being%20impatient.%26nbsp%3B%20(Who%2C%20me%3F%20%3A)%3C%2Fimg%3E%20)I%20spent%20some%20time%20digging%20for%20more%20information%20on%20auto-enrollment%20of%20hybrid%20AD%20joined%20devices.%26nbsp%3B%20When%20I%20came%20back%20to%20the%20intune%20console%20a%20bit%20later%2C%20I%20found%20the%20test%20computer%20now%20showing%20as%20enrolled%20and%20managed%20by%20MDM%2FConfigmgr.%26nbsp%3B%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EI'll%20leave%20this%20post%20in%20case%20others%20find%20themselves%20in%20a%20similar%20situation.%26nbsp%3B%20The%20answer%20is%3A%20Give%20it%20time.%26nbsp%3B%20Check%20back%20in%20an%20hour%20or%20two.%26nbsp%3B%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E
Highlighted
Steve Whitcher
Regular Contributor

Now that v1710 has released, I'm experimenting with Co-management, trying to enroll a test client for it.  I went through the wizard in SCCM to configure co-management, setting Automatic enrollment in Intune to Pilot, and selecting a device collection which includes my test computer as the pilot group.  In AzureAD I set the MDM User Scope setting to SOME, and selected a security group containing my user account. 

 

I've updated the SCCM client on the test computer, and am looking for some sign that it has been enrolled in Intune, but I'm not finding it.  In the "Access work or school" settings on the computer, it still just shows connected to our AD domain.  (Not sure if that would change...)  In our intune console, I don't see that this computer has been added as an enrolled device.  If I search in intune under AzureAD devices, I do find this computer listed there, but the Owner and MDM attributes are set to none. 

 

Is there something I'm missing when setting this up?  At what point should the device be enrolled in intune?  How can I verify that it has been enrolled? 

 

 

2 Replies
Solution

Looks like I was just being impatient.  (Who, me? :) )I spent some time digging for more information on auto-enrollment of hybrid AD joined devices.  When I came back to the intune console a bit later, I found the test computer now showing as enrolled and managed by MDM/Configmgr.  

 

I'll leave this post in case others find themselves in a similar situation.  The answer is: Give it time.  Check back in an hour or two.  

Hi, did you just configure the setting in Co-management for AutoEnrollment?  I see a post that says you should set the GPO, but others say you don't have to.   Also, did you reboot the device before it enrolled?

Related Conversations
Tabs and Dark Mode
cjc2112 in Discussions on
46 Replies
Extentions Synchronization
Deleted in Discussions on
3 Replies
Stable version of Edge insider browser
HotCakeX in Discussions on
35 Replies
How to Prevent Teams from Auto-Launch
chenrylee in Microsoft Teams on
30 Replies
flashing a white screen while open new tab
Deleted in Discussions on
14 Replies
Security Community Webinars
Valon_Kolica in Security, Privacy & Compliance on
13 Replies