SOLVED

Windows server 2012r2 MDE enrollment status: AAD Connect misconfiguration

Brass Contributor

So, I just onboarded a couple of old 2012r2 servers on MDE, Azure join by using Workplace Join was successful, after 1 day though the device MDE enrollment status on M365 defender portal still reports: AAD Connect misconfiguration.

MaxMorsia_0-1663327901811.png

 

The server is now visible in Azure, and the workplace join event viewer doesn't return any error anymore, MDE Analyzer anyway returns the following

MaxMorsia_0-1663327394344.png

The mentioned troubleshooting page (link here below) addresses only failed Azure AD joins, which is not our case, since the server is now shown as Hybrid Azure AD joined and Workplace joins reports the device as joined.

https://docs.microsoft.com/fi-fi/azure/active-directory/devices/troubleshoot-hybrid-join-windows-leg...

I don't understand what's going on MDE side. Any idea?

1 Reply
best response confirmed by MaxMorsia (Brass Contributor)
Solution

the solution is found here, the filtering on ad connect must allow 2012r2.
https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/troubleshoot-security-con...

1 best response

Accepted Solutions
best response confirmed by MaxMorsia (Brass Contributor)
Solution