Do you have all the prerequisites achieved to enroll your device hybrid? Have you enrolled any other devices using gpo?
Best way to try is enrolling your device manually from Setting and use your email address. If asks for mdm server name, this means CName is not properly configured and that’s why gpo is not working.