SOLVED

Replace Active Directory with AAD and Intune

%3CLINGO-SUB%20id%3D%22lingo-sub-2521151%22%20slang%3D%22en-US%22%3EReplace%20Active%20Directory%20with%20AAD%20and%20Intune%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2521151%22%20slang%3D%22en-US%22%3E%3CP%3EHello%2C%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EI%20searched%20the%20internet%20and%20I'm%20seeing%20different%20responses.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EMy%20question%20is%2C%20can%20I%20replace%20AD%20with%20AAD%20and%20Intune%20combinations%3F%26nbsp%3B%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EWe%20do%20not%20have%20any%20inhouse%20hosted%20applications%20and%20all%20our%20apps%20are%20SaaS.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThanks%3C%2FP%3E%3CP%3Erj.%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2521151%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EIntune%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2521664%22%20slang%3D%22en-US%22%3ERe%3A%20Replace%20Active%20Directory%20with%20AAD%20and%20Intune%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2521664%22%20slang%3D%22en-US%22%3EThe%20answer%20is%20yes%20you%20can.%20We%E2%80%99re%20doing%20something%20similar%20right%20now.%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2521673%22%20slang%3D%22en-US%22%3ERE%3A%20Replace%20Active%20Directory%20with%20AAD%20and%20Intune%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2521673%22%20slang%3D%22en-US%22%3EOf%20course%20you%20can..%20Legacy%20apps%20are%20always%20the%20bottleneck.%20When%20you%20don't%20have%20those%20ones.%20It%20depends%20on%20how%20many%20users%20you%20have%2C%20but%20I%20will%20advise%20you%20to%20split%20things%20up.%20First%20you%20can%20start%20with%20migrating%20your%20identity%20to%20azure%20ad%20by%20installing%20azure%20ad%20connect%20first%20If%20there%20is%20a%20on%20premise%20exchange%20server%20left%20--%26gt%3B%20move%20it%20to%20exchange%20online!%20After%20your%20email%20and%20identities%20are%20mgirated%20you%20can%20migrate%20your%20devices%20to%20azure%20ad%2C%20of%20course%20use%20autopilot.%20After%20your%20devices%20are%20migrated%20%2C%20migrate%20your%20devices!%20%3CA%20href%3D%22https%3A%2F%2Fcall4cloud.nl%2F2021%2F03%2Fdeliver-us-from-hybrid%2F%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3Ehttps%3A%2F%2Fcall4cloud.nl%2F2021%2F03%2Fdeliver-us-from-hybrid%2F%3C%2FA%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2523976%22%20slang%3D%22en-US%22%3ERE%3A%20Replace%20Active%20Directory%20with%20AAD%20and%20Intune%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2523976%22%20slang%3D%22en-US%22%3E%3CP%3EThats%20good%20news.%20yes%2C%20we%20already%20have%20Ad%20sync%20and%20using%20Azure%20AD%20and%20Office%20365%20for%20exchange%20online%2C%20MFA%2C%20SSO%2C%20M365%20groups%20etc.%3CBR%20%2F%3EThank%20you%20for%20your%20link%2C%20love%20the%20title.%20lol.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EEDIT%3A%20I%20assume%20Intune%20is%20the%20one%20which%20will%20control%20devices%20in%20terms%20of%20GPs%3F%3C%2FP%3E%3C%2FLINGO-BODY%3E
Occasional Contributor

Hello,

 

I searched the internet and I'm seeing different responses.

 

My question is, can I replace AD with AAD and Intune combinations? 

 

We do not have any inhouse hosted applications and all our apps are SaaS.

 

Thanks

rj. 

4 Replies
The answer is yes you can. We’re doing something similar right now.
best response confirmed by rjack (Occasional Contributor)
Solution
Of course you can.. Legacy apps are always the bottleneck. When you don't have those ones. It depends on how many users you have, but I will advise you to split things up. First you can start with migrating your identity to azure ad by installing azure ad connect first If there is a on premise exchange server left --> move it to exchange online! After your email and identities are mgirated you can migrate your devices to azure ad, of course use autopilot. After your devices are migrated , migrate your devices! https://call4cloud.nl/2021/03/deliver-us-from-hybrid/

Thats good news. yes, we already have Ad sync and using Azure AD and Office 365 for exchange online, MFA, SSO, M365 groups etc.
Thank you for your link, love the title. lol.

 

EDIT: I assume Intune is the one which will control devices in terms of GPs?