Autopilot Local Domain Join
Also devices must be able to talk to the local domain environment because it will create the device in ad ds first during the enrollment process if it cannot hit your dc it will.
Autopilot local domain join. Windows autopilot doesn t support removing the local admin account. There are two situations where autopilot does not check connectivity to a domain controller in a hybrid azure ad join scenario. But the majority of the organizations still rely upon on premise on prem active directory join.
04 to an active directory domain using realmd and ssd allowing logins via ssh rdp and x11. The device receives odj blob from intune and with the help of odj blob the device would be able to join the on prem ad domain controller. However it does support restricting the user performing azure active directory azure ad domain join in oobe to a standard account versus an administrator account by default.
The autopilot profile has been configured to skip ad connectivity check and is running either windows 10 2004 or the december cumulative update for windows 10 1903 or 1909 as specified in the requirements. 9 comments share save hide report 76 upvoted this thread is archived new comments cannot be posted and votes cannot be cast sort by. In this post you will learn details about windows autopilot hybrid domain join.
In the join to azure ad as box select hybrid azure ad joined. Net localgroup command is used to manage local user groups on a computer. I m interested in autopilot but not if it isn t going to join a local domain.
Microsoft has added the ability to join the on prem domain as part of the autopilot setup. If you re deploying devices off of the organization s network using vpn support set the skip domain connectivity check option to yes. This feature is still currently in preview but worth testing and checking it out.
Auto pilot items with hybrid and auto pilot you will lose some functionality. You will not be able to do dynamic naming you can only use a prefix and then intune will add a random string to the end of the prefix. As a result the windows autopilot user driven hybrid azure ad join process would validate that the device is able to contact an active directory domain controller by pinging that domain controller.