question

EnterpriseArchitect avatar image
0 Votes"
EnterpriseArchitect asked LimitlessTechnology-2700 answered

Hybrid Azure AD join benefits without Intune?

Hi Folks,

I am using Azure AD Connect to sync my OnPremise AD DS to Azure AD Premium P2 as part of my Hybrid Exchange environment.

I wonder what will be the benefits and disadvantages when using Hybrid Azure AD join for all of my existing domain-joined Workstations (Laptop & Tablet)?

https://docs.microsoft.com/en-us/azure/active-directory/devices/plan-device-deployment#hybrid-azure-ad-join

I do not have Intune license yet, hence wondering what's the benefits of doing these additional steps of joining Azure AD.

Any help and comments will be greatly appreciated.

azure-active-directorywindows-active-directoryazure-ad-connectazure-ad-domain-servicesazure-ad-identity-governance
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

pvanberlo avatar image
0 Votes"
pvanberlo answered

Even without having the devices enrolled in Intune, you'll get certain benefits. These are listed specifically on this page. You will basically get these features:

Key capabilities

  1. SSO to both cloud and on-premises resources

  2. Conditional Access through Domain join or through Intune if co-managed

  3. Self-service Password Reset and Windows Hello PIN reset on lock screen

  4. Enterprise State Roaming across devices

Obviously by extending it with Microsoft Endpoint Manager/Intune you'll get even far greater control over these devices, but there's nothing stopping you from setting this up already to leverage things like SSO, SSPR etc.




5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

LimitlessTechnology-2700 avatar image
0 Votes"
LimitlessTechnology-2700 answered

EnterpriseArchitect

Organizations with existing Active Directory implementations can benefit from some of the functionality provided by Azure Active Directory (Azure AD) by implementing hybrid Azure AD joined devices.

These devices are joined to your on-premises Active Directory and registered with Azure Active Directory.

Hybrid Azure AD joined devices require network line of sight to your on-premises domain controllers periodically. Without this connection, devices become unusable. If this requirement is a concern, consider Azure AD joining your devices.

To get to know more about Hybrid Azure AD joined devices, do check out the below link

https://docs.microsoft.com/en-us/azure/active-directory/devices/concept-azure-ad-join-hybrid



Hope this answers all your queries, if not please do repost back.
If an Answer is helpful, please click "Accept Answer" and upvote it : )

5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.