Windows 10: AutoPilot for Existing Devices - MDM Enrollment

Discus and support AutoPilot for Existing Devices - MDM Enrollment in Microsoft Windows 10 Store to solve the problem; Trying to find a way to get devices enrolled with Endpoint Manager without the need for local admin or VPN. Does anyone have suggestions on how to get... Discussion in 'Microsoft Windows 10 Store' started by Spirali, May 26, 2021.

  1. Spirali Win User

    AutoPilot for Existing Devices - MDM Enrollment


    Trying to find a way to get devices enrolled with Endpoint Manager without the need for local admin or VPN. Does anyone have suggestions on how to get devices enrolled during this time of remote work? everything i have checked on either requires connection to the local network or local admin.Help is greatly appreciated.What i have done:Setup AutoPilot profileImported test deviceConnected work account through Store AppUnsure if autopilot profile assignment will force devices to enroll or not.I tested the above yesterday and it seemed to work but today when i tried to reverse engineer what i d

    :)
     
    Spirali, May 26, 2021
    #1
  2. Vivian_S Win User

    Enrolling end users in MDM

    Hi,



    Thank you for posting in Microsoft Community.

    I understand that you are trying to enroll users in Intune MDM.

    However, for issues related to Microsoft Intune, let me help to point you in the right direction. I would suggest you to post your query in
    TechNet Forums where you will find professionals with expertise on Microsoft Intune in
    Windows 10 and that would be the appropriate forum.



    References:
    Troubleshoot device enrollment in Microsoft Intune


    MDM enrollment of Windows-based devices
     
    Vivian_S, May 26, 2021
    #2
  3. john zuh Win User
    Unable to enroll Device into Azure AD using 3rd Party On-Premise MDM

    We are in the process of Integrating a third party MDM (on-premise) with Autopilot in AAD portal to enable Windows 10 OOBE. We want to achieve this by leveraging an on-premise Core Enterprise Application server in Azure. We have configured the following so far which is not working as expected. Also Can't find any relevant event logs within "User Device Registration" or "DeviceManagement-Enterprise-Diagnostics-Provider" :

    1. The Autopilot Device Profile was created by importing ID into Autpilot.
    2. Security Group with authorised users incl. MFA enabled Authentication
    3. Redirect URIs was also configured in MDM App used by Azure AD to join Web App via corresponding client_id which maps one of Azure DRS.
    4. Terms of Usage URLs plus secret keys was also created. MDM DISCOVERY URL & MDM TERMS OF USE URL are correctly set but havent checked if they are accessible over the Internet

    NB: All of the above and a host of other requirements was double checked and tested several times. Device is able to enrol when InTune is used as the MDM server (by adding the InTune application to my Azure AD)

    A Test Device out of the box was used to run the following test scenarios in Azure with an E5 incl. mdm + security subscription.

    During our tests we got the following error:

    After some googling i read this could be caused by DNS issues, outbound proxy issues, or a variety of other reasons.

    I also read this can happen if the application has not been installed by the administrator of the tenant or consented to by any user in the tenant. We might have sent the authentication request to the wrong tenant but checked this with a colleague today and granted all necessary permissions as required. Didnt do the trick

    I also read this could simply be due to a general Authentification Failure which still looks very generic to me.

    Anyone has any clues on how to troubleshoot these kinds of problems based on the error reported. Tips Will be very much appreciated.
     
    john zuh, May 26, 2021
    #3
  4. AutoPilot for Existing Devices - MDM Enrollment

    Windows 10 Cisco Meraki MDM will not allow me to enrol

    Hi

    In order to enrol a device onto the Cisco Meraki MDM you must follow the below -

    1. Navigate to Settings > Accounts > Access work or school on the desktop Windows device.
    2. Click Connect
    3. Enter an email address on a domain that does not exist and click - Connect or Continue
    4. Then it will prompt for you to enter an MDM server
    5. In the Server box, enter URL
    6. Enter this Network ID:
    7. Click Register
    8. The device will automatically synchronize with the Meraki Cloud and appear in the client list
    The above usually works fine but today on a w laptop when entering the not existent email address it does not prompt for an MDM URL but infact does the below -


    AutoPilot for Existing Devices - MDM Enrollment c64bbaca-390d-491b-ade9-f469224e99f4?upload=true.png
     
    FairtradeCoco, May 26, 2021
    #4
Thema:

AutoPilot for Existing Devices - MDM Enrollment

Loading...
  1. AutoPilot for Existing Devices - MDM Enrollment - Similar Threads - AutoPilot Existing Devices

  2. Intune enrolled device replace with new device

    in Windows 10 Drivers and Hardware
    Intune enrolled device replace with new device: In my organization we are enrolling PC's to Azure AD. After the enrollment, changing PC name from PC side or in the portal to a decided format as "Main Location"-"Sub Location"-PC"Number". After that I can see device in the "Endpoint Manager portal" with changed PC name. It...
  3. Reset of AutoPilot device prompting for password of non-existent user

    in Windows 10 Drivers and Hardware
    Reset of AutoPilot device prompting for password of non-existent user: Hello I have a laptop registered in auto pilot that was originally enrolled by a user whose login name has subsequently changed. The auto pilot process keeps bringing the device to the login prompt for *** Email address is removed for privacy ***. I have the correct...
  4. Enrolling end users in MDM

    in AntiVirus, Firewalls and System Security
    Enrolling end users in MDM: I have about 150 users that I need to enrol in Intune MDM, however this requires the user to be local admin. Is there a way around this? I cannot enrol via group policy as no one is in the office and the majority of users do not have a VPN setup, the devices are also Azure...
  5. Issues while setting up Surface Pro 7 with Windows Autopilot and MDM

    in Windows 10 Installation and Upgrade
    Issues while setting up Surface Pro 7 with Windows Autopilot and MDM: I bought a Surface Pro 7 from a Microsoft Store and got the hardware hash and setup Windows Autopilot and when I joined to the WIFI it did bring it to the page of the user and asked for the password and then I signed in and then nothing. It did join Azure AD, we have intune...
  6. Error after enrolling win 10 to MDM intune

    in Windows 10 Installation and Upgrade
    Error after enrolling win 10 to MDM intune: Hi, Getting this error after enrolling Windows 10 1703 to MDM Intune. MDM ConfigurationManager: Command failure status. Configuration Source ID: 9ED164FE-9F91-41DD-9EAB-25C1E0CEB5AC, Enrollment Name: MDMDeviceWithAAD, Provider Name: Policy, Command Type: Add: from Replace...
  7. Where is MDM Device ID is stored

    in Windows 10 Drivers and Hardware
    Where is MDM Device ID is stored: I want to know where MDM Device ID is stored on my PC running Windows 10. Thanks Marius https://answers.microsoft.com/en-us/windows/forum/all/where-is-mdm-device-id-is-stored/6637cf83-fb2d-414c-81c4-75a67b0f2875
  8. Windows 10 Cisco Meraki MDM will not allow me to enrol

    in Windows 10 Customization
    Windows 10 Cisco Meraki MDM will not allow me to enrol: Hi In order to enrol a device onto the Cisco Meraki MDM you must follow the below - Navigate to Settings > Accounts > Access work or school on the desktop Windows device. Click Connect Enter an email address on a domain that does not exist and click - Connect or...
  9. Windows Autopilot for existing devices supports Hybrid Azure AD Join

    in Windows 10 News
    Windows Autopilot for existing devices supports Hybrid Azure AD Join: First, a quick refresher on Windows Autopilot for existing devices: For customers looking for a path to migrate from Windows 7 (or 8.1) to Windows 10 using Windows Autopilot, the challenge was always that you had to register the existing machines with Windows Autopilot in...
  10. Enroll certificates via InTune > Group Policy overrides MDM

    in Windows 10 Customization
    Enroll certificates via InTune > Group Policy overrides MDM: Hello, We want to deploy User Certificates via Intune. Our certification authority is active, the template is ready for issuing and a profile configuration is created. But the enrolment failed. The error in Intune is "Group Policy overrides MDM". The computer is not...