Windows 10: Entra ID logon issues. Setting up company device

Discus and support Entra ID logon issues. Setting up company device in Windows 10 Software and Apps to solve the problem; Hi, I am currently setting up a device via 'join this device to Microsoft entra ID' When I follow the prompts it keeps putting the user type as... Discussion in 'Windows 10 Software and Apps' started by Willmc12, Jul 30, 2024.

  1. Willmc12 Win User

    Entra ID logon issues. Setting up company device


    Hi, I am currently setting up a device via 'join this device to Microsoft entra ID' When I follow the prompts it keeps putting the user type as 'Administrator' Is this just because I am doing this on the local admin accountAs documentation references Then once the user signs in should the administrative permissions be revoked? I want the user to be treated as a member with limited permissions. Am I missing a step on the backend or is this hypothesis correct? Kind regards

    :)
     
    Willmc12, Jul 30, 2024
    #1

  2. Some windows 11 devices shows as Entra ID registered in Intune

    Some devices onboarded to Intune with self deploying Autopilot mode, and now they shows as Entra ID registered in Intune and not Entra ID joined. Why these shows Entra ID registered and how to make them appear Entra ID joined.
     
    DY365-2022, Jul 30, 2024
    #2
  3. EmilyS726 Win User
    How to get non-domain joined in use systems to be entra joined without having to touch the system?

    Hello, this is Emily.

    What do you mean exactly by without having to touch each one??

    To joine the device to entra AD, first of all, you need to make sure your computer is running Windows Pro edition, If it is Home edition, then you won't be able to add a work account.

    If you have Pro, to do so, go to Settings > Accounts > Access Work or School, click on Connect.

    Don't sign into your work email yet. Instead, click on "Join this device to Microsoft Entra ID". On the next step, you will be prompted to sign in, then you can sign in.

    Once done, restart the computer and you can use "switch user" to sign in using the company email.
     
    EmilyS726, Jul 30, 2024
    #3
  4. Milan Win User

    Entra ID logon issues. Setting up company device

    Allow only company-issued USB devices to be used

    I'm trying to do some customization to our Windows 10 Enterprise installation image that is being deployed to multiple endpoints. Specifically, I'm trying to impose limitations to USB device connectivity in order to improve security:

    • Prevent installation and use of any USB peripheral device (keyboards, etc)
    • Prevent installation and use of any USB storage device that is not company-issued
    • Use company-issued USB storage device that, once inserted, "unlocks" the use of peripheral devices
    • Once that company-issued USB storage device is removed, again prevent use of any USB peripheral device

    Is something like this in any way possible?

    Here are a couple of things that I've tried doing:

    • I've tried configuring GP to prevent installation of any device, but that's not actually going to work for us since there's going to be need for us to actually connect to those endpoints;
    • I've tried to whitelist some of the devices, which works fine, however I'm stuck with Device ID whitelisting, which won't work since I would like to be able to issue multiple of those USB drives that act as a key for "unlocking" USB device use;
    • I've tried creating an app that listens to USB connect/disconnect and trying to do something there, but with little success.

    Just as a proof of concept, I whitelisted one USB device and created an autorun for that device in order to invoke GP changes and that works on connect, however not really sure how to tackle disconnects in those situations. But then again, that's not what we want to do. Is there a way to modify or enrich device information of a USB drive, to include some additional info, like a custom ID that we would generate and then automatically to whitelist all the devices that have that value?

    In the end, there's actually two questions here:

    • is the scenario listed at the beginning even possible to implement and
    • is it possible to modify/enrich USB device information in order to be able to whitelist multiple devices easily through group policy?

    Any help here would be appreciated!
     
    Milan, Jul 30, 2024
    #4
Thema:

Entra ID logon issues. Setting up company device

Loading...
  1. Entra ID logon issues. Setting up company device - Similar Threads - Entra logon issues

  2. ENtra ID audit last logon user

    in Windows 10 Gaming
    ENtra ID audit last logon user: Look like the delay to get the last login is over 15 minutes, and the log get the information only if the computer reboot and the user login, if the user logout and login , no activity are record on the audit log, is this normal. how do we get the last login date and time the...
  3. ENtra ID audit last logon user

    in Windows 10 Software and Apps
    ENtra ID audit last logon user: Look like the delay to get the last login is over 15 minutes, and the log get the information only if the computer reboot and the user login, if the user logout and login , no activity are record on the audit log, is this normal. how do we get the last login date and time the...
  4. Microsoft Entra ID

    in AntiVirus, Firewalls and System Security
    Microsoft Entra ID: Hello...I work in a small family business and we're starting to grow.In a recent network setup they are implementing, we will be hooking our devices with Microsoft Entra IDs.The thing is that they are asking to sign in our company PCs and also our personal laptops we do some...
  5. Microsoft Entra ID

    in Windows 10 Gaming
    Microsoft Entra ID: Hello...I work in a small family business and we're starting to grow.In a recent network setup they are implementing, we will be hooking our devices with Microsoft Entra IDs.The thing is that they are asking to sign in our company PCs and also our personal laptops we do some...
  6. Microsoft Entra ID

    in Windows 10 Software and Apps
    Microsoft Entra ID: Hello...I work in a small family business and we're starting to grow.In a recent network setup they are implementing, we will be hooking our devices with Microsoft Entra IDs.The thing is that they are asking to sign in our company PCs and also our personal laptops we do some...
  7. Azure and Entra ID with Enabled Bitlocker

    in Windows 10 Software and Apps
    Azure and Entra ID with Enabled Bitlocker: I recently bought a brand-new machine. For two days, I spent time on it trying to figure out why my keyboard functionality in a Logi MX Keys would not work. This caused me to clear TPM in my Window Pro which came with the machine. Of course, because of the BitLocker, I had to...
  8. Setting up a device for user for Entra ID

    in Windows 10 Gaming
    Setting up a device for user for Entra ID: So when I am setting up the device it saysConnecting to: My organisationUser name: User@myorganisationUser Type: AdministratorI do not understand the user type section I am logging onto the admin account as instructed am I doing something wrong?So I am logging on with the...
  9. Setting up a device for user for Entra ID

    in Windows 10 Software and Apps
    Setting up a device for user for Entra ID: So when I am setting up the device it saysConnecting to: My organisationUser name: User@myorganisationUser Type: AdministratorI do not understand the user type section I am logging onto the admin account as instructed am I doing something wrong?So I am logging on with the...
  10. Entra ID logon issues. Setting up company device

    in Windows 10 Gaming
    Entra ID logon issues. Setting up company device: Hi, I am currently setting up a device via 'join this device to Microsoft entra ID' When I follow the prompts it keeps putting the user type as 'Administrator' Is this just because I am doing this on the local admin accountAs documentation references Then once the user signs...