How to Enroll Windows 11 Device to Intune through Azure AD Join method

There are different methods available to enroll Windows 11 device to Microsoft Intune. These methods include GPO, Windows Autopilot, Windows Provisioning package, Co-Management, Manual enrollment etc. The Intune enrollment method can be user driven or administrator driven.

One of such Intune device enrollment method is Azure AD join method. This Intune enrollment method enables a user to enroll a corporate-owned device into Microsoft Intune by using settings panel and adding a Work or School account. Once device joined to Azure AD (Now Entra ID), you need to login to the device using your corporate Azure Active Directory account.

How to Configure Automatic Enrollment

Automatic enrollment lets user enroll their Windows devices in Microsoft Intune The Auto Enrollment must be enabled to automatically enroll the device to Intune as soon as it’s joined to Entra ID (Formerly Azure AD). Check out Configure Azure Active Directory Automatic Enrollment to understand how to configure Automatic Enrollment in Azure AD.

How to Join Windows 11 Device to Azure Active Directory

Follow the steps to enroll Windows 11 device to Intune using Azure AD Join enrollment method.

  • On a Windows 11 device, go to Windows 11 Settings > Accounts. The account you are using should have local administrator right.

Enroll Windows 11 Device to Intune | Accounts

Scroll down and click on Access work or School option.

Windows 11 device intune enrollment

On the Access work or school page, click on Connect

Intune device enrollment

On the Set up a work or school account page, click on Join this device to Azure ActiveDirectory

Enroll device in Intune

On the Sign-in page, enter your Azure AD account and click on Next. The AAD account should have permission to enroll the device to Intune.

Enter the password in next screen and click on Sign in

If Multi-Factor Authentication (MFA) is enabled then you will get a prompt for authentication.



intune auto enrollment

On the “Make sure this is your organization” page, Review the organization and click on Join.

The device is now joined to Azure Active Directory. Since we have already configured Automatic Enrollment configuration for Microsoft Intune in Azure AD, the device automatically enrolled to Microsoft Intune.

Click on the Done.

enroll a device in Intune

You now need to logon with your Azure AD account. You can either reboot the device or just Sign out and logon with your Azure AD account.

Click on the Start Menu and select Sign-out

Logon with your Azure AD account. You will see the Setting up for work or school account ( Enrollment Status Page). This will take sometime depends on the number of policies and applications assigned to the device / user in Microsoft Intune.

Intune enrollment | Enrollment status Page (ESP)

You can now see the device record in Azure AD and device enrolled to Microsoft Intune. You can validate the same from Azure Active Directory console or Microsoft Intune Admin Center.

Azure AD Joined

Related Posts


Subscribe to Techuisitive Newsletter

Be the first to know about our new blog posts. Get our newsletters directly in your inbox and stay up to date about Modern Desktop Management technologies & news.


Scroll to Top