Event banner
Windows Office Hours: January 16, 2025
Event Ended
Thursday, Jan 16, 2025, 08:00 AM PSTEvent details
Get answers to your questions about adopting Windows 11 and managing Windows devices across your organization. Find out how to proactively implement and monitor Zero Trust practices. Get tips on keep...
Pearl-Angeles
Updated Jan 08, 2025
JupiterRoad
Jan 16, 2025Occasional Reader
What is the best way to managed devices centrally in the cloud when we have 20 different AD domains and we have several offsite users?
Dom_Cote
Jan 17, 2025Brass Contributor
Confirming and building on Jason_Sandys comment:
You should seriously consider disconnecting all PCs from their local ADs and JOIN them to Entra/Intune/M365 only. Whether by manually disconnecting each PC and then re-joining (I doubt this is a good method for you) or re-deploying them fresh from the cloud remains to be seen.
Hybrid management does not simplify things in our experience, it makes it worse. You have TWO environments to deal with now: AD + Entra/Intune. While ensuring they play nice with each other.
These days, MSFT recommends Entra/Intune joined PCs only - not hybrid joined, if any way possible.
Even with Entra join only, you will still have access to AD-based resources, but management will be fully centralized.
As an MSP, I would strongly advise against a hybrid configuration.
I believe you'll be very pleasantly surprised at the new abilities you gain with cloud-only endpoint management.