Windows Autopilot
Device enrollment

Overview for Windows Autopilot device preparation user-driven Microsoft Entra join in Intune

In brief

The tutorial now documents support for up to 25 essential applications, up from 10, and adds device association as an alternative to corporate identifiers. Associated devices can use settings such as OOBE customization and device naming.

What Intune admins need to know

If enrollment restrictions block personal devices, configure either corporate identifiers or device association for each device before deployment. Review the updated setup options and app limit for existing deployments.

This summary was assembled from the tracked documentation change. Verify important details in the full Microsoft Learn article.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Step by Step-by-step tutorial for Windows Autopilot device preparation user-driven Microsoft Entra join in Intune

This step by step tutorial guides you through using Intune to perform adeploy Windows Autopilot device preparation in a user-driven scenario when the devices are Microsoft Entra joined.join scenario.

The purpose of this tutorial is a step by step guide forcovers all the configuration steps required for a successful Windows Autopilot device preparation user-driven Microsoft Entra join deployment using Intune. The tutorialdeployment. Although the walkthrough is also designed as a walkthrough insuitable for a lab or testing scenario, buttest environment, you can be expanded foralso use it in a production environment.production.

Before beginning, refer to the How to: Plan your Microsoft Entra join implementationPlan your Microsoft Entra device deployment to make sure all requirements are met for joining devices to Microsoft Entra ID.

Windows Autopilot device preparation user-driven Microsoft Entra join overview

  • Joins the device to Microsoft Entra ID.
  • Enrolls the device in Intune.
  • Installs up to 1025 essential applications.
  • Runs up to 10 essential PowerShell scripts.

Once the Windows Autopilot device preparation user-driven deployment is complete, the device is ready for the end-user to use and they're immediately sent to the desktop.

Workflow

The following steps are needed toSteps 1–6 configure your environment and then perform athe Windows Autopilot device preparation user-driven Microsoft Entra join in Intune:policy. They're required for all deployments:

[!div class="checklist"]

Step 7 (optional): Make sure only trusted devices are onboarded

If you use Intune enrollment restrictions to block personal device enrollments, you must configure either corporate identifiers or device association for each device before deployment. You don't need both. If a device is associated, you don't need to upload a corporate identifier for it. If personal devices aren't blocked in your environment, you can skip this step and deploy the device.

Choose one of the following options:

[!div class="checklist"]

Walkthrough

Device association also unlocks additional device preparation policy settings—such as OOBE customization and device naming—that are only available to associated devices.

Walkthrough

Daily Intune.Admin.News

Get daily email updates

Get a concise summary of the latest Microsoft Intune updates delivered straight to your inbox.

Loading the secure signup form…