
close
close
Registering Windows 10 devices with an identity provider, like Azure Active Directory, is an important part of including endpoints in the Zero Trust security model.
In this article, I’m going to show you how to register Windows 10 with Azure Active Directory. You will 1) register a Windows 10 device with Azure Active Directory using the Settings app in Windows 10 and then 2) check that the device successfully registered using the Microsoft Endpoint Manager portal.
advertisment
Your organization’s data is accessed by different devices, like laptops, tablets, iOS and Android mobiles. And even IoT devices. The devices may be corporate owned or personal. And users may be located within the corporate network or outside it. Under these circumstances, it is imperative to first know which devices are accessing your organization’s data and then to devise a security plan to manage it.
The security landscape is changing quickly as more and more users are working remotely and using their own devices. Without a robust security model to handle this predicament, endpoints can easily become the weakest link in your organization’s security.
Microsoft’s identity-centric Zero Trust solution requires that every user accessing an application must be verified. Zero Trust requires that all requests for access, regardless of where they originate, must be verified as if they come from an untrusted network.
All devices must be registered with a single cloud identity provider, like Azure Active Directory (AD). The advantages of this approach are that it provides a centralized location to manage all your security policies, view devices, associated risks, and compliance status.
advertisment
Devices registered with Azure AD are usually Bring Your Own Device (BYOD). Registration is supported not just on Windows 10 but also iOS, Android, and macOS. But when you join a Windows 10 device to AAD, users sign in to Windows using their organizational work or school account from the lock screen, either using a password, Windows Hello for Business, or FIDO2.0 security keys. It’s important to understand the difference between register and join when talking about Azure AD.
Let’s take a look at the steps required to register a Windows 10 device with Azure AD.
Access the Accounts section in the Windows 10 Settings app
2. Click Access work or school, and then select Connect, and enter your email address and password.
advertisment
Click Access work or school, and then select Connect, and enter your email address and password.
Registration will take a few moments. In the image below, you can see that registration is complete.
Complete registration.
Now access the Microsoft Endpoint Manager (MEM) portal, and check the devices registered for the user. You should be able to confirm if the device was registered successfully.
Check the devices registered for the user.
And that is it! In a follow-up article, I will show you how to join a Windows 10 device to Azure Active Directory.
More from Vignesh Mudliar
advertisment
Petri Newsletters
Whether it’s Security or Cloud Computing, we have the know-how for you. Sign up for our newsletters here.
advertisment
More in Security
CISA Warns Windows Admins Against Applying May Patch Tuesday Updates on Domain Controllers
May 17, 2022 | Rabia Noureen
Microsoft's New Security Experts Service Protects Businesses Against Ransomware Attacks
May 9, 2022 | Rabia Noureen
Microsoft, Google, and Apple to Expand Passwordless Login Across All Major Platforms
May 5, 2022 | Rabia Noureen
Most popular on petri
Log in to save content to your profile.
Article saved!
Access saved content from your profile page. View Saved
Join The Conversation
Create a free account today to participate in forum conversations, comment on posts and more.
Copyright ©2019 BWW Media Group