Azure AD Joined Devices - Guidelines and Best Practices


OVERVIEW

Target audience: Lan Administrators and ITS Server Admins 

This document gives guidance on when to join devices to Azure Active Directory (Azure AD) and when not to, and the potential implications of Azure AD joining. The guidelines apply to all users, including Lan Administrators and ITS Server Admins. Please note that regular users are no longer allowed to join devices to Azure AD.

Adhering to these guidelines will help maintain a secure and efficient computing environment at McGill. By understanding when to join devices to Azure AD and the potential consequences, users and sys admins can make informed decisions that promote the best interests of both individuals and the organization.

In this article:

When to join devices to Azure AD

Join devices to Azure AD when there is:


When NOT to join devices to Azure AD

In general, regular users should not join their devices to Azure AD, as it transforms their machines into McGill-managed devices and may lead to unintended consequences.


Potential issues with Azure AD joined devices


Best practices for users and system administrators