How to administer Windows 11 Enterprise computer to allow local user sign-in via MS 365 credentials?

Administrator 0 Reputation points
2024-05-10T15:48:24.2266667+00:00

Hi all,

I work for a small non-profit organization and am entirely new to IT and system administration. I am beta-testing computer configuration on a Windows machine that I have upgraded to the Windows 11 Enterprise operating system. I have created MS 365 credentials for staff members at my organization of which they have MS 365 Business Premium Licenses that come with MS Intune.

I want to configure Windows machines at my organization such that they can log-in to a user account on their local machine with their MS 365 credentials. I have a local account on the Windows machine I am working with and have added a MS 365 account as a work account and connected the computer via Entra ID (computer shows up as being connected to my organization's Intune Account). I however can not create additional users logging in with a enterprise MS 365 account. The accounts are not recognized as Microsoft accounts. Does anyone know how to fix this issue? It seems there was a way to configure this when it was still possible to connect Windows devices via Azure AD. Is this all deprecated?

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,968 questions
Windows 365 Enterprise
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,456 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,785 questions
{count} votes

2 answers

Sort by: Most helpful
  1. Crystal-MSFT 44,156 Reputation points Microsoft Vendor
    2024-05-13T01:23:05.7+00:00

    @Administrator, Thanks for posting in Q&A. Based as I know, to be able to login the windows device using Microsoft 365 account. The device needs to be Microsoft Entra joined.

    https://learn.microsoft.com/en-us/entra/identity/devices/concept-directory-join

    I notice the device needs to be managed by Intune and is user affinity. If so, you can try the following method to enroll into Intune which Microsoft Entra join can be deployed.

    --Windows Autopilot

    --Automatic enrollment via Microsoft Entra Join

    Hope the above information can help.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


  2. Shweta Mathur 28,031 Reputation points Microsoft Employee
    2024-05-13T05:18:23.0166667+00:00

    @Administrator Could you please confirm did you join your device to your tenant?

    Follow these steps on your windows 11 device to join your device it to Azure AD :

    1. Open Settings, and then select Accounts.
    2. Select Access work or school, and then select Connect.
    3. User's image

    On the Set up a work or school account screen, select Join this device to Azure Active Directory.

    1. User's image

    On the Let's get you signed in screen, type your email address (for example, alain@Company portal .com), and then select Next. 220083-image.png

    1. On the Enter password screen, type your password, and then select Sign in. 220050-image.png
    2. On your mobile device, approve your device so it can access your account. 220028-image.png
    3. On the Make sure this is your organization screen, review the information to make sure it's right, and then select Join. 220055-image.png
    4. On the You're all set screen, click Done. 220066-image.png

    Thanks,

    Shweta

    Please remember to "Accept Answer" if answer helped you.

    0 comments No comments