Required URLs for Hybrid Azure AD joined and Intune Co-management Onboarding

Hasan Bin Hasib 26 Reputation points
2023-02-12T12:54:06.02+00:00

Hello there!

We're trying to onboard Windows 11 devices to Hybrid Azure AD joined and Intune, making them Co-managed...

We've already allowed several URLs but the endpoints are still not getting onboarded to the Intune portal. They get onboarded successfully once we disable the proxy on them. Once the device is shown as Co-Managed in the Intune portal, we enable again the proxy, and communication remains okay, like policy changes, applying new baseline policies, etc.

The problem seems to be at the end of Proxy and we believe there are some additional URLs required for the initial onboarding communication, which need to be whitelisted on the proxy.

Could anyone please share the list of all the required URLs and ports to make a device Hybrid Azure AD joined and to onboard it to the Intune portal to enable Co-management?

Thanks a lot in anticipation!

~ Hasan

Microsoft Intune Configuration
Microsoft Intune Configuration
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Configuration: The process of arranging or setting up computer systems, hardware, or software.
1,783 questions
Microsoft Intune Reporting
Microsoft Intune Reporting
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Reporting: The process of giving an account of something that has been observed, heard, done, or investigated.
66 questions
Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,301 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,657 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,324 questions
{count} votes

Accepted answer
  1. JimmySalian-2011 42,071 Reputation points
    2023-02-12T13:20:57.64+00:00

    Hi Hasan,

    There are multiple Urls in action in this process and I will ask you to investigate the proxy logs to see the blocks, however here are list of URLs that will assist you:

    https://video2.skills-academy.com/en-us/mem/autopilot/networking-requirements

    For Intune - https://video2.skills-academy.com/en-us/mem/intune/fundamentals/intune-endpoints

    Also read through the Network requirements for Office365 - https://video2.skills-academy.com/en-us/microsoft-365/enterprise/managing-office-365-endpoints?view=o365-worldwide

    Also to note - If using Proxy, WPAD Proxy settings option must be enabled and configured. To deploy check this page with some steps - https://video2.skills-academy.com/en-us/azure/active-directory/app-proxy/application-proxy-configure-connectors-with-proxy-servers

    Hope this helps.

    JS

    ==

    Please accept as answer and do a Thumbs-up to upvote this response if you are satisfied with the community help. Your upvote will be beneficial for the community users facing similar issues.

    1 person found this answer helpful.
    0 comments No comments

0 additional answers

Sort by: Most helpful