HybridAzureAD Join/Sync error while join phase

Vij 306 Reputation points
2023-07-04T04:48:09.9766667+00:00

Hi Team, Could you please help me to troubleshoot and get it successful**?**

Description:

There is a new virtual machine in the corporate network and the same OU configuring Azure Sync. the hostname entry is available in Azure but MDM is non. from DSREGCMD /Status , its AzueAD not joined.

AzureAD Joined status is NO, but the entry is there in Azure!, how it is possible?

error:

Hostname entry from Azure portal, the MDM status is "none"

Debug/Logs:

Eventvwr->

Automatic registration failed at join phase.  

Exit code: Unknown HResult Error code: 0x801c03f3  

Server error: The device object by the given id (dc563ec2-6521-4c86-b6f2-da2389464ce9) is not found.  

Tenant type: Managed  

Registration type: sync 

Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,375 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,214 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
22,157 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Sandeep G-MSFT 19,761 Reputation points Microsoft Employee
    2023-07-06T04:57:34.5166667+00:00

    @Vij

    Thanks for reaching out.

    Could you please confirm, how you configured Hybrid device registration for your environment? Is it with federated domain or managed domain? Also could you confirm device operating system which is having issue?

    In case of managed environment, could you verify that AD Connect has synced the computer objects Azure AD. If the computer objects belong to specific organizational units (OUs), configure the OUs to sync in Azure AD Connect. To learn more about how to sync computer objects by using Azure AD Connect, see Organizational unit–based filtering as I see following error from above logs, which indicate device object is not found.

    Server ErrorSubCode : error_missing_device  
           Server Operation : DeviceRenew  
             Server Message : The device object by the given id (dcf25f7e-32a2-4353-9c94-55e73da71456) is not found.  
               Https Status : 400  
                 Request Id : e3845944-6aad-4a2f-ba45-d92d319699d2
    

    Before you make above changes, please verify if working devices are synchronized and belong to OUs that's part of sync scope in Azure AD connect, because this is not mandatory in case federated domain environment setup.

    If you experience issues completing hybrid Azure AD join for domain-joined Windows devices, see: https://learn.microsoft.com/en-us/azure/active-directory/devices/troubleshoot-hybrid-join-windows-current#step-3-find-the-phase-in-which-join-failed-and-the-errorcode

    Let me know if you have any further questions on this.

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.