Troubles Enrolling Server through Microsoft Defender

Kaleb Francoeur 0 Reputation points
2024-12-05T17:12:17.0133333+00:00

Hi,

I’m working on configuring Hybrid Azure AD Join for our domain-joined devices, and I've already set up Active Directory and Hybrid Azure AD. The next step I’m trying to take is enrolling devices through Microsoft Defender Settings > Endpoints > Onboarding. However, I’m running into an issue with the Intune Connector for Active Directory.

When I try to run the configuration script, I get the following error:

"Error Id: 65, Error Level: 2, Error message: Script is running with insufficient privileges. Please run with administrator privileges." I’ve ensured that I’m running the script with admin privileges, but the window flashes open and immediately closes. I’ve waited for a while and nothing happens, and it doesn't seem like the connector is functioning.

Here’s what I’ve done so far:

Installed Active Directory and Hybrid Azure AD and confirmed both are working.

Downloaded and installed the on-premises Intune Connector for Active Directory.

Verified that the server has active internet access and can reach the required Microsoft endpoints.

Ensured that CNAME records for MDM enrollment are configured in DNS.

Despite following these steps, I’m still facing issues with getting the connector to work. Any troubleshooting steps or guidance would be much appreciated!

Thank you in advance!

Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
231 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Prathista Ilango 170 Reputation points Microsoft Employee
    2025-01-03T08:00:45.5333333+00:00

    Hello @Kaleb Francoeur ,

    I guess we are looking at 2 different things here. Intune connector is required to create computer objects in the on-prem AD for all autopilot-enrolled devices. You need correct permissions for Intune connector to create these computer objects. Refer to: https://learn.microsoft.com/en-us/autopilot/windows-autopilot-hybrid#install-the-intune-connector

    However, the following articles helps troubleshoot issues with onboarding script for Defender.

    https://learn.microsoft.com/en-us/defender-endpoint/troubleshoot-onboarding#troubleshoot-onboarding-when-deploying-with-a-script

    If it doesn't, please reach out to support to troubleshoot further: https://learn.microsoft.com/en-us/defender-endpoint/contact-support

    If you found the information above helpful, please Click Yes. This will assist others in the community who encounter a similar issue, enabling them to quickly find the solution and benefit from the guidance provided.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.