Skip Navigation

Integrate
UEM
with
Entra ID
join

You can integrate
BlackBerry UEM
with
Entra ID
join for a simplified enrollment process for
Windows 10
devices. When it’s configured, users can enroll their devices with
UEM
using their
Entra ID
username and password.
Entra ID
join is also required to support
Windows Autopilot
, which allows
Windows 10
devices to be automatically activated with
UEM
during the
Windows 10
out-of-the-box setup experience. A
UEM
certificate can be installed on the device manually or administrators can deploy the certificate using SCCM.
You will need the MDM terms of use URL, MDM discovery URL, and App ID URI to complete the steps below. To determine these URLs, in the
UEM
management console, create a test user account and send the user an activation email using the default activation email template. The default template contains the %ClientlessActivationURL% variable that resolves to the appropriate value in the received email. Use that value for the following URLs in the steps below:
  • MDM terms of use URL:
    %ClientlessActivationURL%
    /azure/termsofuse
  • MDM discovery URL:
    %ClientlessActivationURL%
    /azure/discovery
  • App ID URI:
    %ClientlessActivationURL%
  1. Log in to the
    Microsoft Entra ID
    management portal.
  2. In the section for managing MDM and MAM, add an on-premise MDM application and give it a friendly name (for example,
    BlackBerry UEM)
    .
  3. Click the application that you added to configure its settings.
  4. Specify the user scope. If applicable, select groups.
  5. Specify the MDM terms of use URL and the MDM discovery URL.
  6. Save the changes.
  7. In the properties for on-premises MDM application settings, specify the App ID URI.
  8. Save.