Integrate UEM with Entra ID join
UEM
with Entra ID
joinYou can integrate
BlackBerry UEM
with Entra ID
join for a simplified enrollment process for Windows 10
devices. When it’s configured, users can enroll their devices with UEM
using their Entra ID
username and password. Entra ID
join is also required to support Windows Autopilot
, which allows Windows 10
devices to be automatically activated with UEM
during the Windows 10
out-of-the-box setup experience. A UEM
certificate can be installed on the device manually or administrators can deploy the certificate using SCCM.You will need the MDM terms of use URL, MDM discovery URL, and App ID URI to complete the steps below. To determine these URLs, in the
UEM
management console, create a test user account and send the user an activation email using the default activation email template. The default template contains the %ClientlessActivationURL% variable that resolves to the appropriate value in the received email. Use that value for the following URLs in the steps below:
- MDM terms of use URL:%ClientlessActivationURL%/azure/termsofuse
- MDM discovery URL:%ClientlessActivationURL%/azure/discovery
- App ID URI:%ClientlessActivationURL%
- Log in to theMicrosoft Entra IDmanagement portal.
- In the section for managing MDM and MAM, add an on-premise MDM application and give it a friendly name (for example,BlackBerry UEM).
- Click the application that you added to configure its settings.
- Specify the user scope. If applicable, select groups.
- Specify the MDM terms of use URL and the MDM discovery URL.
- Save the changes.
- In the properties for on-premises MDM application settings, specify the App ID URI.
- Save.
Optionally, Configure Windows Autopilot for device activation.