Register domain joined computers as devicesID: oval:org.secpod.oval:def:35073 | Date: (C)2016-06-10 (M)2023-12-13 |
Class: COMPLIANCE | Family: windows |
This setting lets you configure how domain joined computers become registered as devices.
When you enable this setting, domain joined computers automatically and silently get registered as devices with Azure Active Directory.
Note: Additional requirements may apply on certain Windows SKUs. Refer to Azure Active Directory Device Registration Overview.
http://go.microsoft.com/fwlink/?LinkId=307136
Counter Measure:
Configure this setting depending on your organization's requirements.
Potential Impact:
Domain-joined computers are automatically and silently registered as devices with Azure Active Directory.
Fix:
(1) GPO: Computer Configuration\Administrative Templates\Windows Components\Device Registration\Register domain joined computers as devices
(2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\WorkplaceJoin!autoWorkplaceJoin
Platform: |
Microsoft Windows 10 |