Entra Join auth to Domain

Zane Rodman 86 Reputation points
2025-05-21T09:59:11.99+00:00

I've got a scenario I've not seen before. Essential I windows autopilot an entra join windows device 24h2 and all is good. When I login for the first time after user esp, I can't auth to domain joined devices with my hybrid identity.

Prt all looks good and no windows hello for business.

Klist is empty.

Logging off and back on fixes the issue, so it is the first login that is problematic.

I'm unsure what steps at this stage can be done aside from Wireshark or checking audit logs. I'm keen to resolve as I'd like to incorporate further workflows that tie to on prem (SMB, etc).

Thoughts anyone? I'm going to spend more time looking into it although considering whfb, although this id like to fully understand first.

Windows for business | Windows Client for IT Pros | Directory services | Active Directory
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Mukesh Agarwal 65 Reputation points
    2025-07-28T08:47:54.19+00:00

    Questions to tighten alignment in this scenario-

    • What do you mean by "I can't auth to domain joined devices with my hybrid identity"?
    • is it only Entra joined?
    • What kind of trust you have between EntraID and AD?

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.