How To Remotely Autopilot Laptops via -Online switch

ITST 0 Reputation points
2024-09-04T15:12:10.3466667+00:00

I have existing remote laptops that I want to autopilot but how do I submit HWID using the -online which requires intune admin credentials? Is there a Just-in-time permission and/or single use password protected with MFA that can allow user to submit HWID on behalf of company?

My understanding was that "convert all targeted devices to Autopilot" meant the HWID would be submitted automatically for these existing devices. If this is not the case my only roadblock is not having physical access to laptop to enter my intune admin credentials.

I would run > sysprep application to trigger oobe

Windows Autopilot
Windows Autopilot
A collection of Microsoft technologies used to set up and pre-configure new devices and to reset, repurpose, and recover devices.
468 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,048 questions
{count} votes

2 answers

Sort by: Most helpful
  1. ZhoumingDuan-MSFT 13,085 Reputation points Microsoft Vendor
    2024-09-05T01:59:05.38+00:00

    @ITST, Thanks for posting in Q&A.

    From your description, I know you want to remotely autopilot existing device in Intune.

    Based on my research, your understanding "convert all targeted devices to Autopilot meant the HWID would be submitted automatically for these existing devices is correct", you can just set convert all targeted devices to Autopilot Yes and all existing devices in Intune portal will automatically submit HWID and do Autopilot without uploading HWID manually.

    Be aware the "Convert all targeted devices to Autopilot" only works for Azure AD joined and registered devices, not hybrid joined devices.

    Also, please be sure your devices meet the requirements below using the setting of convert all targeted devices to Autopilot.

    • Running a supported version of Windows
    • Enrolled in a mobile device management (MDM) service such as Intune
    • A corporate device that isn't already registered with Autopilot

    https://learn.microsoft.com/en-us/autopilot/automatic-registration#requirements

    Or you can submit HWID using online when trigger oobe using command.

    https://intunestuff.com/2024/01/08/how-to-get-the-hardware-hash-imported-into-intune-without-going-through-the-full-oobe/

    Non-official, just for reference.

    Hope above information can help you.

    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


  2. Pavel yannara Mirochnitchenko 12,576 Reputation points MVP
    2024-09-05T08:32:10.83+00:00

    After enabling converting all devices to autopilot, make sure you have that ZTD autopilot dynamic group which will map new device hashes to the autopilot profile. After that, you just remote wipe computers and they will enroll to autopilot via oobe phase.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.