Your network has an Active Directory domain with 2,000 Windows 10 computers and you implement hybrid Azure AD join and Microsoft Intune. To automatically register all existing computers with Azure AD and enroll them in Intune while minimizing administrative effort, which method should you use?
Choose an answer
Tap an option to check your answer.
Correct answer: Deploy a Group Policy object (GPO).
Why this is the answer
Deploying a Group Policy Object (GPO) is the most efficient method for automatically registering existing domain-joined Windows 10 computers with Azure AD and enrolling them in Intune. A GPO can be configured to enable automatic MDM enrollment for hybrid Azure AD joined devices, leveraging existing Active Directory infrastructure to push these settings to all 2,000 computers simultaneously with minimal administrative effort. Creating an Autodiscover address record or service connection point (SCP) is primarily for Exchange or other services, not for automatic Intune enrollment of existing devices. Windows Autopilot is for new device provisioning or resetting existing devices, not for bulk enrollment of already deployed, domain-joined machines.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed