Deploying the Windows Authentication Client to Intune-Managed Devices

RapidIdentity Platform Documentation

Solution
Application
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US

Before you can implement the Windows Authentication Client (WAC) for Intune-managed devices, you must sync your local user accounts to the cloud and ensure that your devices are cloud-managed. You can use Microsoft Entra Connect to sync on-premises Active Directory users to Entra ID, hybrid join your Windows devices so they're recognized in both environments, and enroll them in Microsoft Intune. These steps allow you to deploy WAC to managed devices and authenticate users with RapidIdentity.

Requirements
  • A valid domain-joined machine and a valid domain-joined user

  • A Domain Administrator or Enterprise Administrator role in your Entra tenant, and a Hybrid Identity Administrator role in your Entra tenant

  • WAC 1.6.0 or higher

  1. Download and install Microsoft Entra Connect.
  2. Configure Microsoft Entra hybrid join.

    For more information, see Configure Microsoft Entra hybrid join from Microsoft.

  3. Enroll devices in Microsoft Intune.

    For more information, see Enroll a Windows device automatically using Group Policy from Microsoft.

You can install and deploy WAC to Intune-managed devices.