<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
Hybrid AAD Join with Okta as the Federation Provider FAQ
Administration
Single Sign-On
Okta Classic Engine
Okta Identity Engine
Overview

This article provides answers to frequently asked questions about Hybrid Active Directory (AD) Join with Okta as the Federation Provider.

Applies To
  • Microsoft Entra ID / Azure Active Directory (AAD)
  • Hybrid Join
Solution

Table of Contents

 

Do I need to do anything in Okta for Sync Join to work?
No.


How do I test Sync Join?

  1. Upgrade the Windows 10 device to v.1803 or above.

  2. Refer to Configure Microsoft Entra hybrid join. There is no need to update any claims in steps 9 & 10 of this configuration. Just click Configure > Exit.

  3. Deploy GPO to enable Hybrid Join on the device.  Once the group policy is set, the device will be hybrid joined on the next Entra ID / AAD Connect sync cycle.

 

Do features like Windows Hello and AutoPilot work with Sync Join? 
Yes. All devices that are joined using “sync join” method will achieve Hybrid Join status which will satisfy the pre-requisites that a lot of Microsoft features like Windows Hello and AutoPilot have.


Do I need any AAD premium features like Device Writeback for this to work? 
No

 

​​​​​​​Related References

Loading
Hybrid AAD Join with Okta as the Federation Provider FAQ