From 4e8696cb1d07fb43123796f88031774d02619e46 Mon Sep 17 00:00:00 2001
From: Gabriel Hernandez
+ Select Azure Active Directory > Custom domain names, + then select + Add custom domain, type your + organization's domain name (e.g. acme.com), and select{" "} + Add domain. +
+ Use the information presented in Azure AD to create a new TXT/MX + record with your domain registrar, then select Verify. +
+ Select Azure Active Directory > Mobility (MDM and MAM){" "} + (or search for “Mobility” at the top of the page). +
+ Select + Add application, then select{" "} + + Create your own application. +
+ Set MDM user scope to All, then copy the URLs below, + paste them in Azure AD, and select Save. +
++ Go back to Mobility (MDM and MAM), refresh the page, then + open newly created app and select{" "} + On-premises MDM application settings. +
+ Select the link under Application ID URI, then select{" "} + Edit button next to the Application ID URI input. +
+ Use your organization's domain you added in the first step, + and select Save. +
+ Select API permissions from the sidebar, then select{" "} + + Add permissions. +
+ Select Microsoft Graph, then select{" "} + Delegated permissions, and select{" "} + Group > Group.Read.All and{" "} + Group > Group.ReadWrite.All. +
+ Select Add permissions. +
+ Select Grant admin consent for <your tenant name>, + and confirm. +
+ You're ready to automatically enroll Windows hosts to Fleet. +