Create Provisioning Package for Azure AD

Enable bulk enrollment of Windows devices to Entra ID.

Last updated: 2025-01-15 How To

Overview

This guide explains how to create a provisioning package enabling Windows 10 and Windows 11 devices to bulk join Entra ID, with instructions for testing before uploading to the Cloudiway portal.

Provisioning Package Workflow

🔧
Create
WCD package
🧪
Test
Manual install
📤
Upload
To Cloudiway

Prerequisites

  • Windows Configuration Designer (WCD) must run on a device already joined to the target Azure AD tenant
  • Install WCD from Microsoft Store

Package Creation Steps

1

Launch WCD

Open Windows Configuration Designer and select "Provision Desktop Devices"

2

Enter Project Details

Name your project and confirm settings

3

Setup Device

Configure naming convention (example: CIW-%RAND:5%)

4

Setup Network

Configure WiFi settings if needed for enrollment

5

Account Management

  • • Select "Enroll in Azure AD"
  • • Set token expiration matching deployment end date
  • • Click "Get Bulk Token" (redirects to browser for Azure AD login)
  • • Generate the token
  • • Optionally configure local admin account
6

Skip Optional Steps

Skip Applications and Certificates unless needed

7

Create Package

Complete and generate the provisioning package file

Testing the Package

Before Using in Cloudiway

Manually test the package on a device to verify successful Azure AD join.

Verify Join Status

After reboot, run this command in command prompt:

dsregcmd.exe /status

MFA Policy Configuration

Critical: Exclude Provisioning Account

If automatic enrollment for Windows devices is enabled, create an MFA exclusion for the provisioning account to prevent immediate device deletion due to non-compliance.

Steps

  • 1. Edit the MFA Conditional Access policy
  • 2. Add the provisioning account to exclusions
  • 3. Save the policy changes

Important

Without this exclusion, devices will join then immediately be removed from Intune due to MFA non-compliance on the provisioning account.

We value your feedback

Help us improve your experience

What would you like to share with us?

Need direct support? Open a ticket