The issues you are experiencing with Windows computers joined to Intune, particularly the intermittent disconnects to Active Directory (AD) and print services, may stem from several factors. Here are some considerations and potential solutions:
- Windows Hello for Business (WHfB) Configuration: Since all users have Windows Hello for Business set up, ensure that the configuration is correct and that the devices are properly registered with the AD. Misconfigurations can lead to authentication issues.
- Kerberos Authentication: If you are considering setting up Kerberos on Azure, ensure that the Kerberos configuration is compatible with your on-premises AD. Kerberos relies on proper ticket granting and may require adjustments in your AD settings to ensure seamless communication.
- Network Connectivity: Check the network connectivity between the Windows computers and the domain controllers. Intermittent network issues can lead to authentication failures. Ensure that there are no firewall rules or network policies that could be blocking traffic.
- Credential Caching: The caching of credentials may play a role in the intermittent authentication issues. If users are frequently prompted for credentials, consider reviewing the credential manager settings and policies related to credential caching.
- Active Directory Domain Controller Health: Since you have two domain controllers, verify that both are functioning correctly. Issues with the primary DC can cause authentication problems for clients. Regularly check the health of your DCs and ensure they are replicating properly.
- Event Logs: Review the event logs on both the client machines and the domain controllers for any errors or warnings that could provide more insight into the authentication failures.
- User-Based Authentication: As cloud-native endpoints do not support machine authentication, ensure that your applications and services are configured to use user-based authentication instead of machine accounts. This could alleviate some of the issues related to accessing resources.
By addressing these areas, you may be able to resolve the intermittent disconnects and authentication issues with your Windows computers.
References: