Modern Windows Provisioning - Autopilot Internals - Part 2
General

Modern Windows Provisioning Internals – Part 2

Behind the first OOBE screen, Windows launches a dense chain of provisioning tasks that never surface in the UI. As soon as the device comes online, CloudExperienceHost and the provisioning engine begin executing ZDP update checks, initializing and validating the TPM (EK, SRK, AIK), and activating hardware attestation. In parallel, Autopilot performs token‑based device discovery, retrieves its deployment profile, and drives the consumer‑vs‑enterprise pivot that determines the rest of setup. This part of the series breaks down those hidden flows — the CEH pipelines, TPM trust establishment, Autopilot token exchanges, and the orchestration logic that shapes modern Windows provisioning. [Read More]

Hybrid Entra Join using Entra Kerberos
General

Hybrid Entra Join Continues To Exist — Not Because Anyone Wants It, But Because Reality Is Inconvenient.

Hybrid Entra Join was never meant to be a permanent destination — yet for many organisations, it quietly became one.
As businesses push toward modern identity models, they find themselves tangled between on‑prem dependencies, device provisioning challenges, and the politics of re‑imaging at scale. But with Microsoft’s new Hybrid Entra Join powered by Entra Kerberos (Preview), the old sync‑and‑wait pain finally meets its match. This article breaks down why Hybrid became a long‑term tenant, what the new Kerberos-based model changes, and how organisations can finally reclaim their cloud‑native roadmap. [Read More]

Autopilot v1 vs Autopilot v2
Microsoft Intune

Autopilot v1 or Autopilot v2? A Strategic Guide to Modern Windows Provisioning

Windows Autopilot has evolved—but not in a way that makes the choice obvious. With the introduction of Autopilot v2 (Device Preparation), organizations now have a faster, cloud‑first provisioning model alongside the classic Autopilot experience. This article breaks down Autopilot v1 vs v2 through real‑world scenarios, helping you decide which model fits your identity strategy, device mix, and Windows 11 modernization goals. [Read More]

Windows Autopilot In A Nutshell
Microsoft Intune

Windows Autopilot In A Nutshell: Quick Start Guide to Modern Windows Device Provisioning

Modern Windows provisioning has evolved far beyond imaging, task sequences, and manual device setup. Today, identity—not infrastructure—drives the entire lifecycle of a device. Windows Autopilot sits at the center of this shift, transforming how organizations register, configure, deliver, and recycle Windows endpoints.

Whether you’re modernizing an existing estate or designing a cloud‑first provisioning strategy, understanding Autopilot’s identity pipeline and provisioning models is essential.

This blog post is fundamentally a deep technical exploration of Windows Autopilot as an identity‑driven provisioning framework. [Read More]