Autopilot: Adding Local Administrator to Entra/Azure Joined Device (ETS Internal)

Body

Summary

Devices that have been Autopiloted are no longer in Active Directory and reside fully in Entra ID (Azure AD).  Local Administrators should be added to the local Administrators group using the following instructions.  A technician may do this for a user when the user has been approved to be a local administrator on their device.

Important: Before using these instructions, the user must submit a Cybersecurity Exception request.  After that request has been approved, then you can follow these instructions.

 

How To

Task: Add Local Administrator to Autopilot (Azure) Windows Device 

Instructions

Step 1 - Search for or right-click on Command Prompt and choose Run as Administrator using your adm_account@usnh.edu

Step 2 - Type:  

net localgroup administrators /add "AzureAD\<username>@usnh.edu"  

replacing <username> with the user's username.

Step 3 -  Close the command prompt and reboot
 

Outcome

The user should now be able to log in and be a local administrator because they are now a member of the local Administrators group.

 

Need additional help?

If you have questions or need additional help with these topics, please reach out to your Team Lead or supervisor for assistance.

 

Details

Details

Article ID: 4831
Created
Wed 12/20/23 3:41 PM
Modified
Fri 11/21/25 8:27 AM
Applicable Institution(s):
Keene State College (KSC)
Plymouth State University (PSU)
University of New Hampshire (UNH)
USNH System Office