LogoLogo
LogoLogo
  • Welcome
    • Navigation
  • RealmJoin Deployment
    • Onboarding
    • Required Permissions
    • Infrastructure Considerations
      • Multi User Devices
    • Migration to RealmJoin vNext
  • User, Group and Device Management
    • Overview
    • User Profile
    • Organization Details
    • User, Group and Device Lists
      • Advanced Search
      • User Details
      • Group Details
      • Device Details
    • User and Group Settings
      • Available RealmJoin Policies
  • App Management
    • Packages
      • Package Store
        • Application Store Details
      • Package Management
      • Package Details
      • Package Assignments
        • Package Migration
      • Package Settings
      • Packaging Requests
        • Organic Packages
    • AVD Templates
  • Automation
    • Connecting Azure Automation
      • Required Permissions
      • Runbook Parameters
    • Runbooks
      • Runbook Customization
      • Runbook Permissions
      • Naming Conventions
      • Runbook Scheduling
      • Runbook Logs
        • Runbook Job Details
      • Runbooks Changelog
    • Requirements
    • Remediation Scripts
  • RealmJoin Agent
    • Features
      • Local Admin Password Solution (LAPS)
        • KeyVault
        • Application Insights
      • Notifications
      • AnyDesk Integration
        • AnyDesk configuration
      • App Deployment using the Agent
        • RealmJoin ESP
    • Deploying the Agent
    • User Interface
  • Logs
    • Connecting Azure Log Analytics Workspace
    • Audit Log
  • RealmJoin Settings
    • Overview
    • General
    • Roles and Permissions
      • Pre-defined Roles
      • Custom Roles
        • Available Permissions
    • Group Namespaces
    • Workplace Cloud Storage
    • Self Service Forms
  • Developer Reference
    • RealmJoin API
      • Authentication
    • Interacting with Runbooks
    • Simulating a Runbook Environment
    • Local Admin Password Management
  • Other
    • FAQ
      • Security
    • Troubleshooting
      • Package Installation Issues
        • Collecting Logfiles
        • Logfiles Structure
        • Analysing chocolatey.log
        • Troubleshooting failed chocolatey packages
        • Troubleshooting failed craft packages
        • Fixes for common issues
        • Intunewin Debugging
      • LAPS Issues
        • LAPS account passwords cannot be retrieved
        • Requested LAPS Accounts are not being created
    • Changelog
  • Legal
    • Licensing
    • Support
  • RealmJoin Website
Powered by GitBook
On this page
  • Overview
  • Object Properties
  • Status Information
  • Local Admin Management (LAPS)
  • Warranty
  • Actions
  • Runbooks
  • RAW data sources

Was this helpful?

Edit on GitHub
  1. User, Group and Device Management
  2. User, Group and Device Lists

Device Details

Last updated 3 months ago

Was this helpful?

Overview

This page provides information about the device you’ve selected from the .

The right side will show one of multiple tabs. The default Overview tab view will include information (if available) like

  • The currently logged on user

  • Currently installed apps/software, either managed by RealmJoin or Intune

  • Security recommendations and if these are met by the device

Object Properties

The left section of the Device Details page will show an overview of the core properties like

  • Display Name

  • Entra ID Object ID

  • Device Owner

  • Operating System

  • Serial Number

  • Additional properties

on the left side of the screen in a glanceable way. This part will not scroll and be always visible in any tab.

Status Information

The core properties include some glanceable information about the status of a device object. Some statuses these are presented via icons that are either blue (active / present) or red (inactive missing).

Other bits of information are presented as tags:

  • AzureAD - This device is Entra ID Joined

  • TPM2 - TPM2 is present and enabled

  • Autopilot - This device is managed via Autopilot

  • Company - Company Owned (not Personal)

  • Personal - Personal, not Company Owned

Local Admin Management (LAPS)

By default, a local admin emergency account is created on a windows client. This account is useable even if network connectivity to the client fails. This is kind of a last resort.

It is recommended to use a "Support Account". When clicking "Request", a job is created/queued and RealmJoin Client will create an on-demand local admin account next time it syncs to the backend. This can take up to 30 minutes or alternatively a "Sync this device" can be triggered on the client to speed up the process. RealmJoin Portal will show state of "Requested" until the account is created and automatically switches to a view similiar to the Emergency Account when ready:

Click the dots to reveal the password.

The Support Account will automatically be removed after 12 hours.

Warranty

Use the Warranty tab to display information like remaining vendor warranty time for supported vendors/devices.

Depending on the API used, a captcha might be displayed before requesting/displaying warranty information.

Actions

Scan to trigger a (quick) scan of Windows Defender on a managed client.

Runbooks

RAW data sources

  • Entra ID

  • Intune

  • Autopilot

  • Defender

  • RealmJoin

The RealmJoin state is updated when the agent checks in. Retention is 90 days. If a device is offline for more than 90 days, the state will not be available any more (icon greyed out). If it checks in again, the state will be re-evaluated and displayed after some minutes.

Endpoint Management active

Disk Encryption enabled

Defender ATP enabled

A/V up to date

Compliant device

When the object was created

Last seen activity / Last contact

When combined with the , RealmJoin Portal can help with support tasks on windows clients that need local admin permissions by offering on-demand support accounts on clients. In many cases this removes the need to grant local admin permissions to the primary user of the device just to solve a one-time need.

See the for more details.

You can use the button Sync to trigger a Sync of Intune Policies and RealmJoin Action, like queued account creations.

"" showing available runbooks for devices.

RAW displayed as JSON (only available for RealmJoin administrators):

RealmJoin Client
LAPS documentation
Runbooks
LAPS
Device List
data sources
Device Details
LAPS management
Support Account
Warranty Information