Task "Join AzureAD" Lacks "RequireIntuneEnrollment" Paramater When Configuring

Hi Everyone,

First time posting so apologies if it’s not in the correct category. I also could not find a topic explicitly about this

The topic subject really says it all. But here’s screenshots for context:

When trying to setup the “Join AzureAD” task the certificate references the “RequireIntuneEnrollment” paramater but that’s not actually configurable in the GUI:

That parameter seems to exist in the script as well (Global Script #1123. Discourse didn’t let me add a 2nd image to this post)

Why is this missing as a configurable option?

I previously used provisioning packages to get devices enrolled in entra and Intune on occasion. In my experience they are annoying. For instance, if a device is in entra but not Intune:
You must first leave entra and then re-join with a provisioning package that can join Intune (license, no ca rules blocking, etc). Leaving entra can log a user out. So, I get there’s risk to this but I’d at-least like the option when I need it

Am I missing something obvious here?

One work-around is to duplicate any older deployments that had previously been configured when the variable was available in the configuration. The new copy can then be assigned to another tenant and it will preserve the RequireIntuneEnrollment variable as True.