> For the complete documentation index, see [llms.txt](https://docs.forestall.io/forestall/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.forestall.io/forestall/unified-identities/azure-identities/entra-id/devices.md).

# Devices

The `Devices` page provides a list of enumerated devices in entire Azure. The list contains the `Account Enabled`, `Operating System`, `Operating System Version`, `Owner Users`, `Tier0`, `Risk Score` , `Exposure Point` and `Issue Counts` of each device object.

<figure><img src="https://3408039743-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FObpV44hoVkNmo5bFuVVL%2Fuploads%2Fgit-blob-f2ad2cd6fae74fb10834aecd0de54b16260eb7e4%2Fdevice-1.png?alt=media" alt=""><figcaption><p>Devices</p></figcaption></figure>

## Device Details

Details page contains the `Risk Score` of the computer,`Exposure Point` ,`Information`, and `Issues` panes.

{% hint style="info" %}
You can analyze objects in the `Graph module` by clicking the `Visualize` button on the upper left side of the `Information Pane`.
{% endhint %}

<figure><img src="https://3408039743-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FObpV44hoVkNmo5bFuVVL%2Fuploads%2Fgit-blob-907950487146581aeef7d4f805e1ac181910eb54%2Fazure-identities-devices-image-1.png?alt=media" alt=""><figcaption><p>Devices Details</p></figcaption></figure>

## Information

`Information Pane` can contain different badges to highlight important attributes.

| Badge | Description                                                            |
| ----- | ---------------------------------------------------------------------- |
| Tier  | Indicates that the object tier according to risk score and importance. |

`Information Pane` contains `Details`, `Groups`, `Administrative Units` tabs respectively.

## Details

Details tab contains attributes below about device object.

| Attribute                    | Description                                                                                                                                                                                                                                                                     |
| ---------------------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| **Name**                     | The device's unique name in Azure AD, typically in the format of the device hostname followed by the domain.                                                                                                                                                                    |
| **Display Name**             | The type of operating system installed on the device, such as Windows, macOS, iOS, or Android.                                                                                                                                                                                  |
| **Operating System**         | The device name as shown in the Azure portal, usually matching the hostname of the machine.                                                                                                                                                                                     |
| **Operating System Version** | The specific version number of the installed operating system, which helps determine update status and compatibility.                                                                                                                                                           |
| **Device ID**                | A unique identifier (GUID) assigned to the device within Azure AD.                                                                                                                                                                                                              |
| **Trust Type**               | <p>Indicates how the device is registered or joined to Azure AD. Common values include:</p><ul><li><code>Azure AD joined</code></li><li><code>Hybrid Azure AD joined</code></li><li><code>Workplace</code> (for personal or BYOD devices using Azure AD registration)</li></ul> |
| **Tenant ID**                | The unique identifier (GUID) of the Azure AD tenant where the device is registered.                                                                                                                                                                                             |
| **Account Enabled**          | Specifies whether the device object is currently active and allowed to authenticate with Azure AD.                                                                                                                                                                              |
| **Object ID**                | A globally unique object identifier for the device within the Azure AD directory.                                                                                                                                                                                               |
| **On Prem SID**              | The security identifier (SID) from the on-premises Active Directory, if the device is hybrid joined. This is empty if the device is cloud-only or not synced.                                                                                                                   |

## Groups

Groups tab contains a list of groups that the device is a member of. This list also contains `Enabled` and `On Prem Sync Enabled` columns to identify the status of these groups.

<figure><img src="https://3408039743-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FObpV44hoVkNmo5bFuVVL%2Fuploads%2Fgit-blob-cf0b3f0b41884c6ccdc4a6faead8119886d41825%2Fazure-identities-devices-image-2.png?alt=media" alt=""><figcaption><p>Groups</p></figcaption></figure>

## Administrative Units

Administrative Unit tab contains a list of administrative units that have a ownership on this device. This list also contains `Display Name`, `Member Management Restricted`, and `Visibility` columns to identify the status of these administrative units.

<figure><img src="https://3408039743-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FObpV44hoVkNmo5bFuVVL%2Fuploads%2Fgit-blob-aa2bbefe520e790201bd009cdfd764d3da2b1fad%2Fazure-identities-devices-image-3.png?alt=media" alt=""><figcaption><p>Administrative Unit</p></figcaption></figure>

## Issues

Issues pane contains identified issues on the device object.

![Issues](https://3408039743-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FObpV44hoVkNmo5bFuVVL%2Fuploads%2Fgit-blob-065ea7e5afd131911de4e58fe7a1320aae2aa140%2Fad-identities-computers-image-9.png?alt=media)
