
Explanation:
To use Azure AD credentials to sign in to a computer that runs Windows 10, the computer must be joined to Azure AD. This process, called "Azure AD join," associates the computer with your organization's Azure AD tenant and allows you to use your Azure AD credentials to sign in to the computer. Once the computer is joined to Azure AD, you can use your Azure AD credentials to sign in to the computer and access your organization's resources.
https://docs.microsoft.com/en-us/azure/active-directory/enterprise-users/groups-dynamic- membership
https://petri.com/understanding-hybrid-azure-active-directory-join