Not getting prompted to set up windows hello for business

Aran Billen 826 Reputation points
2024-10-08T14:50:31.9366667+00:00

Hi all,

I have set the Intune enrollment option to "Not Configured" to apply a more granular Windows Hello for Business policy using Identity Protection. I have successfully set and deployed this policy to a test user. However, when the test user signs into the device and the policy is applied, there is no prompt to set up a PIN for Windows Hello for Business after logging in.

Screenshot 2024-10-08 at 15.45.13

Policy set

Screenshot 2024-10-08 at 15.49.35

Can you help me identify what might be going wrong?

Windows 11
Windows 11
A Microsoft operating system designed for productivity, creativity, and ease of use.
9,750 questions
Microsoft Intune Configuration
Microsoft Intune Configuration
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Configuration: The process of arranging or setting up computer systems, hardware, or software.
1,909 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
5,131 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. ZhoumingDuan-MSFT 13,320 Reputation points Microsoft Vendor
    2024-10-09T02:51:27.5766667+00:00

    @Aran Billen, Thanks for posting in Q&A.

    From your description, I know you have deployed WHFB policy to device but there is no prompted to set up it.

    Based on my research, when the policy was applied, we should restart the device to set up a PIN and, when the users log in to their windows profiles the first time after a reboot or shutdown, the sign in options for windows hello are not available, so the user has to log in using password. After that first time, if the users lock their computers, they can now unlock them using windows hello for business PIN. Please login with the password for one time and see if we can see the PIN option after lock.

    If the issue still persists, please check if there exist some error message in Event Viewer. Location: Applications and Services logs > Microsoft > Windows > DeviceManagement-Enterprise-Diagnostic-Provider > Admin.

    If there's any update, feel free to let us know.

    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.