Windows 10: Why can User Still Sign-in to Domain Joined Computer Using PIN After Account is...

Discus and support Why can User Still Sign-in to Domain Joined Computer Using PIN After Account is... in Windows 10 Gaming to solve the problem; This is a huge security issue.1. Test user Microsoft Azure AD account has been disabled and sessions revoked through Microsoft Azure.2. Test user's... Discussion in 'Windows 10 Gaming' started by Jeremy Chang WHS, Sep 25, 2023.

  1. Why can User Still Sign-in to Domain Joined Computer Using PIN After Account is...


    This is a huge security issue.1. Test user Microsoft Azure AD account has been disabled and sessions revoked through Microsoft Azure.2. Test user's domain joined computer was restart using remote software.3. Test user can still login to their computer with pin or face ID whether the computer is connected to the internet or not.The ability for them to login was not due to a delay in the system. I made sure that the test user could not access M365 resources before locking the computer and restarting it. Why is the user still able to login to the computer? Microsoft should remove the cache'd pass

    :)
     
    Jeremy Chang WHS, Sep 25, 2023
    #1
  2. bdanmo Win User

    UnattendedJoin error: failed to find the domain data (0x6e)

    Thanks for the suggestion! I don't want to add a domain account, as this is a generic unattended install that will be used for all company machines. Do you think it's possible that the computer would join the domain if, instead of using UnattendedJoin in specialize, I used your steps but left out the specific account?

    The other thing I was thinking was to use a generic account to allow the domain join during the specialize step. I added a machine password in the UnattendedJoin component, and instead of getting the error listed above, I got an authentication error, which makes me think I could probably do a secure join instead of the unsecure join.

    Thoughts?
     
    bdanmo, Sep 25, 2023
    #2
  3. Created MS account, joined to domain, cannot sign on as MS account


    I just got a Surface Pro 4. I signed into it with my Microsoft account, and later joined it to my work domain. I wanted to use Cortana with Office, so I tried starting it up. It prompted for a Microsoft account, I entered my existing one, and it says "another user on this device uses this Microsoft account, so you can't add it here."

    I was able to delete the local account signed in as my Microsoft account via Accounts, but I still got that error trying to join the domain.

    I rebooted, the error persisted.

    I ran netplwiz and deleted the local account there as well - the same issue recurred.

    I rebooted again after the netplwiz delete - the same issue recurred.

    Anything else I need to do in order to sync Cortana to my MS account while joined to the domain?
     
    MohnJadden, Sep 25, 2023
    #3
  4. Kari Win User

    Why can User Still Sign-in to Domain Joined Computer Using PIN After Account is...

    Domain Joined Windows 10 - Fast User Switching


    When signing in to a Windows PC which has joined a domain with other than a domain account, you need to use a so called full username (ComputerName\UserProfileName).

    Why can User Still Sign-in to Domain Joined Computer Using PIN After Account is... 68641d1485964187t-domain-joined-windows-10-fast-user-switching-2016_03_10_11_55_501.png


    In above screenshot example I simply replaced the default domain username with the credentials of a local account using the full username and can now sign in using those credentials.

    Clicking the link How do I sign in to another domain shows these instructions:


    Why can User Still Sign-in to Domain Joined Computer Using PIN After Account is... 68642d1485964187t-domain-joined-windows-10-fast-user-switching-2016_03_10_12_00_082.png
     
Thema:

Why can User Still Sign-in to Domain Joined Computer Using PIN After Account is...

Loading...
  1. Why can User Still Sign-in to Domain Joined Computer Using PIN After Account is... - Similar Threads - Why User Still

  2. How to Hide Password Box for Local User Account Sign in, in Domain joined PC

    in Windows Hello & Lockscreen
    How to Hide Password Box for Local User Account Sign in, in Domain joined PC: I have a Local User with Blank Password in a domain joined PC. Whenever a Domain User uses Switch User feature to login in into Local User Account, it asks for a password. I need to remove the Password Box and get Sign in Option for the Local User Account.Currently I am...
  3. Laptop domain-joined to InTune but cannot use domain accounts

    in Windows 10 Gaming
    Laptop domain-joined to InTune but cannot use domain accounts: A laptop recently came to me that had been wiped by a 3rd party repair service. This has reset it from Edu Pro to Home version.I've reimaged it using an Edu Pro ISO from a USB, but I've had to create a temporary personal account to sign in to do so. I'm autopiloting it...
  4. Laptop domain-joined to InTune but cannot use domain accounts

    in Windows Hello & Lockscreen
    Laptop domain-joined to InTune but cannot use domain accounts: A laptop recently came to me that had been wiped by a 3rd party repair service. This has reset it from Edu Pro to Home version.I've reimaged it using an Edu Pro ISO from a USB, but I've had to create a temporary personal account to sign in to do so. I'm autopiloting it...
  5. Laptop domain-joined to InTune but cannot use domain accounts

    in Windows 10 Software and Apps
    Laptop domain-joined to InTune but cannot use domain accounts: A laptop recently came to me that had been wiped by a 3rd party repair service. This has reset it from Edu Pro to Home version.I've reimaged it using an Edu Pro ISO from a USB, but I've had to create a temporary personal account to sign in to do so. I'm autopiloting it...
  6. Why can User Still Sign-in to Domain Joined Computer Using PIN After Account is...

    in Windows Hello & Lockscreen
    Why can User Still Sign-in to Domain Joined Computer Using PIN After Account is...: This is a huge security issue.1. Test user Microsoft Azure AD account has been disabled and sessions revoked through Microsoft Azure.2. Test user's domain joined computer was restart using remote software.3. Test user can still login to their computer with pin or face ID...
  7. Why can User Still Sign-in to Domain Joined Computer Using PIN After Account is...

    in Windows 10 Software and Apps
    Why can User Still Sign-in to Domain Joined Computer Using PIN After Account is...: This is a huge security issue.1. Test user Microsoft Azure AD account has been disabled and sessions revoked through Microsoft Azure.2. Test user's domain joined computer was restart using remote software.3. Test user can still login to their computer with pin or face ID...
  8. Have second "non-domain" account on domain joined computer

    in Windows 10 Ask Insider
    Have second "non-domain" account on domain joined computer: Hi there, my company is providing me with a laptop for work which we can use for personal stuff. It comes preinstalled with Windows 10 and is domain joined. I have created a second "local" user for my personal use. The only thing now is, that that user still seems to be...
  9. Can same PC have domain-joined and non-domain-joined accounts?

    in Windows 10 Network and Sharing
    Can same PC have domain-joined and non-domain-joined accounts?: Can the same PC have one account set up that's domain-joined (to work), and another personal account that's NOT domain-joined? I'm guessing the answer is more likely no, since domain seems to be a machine-level and not an account-level setting. What I'd like to be able to...
  10. Windows 10 Domain Joined - How to disable pin sign on.

    in User Accounts and Family Safety
    Windows 10 Domain Joined - How to disable pin sign on.: Having trouble disabling pin sign on for our domain joined machines. it just doesn't seem to work, I have tried using the registry tweak and GPO policy. Can someone help please?*Confused*Confused Firaz 53995