Windows Hello for Business: Internet connectivity required?

Niels Tech 1 Reputation point
2021-04-02T15:09:57.383+00:00

We currently implementing a modern workplace solution with Windows 10 for a customer. We have Windows 10 user-based devices that are Azure AD joined and managed by Intune. Instead of logging on to the Windows 10 device with an Azure password we would prefer to use Windows Hello for business for device authentication (pincode + fingerprint). For the initial configuration of Windows Hello for Business we need an internet connection.
My question is, how often a internet connection is needed after the initial configuration to make sure Windows Hello for Business keeps working?
When I disconnect my internet connection I can still use Windows Hello for Business to logon to the Windows 10 device. Will this always work without an internet connection? Or do we need to connect to the internet once in while to make sure this will continue to work.
On the Microsoft documentation I found the following documentation about the sign-in process (https://learn.microsoft.com/en-us/azure/active-directory/authentication/concept-authentication-passwordless). I cannot find the answer here to my question. Can someone provide the answer and if possible provide a URL to documentation?

Thank you in advance!

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,747 questions
0 comments No comments
{count} votes

3 answers

Sort by: Most helpful
  1. Kapil Arya 7,596 Reputation points MVP
    2021-04-03T15:10:56.057+00:00

    Hello,

    IMO, if you configure some of Windows Hello for Business settings, for example, PIN Reset, it may require to have Internet at client's end to make use of the setting.

    Regards.

    0 comments No comments

  2. Niels Tech 1 Reputation point
    2021-04-06T07:32:43.043+00:00

    I understand that with a initial configuration or change in configuration (PIN reset) a internet connection is required. My question is; do we need a internet connection periodically to make sure the authentication keeps working. If yes, how often?


  3. Tarek Dawoud 0 Reputation points Microsoft Employee
    2024-02-03T01:32:18.8566667+00:00

    WHFB does not require internet connectivity to unlock the device. All Windows credentials (password, PIN, biometric, Smart Cards, FIDO keys) do not require internet connectivity (with the exception of something called Web sign in), it would be a terrible experience for the user to be locked out of their computer at the airport or hotel. As others mentioned, WHFB in most deployment modes requires internet connectivity to Entra ID (Azure AD) to setup. It requires internet connectivity to reset the PIN with another credentials.

    0 comments No comments