Office issue with FSLogix

Yasser M. Ghannam 20 Reputation points


Office apps are not signing in automatically after enabling passwordless signin in Azure. We are using hybrid-joined Citrix VDI machines and FSLogix for profile management.

A suite of Microsoft productivity software that supports common business tasks, including word processing, email, presentations, and data management and analysis.
1,196 questions
A set of solutions that enhance, enable, and simplify non-persistent Windows computing environments and may also be used to create more portable computing sessions when using physical devices.
456 questions
0 comments No comments
{count} votes

Accepted answer
  1. Limitless Technology 44,101 Reputation points


    When you enable passwordless sign-in in Azure AD, it should allow users to sign in without using a password, typically using methods like Windows Hello for Business, Microsoft Authenticator app, or security keys. However, there are several factors that can affect the automatic sign-in behavior, especially in a hybrid environment with Citrix VDI machines and FSLogix profile management. Here are some potential reasons and troubleshooting steps to address the issue:

    Citrix VDI Configuration:

    Ensure that Citrix VDI machines are properly configured and have the necessary components for passwordless sign-in. Verify that the Citrix VDA (Virtual Delivery Agent) and Citrix Workspace app are up to date and compatible with Azure AD's passwordless sign-in methods.

    FSLogix Profile Management:

    FSLogix profile management can sometimes interfere with passwordless sign-in, especially if there are conflicting settings. Review your FSLogix configuration and policies to ensure they are not causing any issues with the Azure AD authentication process.

    Azure AD Conditional Access Policies:

    Check if you have any Azure AD Conditional Access policies in place that could be affecting automatic sign-in. These policies might require additional authentication methods or restrict the use of passwordless sign-in for specific scenarios.

    Azure AD Authentication Methods:

    Verify that the authentication methods you have enabled for passwordless sign-in (e.g., Windows Hello for Business, Authenticator app, security keys) are properly configured and available on the Citrix VDI machines.

    Citrix Workspace App Configuration:

    Check the configuration of the Citrix Workspace app on the VDI machines to ensure it is correctly set up to work with Azure AD and passwordless sign-in methods.

    Hybrid Join Configuration:

    Ensure that the Citrix VDI machines are correctly hybrid-joined to both your on-premises Active Directory and Azure AD. Any issues with hybrid join might affect the user's ability to sign in automatically.

    Logs and Event Viewer:

    Review the logs on the Citrix VDI machines, Azure AD, and FSLogix for any relevant error messages or events that could shed light on the sign-in issue.

    Testing with Local Accounts:

    To troubleshoot further, you can test automatic sign-in with local accounts on the Citrix VDI machines (if possible) to determine if the issue is specific to Azure AD or related to the Citrix and FSLogix environment.

    Microsoft Support:

    If you have exhausted all troubleshooting steps and are still experiencing issues, consider reaching out to Microsoft support or the Citrix support team for further assistance. They can provide specialized guidance and help resolve any complex configuration problems.

    Keep in mind that passwordless sign-in and its interaction with third-party solutions like Citrix and FSLogix might evolve over time, so it's essential to refer to the latest documentation and support resources from both Microsoft and Citrix for the most up-to-date information and solutions.

    I used AI provided by ChatGPT to formulate part of this response. I have verified that the information is accurate before sharing it with you.

    Hope this resolves your Query !!

    --If the reply is helpful, please Upvote and Accept it as an answer–

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful