Windows Hello for Business PIN login for desktop with roaming profile / hotdesking ?

EnterpriseArchitect 4,741 Reputation points
2023-10-19T05:12:28.8166667+00:00

Hi Team,

I wonder if anyone here can clarify whether the Windows Hello for Business PIN login (passwordless) can work for the desktop with a roaming profile/hotdesking?

Because the Desktop does not have a biometrics-enabled device, unlike the laptops.

Any help would be greatly appreciated.

Windows 11
Windows 11
A Microsoft operating system designed for productivity, creativity, and ease of use.
8,173 questions
Microsoft Intune Security
Microsoft Intune Security
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
333 questions
Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,248 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,337 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,476 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Catherine Kyalo 570 Reputation points Microsoft Employee
    2024-01-16T10:09:12.5366667+00:00

    Hi Yes, Windows Hello for Business PIN login should work for desktops with roaming profiles or hotdesking. Windows Hello for Business allows users to set up a PIN as an alternative to a password for signing in. The PIN is tied to the user's device and can be used for authentication even when the device is not connected to the internet. Users can set up a PIN when they register their device with Windows Hello for Business. The PIN is stored securely on the device and can be used for authentication even when the device is offline. To use Windows Hello for Business PIN login, the device must meet the minimum hardware requirements for Windows Hello for Business. This includes a Trusted Platform Module (TPM) version 1.2 or higher, and a biometric sensor or a PIN pad. If the device does not have a biometric sensor, the user can still use a PIN for authentication. Here is a link to the Microsoft documentation on Windows Hello for Business PIN login: https://docs.microsoft.com/en-us/windows/security/identity-protection/hello-for-business/hello-identity-verification

    0 comments No comments