Hey Tom
Did you try to follow these steps?
- Verify Windows Hello for Business settings: Ensure that the WHfB policy is correctly configured in Intune. Check the "Conditional Access" and "Windows Hello for Business" settings to make sure they align with your requirements.
- Check Windows Hello for Business deployment state: Confirm that the deployment state of WHfB is properly set in Intune. In some cases, if the deployment state is set to "Blocked," users may not be prompted for a PIN. Change it to "Active" if needed.
- Verify user account permissions: Ensure that the users have the necessary permissions to set up and use biometrics with WHfB. Users should have appropriate rights assigned through Azure AD or Active Directory, depending on your organization's configuration.
- Check biometric device settings: Confirm that the biometric devices (e.g., fingerprint scanners, etc.) are enabled and configured correctly on the devices. Check the device's manufacturer documentation or consult with your IT team to ensure the biometric devices are properly set up
.5. Update device drivers: Make sure that the device drivers on the laptops are up-to-date. Outdated or incompatible drivers can cause issues with WHfB functionality. Check the device manufacturer's website for the latest drivers and update accordingly.
- Review Windows Hello for Business enrollment logs: Check the Event Viewer logs on the laptops for any error messages related to the WHfB enrollment process. Look for events related to fingerprint enrollment or Windows Hello. These logs can provide insights into any problems encountered during the setup.