Unregistered Windows Hello for Business accounts cannot connect to AzureAD participating PCs via RDP

ChikaraTaro 80 Reputation points
2024-10-02T06:29:43.17+00:00

Case1 is no problem at all, I can make RDP connection.

Case 2 is no RDP connection.


Case1 WindowsHello for Business (WHfB) with PIN registered account
    PIN----[ok]--> AADJ PC (AzureAD Joined PC)

Case2 Windows Hell for Business unregistered account

          password ---[NG]---->AADJ PC

          Either the username or password is incorrect. The following message is displayed.
-------------------------------------------------------------------------------------

※ The following is appended to the RDP file.

  authentication level:i:0

  enablecredsspsupport:i:0

・[Referenced sites](https://learn.microsoft.com/en-us/troubleshoot/windows-server/remote/remote-desktop-connection-6-prompts-credentials)

 [https://learn.microsoft.com/en-us/troubleshoot/windows-server/remote/remote-desktop-connection-6-prompts-credentials]()

・Both accounts are already registered on the AADJ PC under “net localgroup ‘Remote desktop users’”.

・WHfB (PIN) is registered at kitting with AutoPilot.

I would like to be able to RDP to AADJPC from a PC that has not been kitted with AutoPilot (account with no PIN registered), but is this possible?

![User's image](/api/attachments/30a71677-6360-4c92-b429-6fb9a5d36ed1?platform=QnA)

Not Monitored
Not Monitored
Tag not monitored by Microsoft.
39,627 questions
0 comments No comments
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.