Skip to content

Commit 1b59b7a

Browse files
authored
Merge pull request #6330 from JuanitaBaptiste/Dec6-21
Updating known issues
2 parents 3b6a169 + b36d017 commit 1b59b7a

2 files changed

Lines changed: 3 additions & 3 deletions

File tree

memdocs/autopilot/known-issues.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -12,7 +12,7 @@ author: greg-lindsay
1212
ms.author: greglin
1313
ms.reviewer: jubaptis
1414
manager: dougeby
15-
ms.date: 10/05/2021
15+
ms.date: 12/08/2021
1616
ms.collection: M365-modern-desktop
1717
ms.topic: troubleshooting
1818
---

memdocs/autopilot/policy-conflicts.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ author: greg-lindsay
1313
ms.author: greglin
1414
ms.reviewer: jubaptis
1515
manager: dougeby
16-
ms.date: 8/31/2021
16+
ms.date: 12/08/2021
1717
ms.collection: M365-modern-desktop
1818
ms.topic: troubleshooting
1919
---
@@ -36,7 +36,7 @@ Some policy settings can cause issues in some Windows Autopilot scenarios. These
3636
|-------|---------------|
3737
| [AppLocker CSP](/windows/client-management/mdm/applocker-csp) | The AppLocker CSP is not supported in the Enrollment Status Page as it triggers a reboot when a policy is applied or a deletion occurs. |
3838
|Device restriction / [Password Policy](/windows/client-management/mdm/devicelock-csp) | The out-of-box experience (OOBE) or user desktop autologon can fail when a device reboots during the device Enrollment Status Page (ESP). This failure can occur when certain [DeviceLock policies](/windows/client-management/mdm/policy-csp-devicelock) are applied to a device. Such policies can include:<ul><li>Minimum password length and password complexity</li><li>Any similar group policy settings (including any that disable autologon)</li></ul>This possible failure is especially true for kiosk scenarios where passwords are automatically generated. |
39-
| Windows Security Baseline / [Administrator elevation prompt behavior](/windows/client-management/mdm/policy-csp-localpoliciessecurityoptions)<br><br>Windows Security Baseline / [Require admin approval mode for administrators](/windows/client-management/mdm/policy-csp-localpoliciessecurityoptions) | More prompts may appear when modifying user account control (UAC) settings during the OOBE using the device Enrollment Status Page (ESP). Increased prompts are more likely if the device reboots after policies are applied. To work around this issue, the policies can be targeted to users instead of devices so that they apply later in the process. |
39+
| Windows Security Baseline / [Administrator elevation prompt behavior](/windows/client-management/mdm/policy-csp-localpoliciessecurityoptions)<br><br>Windows Security Baseline / [Require admin approval mode for administrators](/windows/client-management/mdm/policy-csp-localpoliciessecurityoptions)<br><br>Windows Security Baseline / [Enable virtualization based security](/windows/client-management/mdm/policy-csp-deviceguard) | These policies require a reboot, as a result more prompts may appear when modifying user account control (UAC) settings during the OOBE using the device Enrollment Status Page (ESP). Increased prompts are more likely if the device reboots after policies are applied. To work around this issue, the policies can be targeted to users instead of devices so that they apply later in the process. |
4040
| Device restrictions / Cloud and Storage / [Microsoft Account sign-in assistant](../intune/configuration/device-restrictions-windows-10.md#cloud-and-storage) | Setting this policy to "disabled" will disable the Microsoft Sign-in Assistant service (wlidsvc). This service is required by Windows Autopilot to obtain the Windows Autopilot profile. |
4141
| Registry keys that affect Windows Autopilot for [pre-provisioned deployment](pre-provision.md)<br><br>**Registry path**:<br>`HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Automatic logon` | **Registry key**:<br>If the [AutoAdminLogon](/troubleshoot/windows-server/user-profiles-and-logon/turn-on-automatic-logon) registry key is set to `0` (disabled), this breaks Windows Autopilot pre-provisioning. |
4242
| [MDM wins over Group Policy](/windows/client-management/mdm/policy-csp-controlpolicyconflict) | This policy allows the IT admin to control which policy will be used when both the MDM policy and its equivalent Group Policy (GP) are set on the device. |

0 commit comments

Comments
 (0)