Is there any way to deploy Windows Hello for Business as OPTIONAL

ajm-b 1 Reputation point
2021-03-01T16:51:43.957+00:00

I want to make Windows Hello for Business provisioning AVAILABLE to end users without forcing the provisioning experience every time they sign onto a new system. Certain employees (like field techs) sign into many different systems - and I want them to have the discretion to enable WHFB on whatever pc they are using. I don't want to badger them with a forced experience (configured via group policy) every time these employees sign into a new pc.

Windows
Windows
A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.
4,638 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Daisy Zhou 17,991 Reputation points Microsoft Vendor
    2021-03-02T08:31:13.41+00:00

    Hello @ajm-b ,

    Thank you for posting here.

    Based on my knowledge, Windows hello for business needs AAD environment, so you have AAD environment?

    If so, you have deployed Windows Hello for Business for end users on one system, but you want end users to use Windows Hello for Business on whatever pc they are using.

    Windows hello for business, which is configured by Group Policy or MDM policy, if domain administrator did not configured Windows Hello for Business for the devices by Group Policy or MDM policy, end users should be not able to use Windows Hello for Business.

    If anything I misunderstood, please feel free to let us know.

    Best Regards,
    Daisy Zhou

    0 comments No comments