question

TimCrosby-8539 avatar image
0 Votes"
TimCrosby-8539 asked Ville-2649 commented

Win32 apps don't install on Intune kiosk

We are setting up some devices with autopilot self-deploy mode and multi-app kiosk. We have discovered that with this setup, Win32 apps do not deploy after the Autopilot phase. Microsoft has told us this is because the Kiosk user is a local account and is not able get a user token when communicating with Intune. They gave a solution of logging off the kiosk account and leaving the device connected to the Internet. This seems to force using a device token instead and does install the win32 apps, usually after several hours of time. Of course the whole point of a kiosk is to have a user signed in all the time.

Has anyone run into this and come up with a way to get Win32 apps to install while the Kiosk account is signed in?

mem-intune-generalmem-intune-application-management
· 1
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

I've encountered the same issue and read through the Intune Management Extension logs, saw AAD token error multiple times.

Do you have an exact timeframe when the device token will be used as a fallback?
It's ridiculous that multi-app kiosk mode doesn't use it by default.

0 Votes 0 ·
MarkusMnnl-9214 avatar image
0 Votes"
MarkusMnnl-9214 answered

i´m also interested in the answer of this question. We use the Guest Account in devices with "Shared Mulit-User" Profiles. And if only Guest user logon this devices, no policy or app is assigned to it.

5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

CiciWu2-MSFT avatar image
0 Votes"
CiciWu2-MSFT answered

Self-deploying mode lets you deploy a Windows 10 device as a kiosk, digital signage device, or a shared device. Autopilot now has a kiosk mode that supports Kiosk Browser, any UWP app and specific versions of Edge.
You can use the Kiosk Browser when setting up a kiosk device. This app is built on Microsoft Edge and can be used to create a tailored, MDM-managed browsing experience.
You can completely automate device configuration by combining self-deploing mode with MDM policies. Use the MDM policies to create a local account configured to automatically log on. For more information, see:
Simplifying kiosk management for IT with Windows 10.
Set up a kiosk or digital sign in Intune or other MDM service.

Also, when using Windows Autopilot to deploy in self-deploying mode, the following end-user experience should be observed that user has automatically sign in as a local account, for devices configured as a kiosk or digital signage.

Reference: https://docs.microsoft.com/en-us/mem/autopilot/self-deploying

If the response is helpful, please click "Accept Answer" and upvote it.
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.