Forum Discussion
Allow removal of "Connected to Windows" accounts from Edge profiles
- Jul 24, 2020
Thanks for the feedback, we've heard this from other users too. Re: the connected to windows accounts, we are working to remove this but since it is cross group collaboration, it may take a while. We eventually would like to just sign you in with the profile account.
Re: Adding an account only to the app, if you select the "This app only" option in the sign in flow where you are asked to manage the device, the account won't be added to the computer and nor will your device get managed.
Hi,
My original setup was an AD hybrid joined device and I had no problems like this.
My new setup is one with an AAD only device linked to my AAD account, and both Edge and Firefox make use of the 'connected to windows' account by kindly logging me into each SSO session with that account.
Edge and Firefox were both used to maintain separation between tenant accounts, the same as knyhus.
To resolve the issue of having the windows account auto login, the best solution I have found is below. It stops the SSO login and the presentation of credentials for the 'connected to windows account' during the creation of each profile in Edge. I am unsure of the effect on profiles that were configured before this change (I had deleted all mine in anger and swore off ever using Edge again!).
For firefox, in 'about:config', set the 'network.http.windows-sso.enabled' to false.
It disables SSO but does allow for individual container tabs to be logged in with the chosen account, instead of having the SSO login, logout and change chore.
For Edge, with reference to [https://learn.microsoft.com/en-us/deployedge/microsoft-edge-policies#nonremovableprofileenabled] (accessed 2023-03-04), the following registry entry was added:
HKCU:/Software/Microsoft/Policies/Edge
NonRemovableProfileEnabled = DWORD:0x00000000
Effect as above; it prevents the 'connected to windows' account from auto-logging in.
Best wishes.
Roy