Forum Discussion
Mariol79
May 12, 2025Copper Contributor
WHFB non destructive PIN
Hello,
I've configured Windows Hello for Business and applied the Non-Destructive PIN Reset policy via Intune. However, after resetting the PIN, when I run dscmdreg /status in the User State, it still shows DestructiveOnly. Additionally, Event Viewer logs Event ID 7060 – PIN Recovery Error 0x83750007.
Could you please help me troubleshoot this?
3 Replies
Sort By
- Mariol79Copper Contributor
Hello,
I registered the Microsoft PIN Reset Service and client applications by following this guide:
https://learn.microsoft.com/en-us/windows/security/identity-protection/hello-for-business/pin-reset?tabs=intune
However, the issue is that Windows Hello is unable to generate a key for the PIN reset.
I hope someone can help me with this error.
Regards
Mario
- rahuljindal-MVPBronze Contributor
I believe to use non destructive pin reset, you need to register additional service principals as well. I covered this briefly in one of my blog posts. Have a read. It may help. https://rahuljindalmyit.blogspot.com/2022/07/pin-recovery-temporary-access-pass-what.html
- Marietto79Copper Contributor
Hello,
I registered the Microsoft PIN Service and Client applications by following this guide:
However the issue is that Windows Hello is unable to generate a key for the PIN reset
I hope someone can help me on this error
Regards
Mario