Event banner
Windows Office Hours: January 16, 2025
Event details
My question is - what would you think is expected behaviour would be when a user’s locally cached windows profile is deleted, with regards to windows 10/11 “user” policy settings in a configuration profile, on a cloud-native device (Entra joined only). Should they get reapplied at next logon or not, in my experience they don’t unless you also delete some additional registry keys under HKLM\SOFTWARE\Microsoft\PolicyManager e.g. SID value of user ?
If I delete these registry keys, when the user logs on, after 5 mins (there is a temporary one-off scheduled task that gets automatically created that executes the deviceenroller.exe) and those policy settings will be set. Config Refresh is already configured for any windows 11 device but I still experience the issue.
NOTE: I tried posting a lot more details but comment gets removed, so trying less detail this time but can provide a lot more information
Tested this on a few devices, the policies do apply after the device policy sync happens. If you manually initiate the sync via company portal it will push the HKCU registry values down for the deleted user.
You might have some other conflict or configuration deviation. Devices I tested either had OEM ready image or Win11 pro consumer ISO from Microsoft.
- NathanSperryJan 16, 2025Copper Contributor
Thanks for responding. When you say "after the device sync happens", do you mean within 8 hours (default sync/policy refresh time) or only after you have done a manual sync? I've tested this in two separate environments and have the same issue.