Onedrive gets Setup, then complains on second login.

%3CLINGO-SUB%20id%3D%22lingo-sub-2292450%22%20slang%3D%22en-US%22%3EOnedrive%20gets%20Setup%2C%20then%20complains%20on%20second%20login.%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2292450%22%20slang%3D%22en-US%22%3E%3CP%3EWasn't%20sure%20how%20to%20write%20the%20subject%20line.%26nbsp%3B%20My%20OneDrive%20policies%20are%20setup%20to%20auto-login%20the%20user%20and%20then%20configure%20known%20folders.%20That%20all%20works%20great%20on%20first%20login.%26nbsp%3B%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThen%2C%20when%20you%20logout%20and%20login%20again%2C%20I%20immediately%20get%20the%20%22Onedrive%20isn't%20signed%20in%22%20error.%3CBR%20%2F%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-left%22%20image-alt%3D%22onedrive-signin.png%22%20style%3D%22width%3A%20442px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F275590i40AAC9585FDD9C29%2Fimage-size%2Flarge%3Fv%3Dv2%26amp%3Bpx%3D999%22%20role%3D%22button%22%20title%3D%22onedrive-signin.png%22%20alt%3D%22onedrive-signin.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EAll%20one%20has%20to%20do%20at%20that%20point%20is%20click%20%22Ok%22%20and%20it%20will%20log%20them%20in.%20But%20I%20cannot%20seem%20to%20understand%20why%20this%20happens.%26nbsp%3B%20It%20is%20really%20annoying%20since%20scripts%20need%20to%20run%20to%20sync%20sharepoint%20shares%20and%20lots%20of%20times%20this%20dialog%20goes%20unseen%20and%20so%20the%20scripts%20don't%20run.%26nbsp%3B%20It%20is%20also%20not%20a%20user-friendly%20type%20of%20thing.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThis%20ONLY%20happens%20with%20the%20second%20login.%20Each%20subsequent%20is%20fine.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EMy%20settings%20are%20this%3A%3C%2FP%3E%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20image-alt%3D%22Tomnibus_MedOne_0-1619447186891.png%22%20style%3D%22width%3A%20400px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F275595i584DD96CA048F372%2Fimage-size%2Fmedium%3Fv%3Dv2%26amp%3Bpx%3D400%22%20role%3D%22button%22%20title%3D%22Tomnibus_MedOne_0-1619447186891.png%22%20alt%3D%22Tomnibus_MedOne_0-1619447186891.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%3CP%3EI'm%20not%20sure%20what%20could%20be%20causing%20this%20to%20happen.%20Other%20than%2C%20perhaps%20MFA%3F%20I%20set%20the%20computers%20up%20on%20a%20trusted%20network%20and%20the%20logout%2Flogin%20is%20also%20on%20a%20trusted%20network.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3ENot%20even%20sure%20where%20to%20start%20looking%20to%20solve%20this.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2292450%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EIntune%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2296143%22%20slang%3D%22en-US%22%3ERe%3A%20Onedrive%20gets%20Setup%2C%20then%20complains%20on%20second%20login.%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2296143%22%20slang%3D%22en-US%22%3EHI%3CBR%20%2F%3E%3CBR%20%2F%3EJust%20a%20few%20questions.%20Without%20some%20background%20info%2C%20it's%20hard%20to%20troubleshoot%20the%20problem..%20If%20you%20could%20share%20the%20answers.%20Thanx%3CBR%20%2F%3E%3CBR%20%2F%3E*When%20you%20press%20%22OK%22%20is%20everything%20working%20like%20you%20expected%3F%3CBR%20%2F%3E*Are%20you%20seeing%20any%20errors%20in%20the%20azure%20ad%20sign%20in%20log%3F%3CBR%20%2F%3E*Does%20this%20problem%20occurs%20on%20all%20devices%20and%20what%20happens%20when%20you%20enroll%20a%20new%20device%3F%3CBR%20%2F%3EYou%20are%20mentioning%20ONLY%20the%20second%20login..%20so%20I%20guess%20you%20tested%20it%20with%20a%20new%20devices%3F%3CBR%20%2F%3E*Are%20there%20conditional%20access%20rules%20in%20place%3F%20Like%20blocking%20legacy%20auth%20etc%3F%3CBR%20%2F%3E*Is%20SSO%20working%20on%20other%20apps%2Flike%20teams%3F%20dsregcmd%20%2Fstatus%20to%20check%20prt%3CBR%20%2F%3E*Are%20there%20any%20weird%20accounts%20added%20in%20the%20windows%20settings%2Faccount%20%2F%20credentials%20manager%3CBR%20%2F%3E*What%20happens%20if%20you%20change%201%20setting%20by%20a%20time%20to%20not%20configured%3F%20Like%20the%20move%20kfm%20%3F%3CBR%20%2F%3E*Are%20the%20devices%20azure%20ad%20joined%20or%20hybrid%20(%20maybe%20some%20domain%20gpo's%20conflicting%3F)%3CBR%20%2F%3E*Are%20there%20any%20weird%20errors%20in%20the%20AppData%5CLocal%5CMicrosoft%5COneDrive%5Clogs%3CBR%20%2F%3E*Does%20Onedrive%20uses%20modern%20auth%3F%20Maybe%20the%20first%20time%20it%20uses%20legacy%20the%20second%20time%20modern%20or%20reverse%3F%3CBR%20%2F%3E%3C%2FLINGO-BODY%3E
Contributor

Wasn't sure how to write the subject line.  My OneDrive policies are setup to auto-login the user and then configure known folders. That all works great on first login. 

 

Then, when you logout and login again, I immediately get the "Onedrive isn't signed in" error.
onedrive-signin.png

 

 

All one has to do at that point is click "Ok" and it will log them in. But I cannot seem to understand why this happens.  It is really annoying since scripts need to run to sync sharepoint shares and lots of times this dialog goes unseen and so the scripts don't run.  It is also not a user-friendly type of thing.

 

This ONLY happens with the second login. Each subsequent is fine.

 

My settings are this:

Tomnibus_MedOne_0-1619447186891.png

I'm not sure what could be causing this to happen. Other than, perhaps MFA? I set the computers up on a trusted network and the logout/login is also on a trusted network.

 

Not even sure where to start looking to solve this.

 

8 Replies
HI

Just a few questions. Without some background info, it's hard to troubleshoot the problem.. If you could share the answers. Thanx

*When you press "OK" is everything working like you expected?
*Are you seeing any errors in the azure ad sign in log?
*Does this problem occurs on all devices and what happens when you enroll a new device?
You are mentioning ONLY the second login.. so I guess you tested it with a new devices?
*Are there conditional access rules in place? Like blocking legacy auth etc?
*Is SSO working on other apps/like teams? dsregcmd /status to check prt
*Are there any weird accounts added in the windows settings/account / credentials manager
*What happens if you change 1 setting by a time to not configured? Like the move kfm ?
*Are the devices azure ad joined or hybrid ( maybe some domain gpo's conflicting?)
*Are there any weird errors in the AppData\Local\Microsoft\OneDrive\logs
*Does Onedrive uses modern auth? Maybe the first time it uses legacy the second time modern or reverse?
After pressing OK, yes, it logs in without a prompt.
There are no errors or CA failures in the Sign-in Log.
It occurs on all devices regardless of who logs in.
I test it with new and existing devices. Although, I'm new to Azure/Intune so most devices are new.
There are conditional access rules but it happens regardless of CA rules. Most of the time I'm on a trusted network so they do not apply.
All other apps work fine including Teams. They just login.
I'm not sure about weird accounts. I will have to look. I know first login, the user is always setup right because their desktop/documents/pictures files sync.
I will have to do testing with changing one setting at a time. It will affect a lot of people and I have to login with a new account every time to test it out.
Devices are Azure AD Joined, not hybrid.
I have no idea how to read any of the files in that log. Lots of strange stuff.
I don't know if it uses Modern Auth or not. I would like it to so if there is a way to force that, great. This may be the issue. I don't know.
WIth conditional access you can block legacy auth

For onedrive
HKEY_CURRENT_USER\Software\Microsoft\OneDrive\EnableADAL dword value: 2

To determine if some policies are the cause... it depends on your assignment. Did you target all devices/or all users? when you targeted all users, you could create 1 group with one user in it and make sure you exclude this group so you can test it out with 1 user on one test device.
I guess my question is. Why would it not use Modern Authentication? Is there a reason it wouldn't use it even if the registry value isn't there?
Hi,

Normally it would use modern auth, but I have seen it happen a couple of times some time ago...

https://support.microsoft.com/en-gb/office/error-code-0x8004deb4-when-signing-in-to-onedrive-e8a8d97...

@Tomnibus_MedOne 

Hi there... I've just exactly the same issue, OneDrive syncs first time, then after subsequent reboots it throws the "not signed in" error... as soon as you click ok, it shows the "signing in" and works fine afterwards...

 

Did you had any luck solving this?

@FABKI No, not at all. In fact, I have another Tenant that I recently got setup with Intune and it happens to them too!

 

It is pretty frustrating.

Which onedrive version are you pushing? Are you deploying the latest version? Maybe it install an older version and after a reboot he wants to install a newer version. Maybe testing it with the latest x64 version? So you could rule out the onedrive client itself