SHD / MC Checker

MC1438491 | Admin control for single sign-on prompts in Windows



MC1438491 | Admin control for single sign-on prompts in Windows

Classification stayInformed
Last Updated 07/24/2026 21:05:11
Start Time 07/24/2026 21:05:10
End Time 07/24/2027 21:05:10
Message Content
What and why
Microsoft has introduced a new administrative control for single sign-on (SSO) prompts on Windows. A new registry-based policy now allows IT admins to automatically accept SSO permissions on managed devices, removing this prompt for users.
 
This control applies only to managed devices with Microsoft Entra ID accounts running Windows 11, version 24H2 or 25H2.
 
Rollout schedule
Available now. 
 
Impact on your organization
Organizations that manage Windows devices should review whether this control aligns with existing authentication policies and sign-in experiences.
Depending on configuration choices, SSO prompt behavior might differ from the current experience on managed devices.
 
Action required/recommendations
No immediate action is required. Organizations that want to adopt this control should:
 
Compliance considerations
No compliance considerations are identified. Review as appropriate for your organization.
Machine Translation
何となぜ
MicrosoftはWindows上でシングルサインオン(SSO)プロンプトに対する新しい管理管理を導入しました。新しいレジストリベースのポリシーにより、IT管理者が管理対象デバイス上でSSO権限を自動的に受け入れられるようになり、このプロンプトはユーザーから削除されました。
 
この管理は、Windows 11(バージョン24H2または25H2)を搭載したMicrosoft Entra IDアカウントを持つ管理デバイスにのみ適用されます。
 
展開スケジュール
現在入手可能です。 
 
組織への影響
Windowsデバイスを管理する組織は、この管理が既存の認証ポリシーやサインイン体験と整合しているかどうかを見直すべきです。
設定の選択によっては、SSOプロンプトの動作が管理されたデバイスでの現在の体験とは異なる場合があります。
 
必要な行動/提言
即時の対応は必要ありません。この管理を導入したい組織は以下のことをすべきです:
 
コンプライアンスの考慮事項
コンプライアンス上の考慮事項は特定されていません。組織に応じた適切なレビューを行いましょう。