- DarkLight
- PDF
Passthrough authentication not working in Windows 11 24H2 (and newer)
PROBLEM: AD-Passthrough not working in Windows 11 24H2 (and newer)
Connectors and SnapAPP applications which use Active Directory (AD) Passthrough populate the username but the password is blank.
ROOT CAUSE
Windows 11 24H2 changed the behavior of the Multiple Provider Router (MPR) which is the component that handles communication between Windows and the various network providers that are installed, including XA's credential provider. This impacts XA's ability to use AD-passthrough credentials in Connectors (Wrappers) and SnapApp Control Items.
For more information about the change made by Microsoft, see this article: Deprecated Features for Windows Client
RESOLUTION: Enable MPR Notification Policy
In Windows 11 24H2, MPR notification for the system policy is disabled by default. MPR notification for the system policy must be enabled in the Group Policy Object (GPO) template.
How to enable MPR Notification
Set the “Configure the transmission of the user’s password in the content of the MPR Notifications sent by Winlogon” policy to “Enabled”.