Passthrough authentication not working in Windows 11 24H2 (and newer)
  • 08 Aug 2025
  • 1 Minute to read
  • Contributors
  • Dark
    Light
  • PDF

Passthrough authentication not working in Windows 11 24H2 (and newer)

  • Dark
    Light
  • PDF

Article summary

PROBLEM: AD-Passthrough not working in Windows 11 24H2 (and newer)

Connectors and SnapAPP applications which use Active Directory (AD) Passthrough populate the username but the password is blank. 

ROOT CAUSE

Windows 11 24H2 changed the behavior of the Multiple Provider Router (MPR) which is the component that handles communication between Windows and the various network providers that are installed, including XA's credential provider. This impacts XA's ability to use AD-passthrough credentials in Connectors (Wrappers) and SnapApp Control Items.

For more information about the change made by Microsoft, see this article:  Deprecated Features for Windows Client

RESOLUTION: Enable MPR Notification Policy

In Windows 11 24H2, MPR notification for the system policy is disabled by default. MPR notification for the system policy must be enabled in the Group Policy Object (GPO) template. 

NOTE
To enable MPR notifications for the System policy, the system must be at Windows 11 24H2 or higher.


How to enable MPR Notification

Set the “Configure the transmission of the user’s password in the content of the MPR Notifications sent by Winlogon” policy to “Enabled”.


Deprecated Features for Windows Client


Was this article helpful?