possible to disable password based login in Windows 10 ?


Recommended Posts

is it possible to disable logging in to a computer with a password and instead enabling only using a PIN to login ?

 

maybe through registry or gp on home or pro ?

 

i just want to login with a PIN; no option whatsoever to use a password.

 

thank you for all that you do.

yes, just switch to sign in with a local account instead and don't type a password, it's under accounts and your info.  Or if you want to keep your microsoft account, type in run command "control userpasswords2" and uncheck users must enter a username ....   make sure to type your full email address as the username and password for your account

 

wait i misread, too much wine, disregard ha 😛

  On 07/05/2020 at 22:11, waysidesc said:

is it possible to disable logging in to a computer with a password and instead enabling only using a PIN to login ?

 

maybe through registry or gp on home or pro ?

 

i just want to login with a PIN; no option whatsoever to use a password.

 

thank you for all that you do.

Expand  

If you only want to use a PIN (that's what is recommended and what I do), click on Settings, then Accounts > Sign In Options.  You will see one option 'Windows Hello PIN (recommended).  Select that and it will have you set a PIN that you can use instead of your password.  Don't follow anything Som above told you.  

  On 07/05/2020 at 22:16, Som said:

yes, just switch to sign in with a local account instead and don't type a password, it's under accounts and your info.  Or if you want to keep your microsoft account, type in run command "control userpasswords2" and uncheck users must enter a username ....   make sure to type your full email address as the username and password for your account

 

wait i misread, too much wine, disregard ha 😛

Expand  

 

  On 07/05/2020 at 22:17, Jim K said:

It doesn't automatically switch to PIN after you enable it in the sign-in options?  I just enter pins when logging into my computers...not a password.

Expand  

 

  On 07/05/2020 at 22:19, devHead said:

If you only want to use a PIN (that's what is recommended and what I do), click on Settings, then Accounts > Sign In Options.  You will see one option 'Windows Hello PIN (recommended).  Select that and it will have you set a PIN that you can use instead of your password.  Don't follow anything Som above told you.  

Expand  

I have done this, devHead, but the option to switch to using a password to login is still available ( after opening 'sign-in options' on, say, lock screen ). I don't want that to appear at all.

 

Thank you for such quick replies !

  On 07/05/2020 at 22:25, waysidesc said:

 

 

I have done this, devHead, but the option to switch to using a password to login is still available ( after opening 'sign-in options' on, say, lock screen ). I don't want that to appear at all.

 

Thank you for such quick replies !

Expand  

Don't click the Sign-in options.  Just enter the PIN and you're in.  They can't remove them completely from the OS - what if you forget your PIN?  You can always fall back on the password.  Just enter your PIN and you have logged in.

  On 07/05/2020 at 22:27, devHead said:

Don't click the Sign-in options.  Just enter the PIN and you're in.  They can't remove them completely from the OS - what if you forget your PIN?  You can always fall back on the password.  Just enter your PIN and you have logged in.

Expand  

oh, that really ... is not ideal for what I am trying to achieve. that is kind of strange to me since the initiative to eliminate passwords ...

 

thank you, @devHead, @Som, and @Jim K.

  On 07/05/2020 at 22:29, waysidesc said:

oh, that really ... is not ideal for what I am trying to achieve. that is kind of strange to me since the initiative to eliminate passwords ...

 

thank you, @devHead, @Som, and @Jim K.

Expand  

I'm sorry, I got the impression that you were trying to achieve an option where you input a PIN instead of a password to log into your computer.  You're leaving something out if that isn't good enough.  What is ideal?  And why do you need to not have that 'Sign-in options' showing below?

  On 07/05/2020 at 22:39, devHead said:

I'm sorry, I got the impression that you were trying to achieve an option where you input a PIN instead of a password to log into your computer.  You're leaving something out if that isn't good enough.  What is ideal?  And why do you need to not have that 'Sign-in options' showing below?

Expand  

it is my fault; please do not apologize.

 

this admittedly is a very strange scenario, but i wanted a relative to have access to my computer --- that only uses a microsoft account --- to access shared notebooks/workspaces with OneNote/Groove 2007 for collaboration over my network ( for this, traditional --- that is, microsoft account --- credentials are necessary ) or even the cloud, but without the relative being able to login to my computer itself. this is why i wish to eliminate the option to use a password to login.

 

in hindsight, i guess i could collaborate with the onenote app that syncs to the cloud so that it is not necessary to share over a network, but it still strikes me as odd that this is not an option.

Edited by waysidesc
attempt at some clarification !

I'm still not following. You want to log in with a PIN instead of a password and you can do that easily. I'm not understanding what difference it makes that there is also an option on screen to use a password. Just use the PIN.

  On 07/05/2020 at 23:14, Zag L. said:

I'm still not following. You want to log in with a PIN instead of a password and you can do that easily. I'm not understanding what difference it makes that there is also an option on screen to use a password. Just use the PIN.

Expand  

i tried to clarify but ...

Well, you could try again... what is the issue with an option to enter a password but having the PIN being the default setting? Why is having it as an option not good enough?

  On 07/05/2020 at 22:11, waysidesc said:

i just want to login with a PIN; no option whatsoever to use a password.

Expand  

Why would you think a pin is different than a password?  What does it matter if you use a pin or a "password" a pin is just a password ;)  A pin is just something that is locally authenticated.

 

What exactly are you trying to accomplish - who will be using this pin?  Are you trying to allow for remote auth, or just local to the machine?

  On 08/05/2020 at 00:00, BudMan said:

Why would you think a pin is different than a password?

Expand  

Because it is ? Maybe not different on a fundamental level ... but they are not identical.

  On 08/05/2020 at 00:00, BudMan said:

What does it matter if you use a pin or a "password" a pin is just a password ;)

Expand  

Windows itself makes a distinction between the two ...

  On 08/05/2020 at 00:00, BudMan said:

A pin is just something that is locally authenticated.

Expand  

Yes.

  On 08/05/2020 at 00:00, BudMan said:

What exactly are you trying to accomplish - who will be using this pin?

Expand  

Please see my post above. What I had tried to accomplish was I just wanted the option for the PIN; only I would be using the PIN.

  On 13/05/2020 at 00:56, Jared- said:

Logic doesn't check out here, a PIN is a password...it's just numeric instead of alphanumeric... 

 

Eliminating passwords is using things like Smart Cards and MFA etc...

Expand  

Windows itself makes distinctions between PINs and passwords ... I really think that almost everyone is just arguing semantics ...

 

I didn't say that it was eliminating passwords ... I said it seems odd that Microsoft does not allow to use PINs only since its efforts to eliminate passwords ...

A pin is a "password" its something you use to auth to the device.  So it is a PASSWORD.. its just tied to the device, and not say your MS account!!!

 

Its a local "password"  I don't what kind of nonsense wording MS want's to put a around it.. There is no difference between a PIN and a local account password..  Only restriction is that PIN/Password can not be used to auth remotely.. You have to be local to the device.  Where a password even if a local account, could be used to auth to the device remotely.

 

The pin is used to unlock a local key, that is used to auth..  The tech behind how it auths you doesn't make it any different than a password - it is something you enter to auth you to the device/system.  You understand that a fingerprint is just a "password" as well right..  Its just something you have vs something know.  Still a "password" how ever you want to slice it up.

  • Like 2
  On 13/05/2020 at 08:00, BudMan said:

A pin is a "password" its something you use to auth to the device.  So it is a PASSWORD.. its just tied to the device, and not say your MS account!!!

Expand  

Please understand that I am not disagreeing with you fundamentally ... I also know that the PIN is tied to the device alone and not the Microsoft account ... that was the entire reason I wanted what I wanted ... 

  On 13/05/2020 at 08:00, BudMan said:

Its a local "password"  I don't what kind of nonsense wording MS want's to put a around it.. There is no difference between a PIN and a local account password..  Only restriction is that PIN/Password can not be used to auth remotely.. You have to be local to the device.  Where a password even if a local account, could be used to auth to the device remotely.

Expand  

You are fine. I understand.

  On 13/05/2020 at 08:00, BudMan said:

The pin is used to unlock a local key, that is used to auth..  The tech behind how it auths you doesn't make it any different than a password - it is something you enter to auth you to the device/system.  You understand that a fingerprint is just a "password" as well right..  Its just something you have vs something know.  Still a "password" how ever you want to slice it up.

Expand  

I understand this. I really think this is all semantics though ... !

So if you understand this - what is the point of wanting to have a pin, and not a password... Make your password 123456 if you want..

 

Not understanding the use case here????

 

Password can be used "remotely" pin can not.. Make your password, if your worried about some sort of remote hack?

"HIEb6CyUR*97cWQ@%pIi%gP$Qra3KTcX!K6s!s68QVhWRa!4Y1we^xR40G3uXFXDKOiM$5s1jIxUUl4W"

 

Set your pin to be 1234..

There's no realistic way to do this, unless you change your password to a PIN number, however what's wrong as budman says with creating a strong password, then PIN option. You'll never be asked for the password again.

hellopin.png

Or just don't set a password... My nephew finally brought his laptop over so I could upgrade it to 10.. He has no password... He just clicks login ;)

 

He uses the laptop at home, it doesn't go anywhere with it.  Its not open to the net, etc. etc. 

 

He clicks login - no need to enter anything.. So please explain why you think having a pin is something you want, while not having a password?  Just do not understand the point... You either put something in to login to the device, or you don't - be it you call it a pin, or a password means nothing.. You auth or you don't - period.

 

Only reason to have a password, is you actually want to auth to the machine remotely - file shares/RDP... Or you want your account to auth to another file share on your network, with its password.. same username/password combo, etc.

 

To be honest the only reason MS came up with the whole pin thing, is some hope that users wouldn't not be using some ###### password as their login for their MS account ;)  Which they want the users to use to auth to their machines... So they came up with a way for a user to put in 1234, and hopefully their MS password would be of some actual strength... Cuz gawd forbid users have to type in more than couple of characters or remember something longer than 6 characters in length..

 

Why even setup a pin if your going to setup "hello" just have it rec your face..  Then you don't have to type in anything either ;)

^ exactly!!!  if you don't want to type in a "password" that is how you do it.. . Your still "authing" your using your face or fingerprint as your "password"

 

If your having to type in a "pin" how is that any different than typing in a "password" ;)

 

The only point of a "pin" is your password on your MS account can be something like "Ssa96&8biWVPP0" while you type in 1234 to auth to your machine while your in front of it.. If you want to keep billy bob your brother of your machine ;)  Better to just setup face or fingerprint if that is what your trying to do.

  • 2 weeks later...

I wish the commentators would stop arguing over definitions and semantics and what-have-you ...

... it has no relevance to that for which I asked ! Regardless of identicality or similarity or however you define any such option(s) ... they are different options !

 

This is what I wanted https://www.neowin.net/news/windows-10-version-2004-is-coming---heres-what-you-need-to-know-about-it

  Quote

 

Accounts and security

Microsoft has made a few improvements to the user account experience, specifically for Microsoft accounts. Continuing its bid to get rid of passwords, it's now possible to disable password authentication altogether on your PC, forcing you to use biometrics or a PIN to log in. 

 

Expand  

It was not an option for actual use ... until the 2020 May Update.

In the past you had to set group policy to restrict account addition/creation on Windows 10, the new setting that restricts PIN only basically does about the same thing.
Although, there are still workarounds to both methods in regards of adding/creating an account and assigning which user group it belongs to.

Edited by Mineria

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Microsoft disables a key graphics feature in Edge by Paul Hill Microsoft has released its new security baseline for its Edge browser version 139, it includes the addition of one setting and the removal of one other. For those that are unaware, these security baselines allow admins to set an organization’s Edge browser settings to the default that Microsoft recommends at any one time. You can download the new package from the Security Compliance Toolkit. With this update, the company is enforcing the default to disable the EnableUnsafeSwiftShader policy. This will help to mitigate potential risks as malicious web content could exploit vulnerabilities in the renderer. SwiftShader is a software-based renderer that serves as a fallback for WebGL in environments without GPU acceleration, such as virtual machines. With Microsoft’s disabling of it, it seems as though this compatibility tool is now seen as a liability. The disabled SwiftShader was the most relevant in virtual machines which are widely used in enterprises, so this change poses the risk of causing a bit of disruption. While the move is a good one for security, those who it affects may want to deviate away from Microsoft’s security baselines. The security baseline announcement also mentions a new Edge for Business security connectors feature which is designed to integrate the browser with security software for DLP and authentication. Microsoft said that these connectors can close critical gaps in enterprise security. You can learn more on the feature’s landing page. Microsoft doesn’t seem to have made the change to SwiftShader due to existing vulnerabilities, instead the move seems to be a proactive security improvement. If you rely on it with your virtual machines, feel free to deviate away from Microsoft’s security baseline, but understand you’re no longer following the company’s security advice.
    • Edge 139 is out with big performance boost, password improvements, and more by Taras Buria Microsoft has released Edge 139 to all users in the Stable Channel. The latest version (139.0.3405.86) introduces some notable changes to the browser, performance improvements, and bug fixes. It also removes some of the existing features, as Microsoft strives to streamline the browser and its features. Microsoft Edge 139 brings a reworked Settings section, which is now built with WebUI2. This enables significant improvements in performance and responsiveness, which Microsoft recently detailed in a blog post. Additionally, Microsoft optimized Settings for a more cohesive user experience by simplifying the number of pages and reorganizing various options. Though it also disables an important graphics feature with this update. Wallet in Settings is discontinued. It now redirects users to the new "Passwords, Payment, and Personal Information" experience in settings. Speaking of passwords, the built-in password manager now has real-time notifications for compromised passwords. If one of your passwords is found in a known data breach, Edge will prompt you to take immediate action and create a new password. Other changes in Edge 139 include the following: Open external links in another profile when recommended by external applications. When Microsoft Edge is set as the default browser to open external links from applications, Microsoft Edge must determine which profile to open the links. Introducing a new policy that can enable/disable Microsoft 365 Copilot Chat in Edge for Business from showing in the toolbar. Edge for Business now has a dedicated policy, Microsoft365CopilotChatIconEnabled, to enable and disable Copilot in Edge from showing in the Edge toolbar. New Autofill Personal Information Settings Configuration. A web form field collection consent toggle will be available in Autofill settings (edge://settings/autofill/personalInfo). This allows users to consent to Microsoft Edge collecting web form field labels (e.g., "First Name," "Email") to improve Autofill suggestion accuracy. Web AI APIs for prompt and writing assistance. Microsoft Edge now implements the Writing Assistance APIs and the Prompt API (for Edge extensions) with a local language model, Phi-4-mini, that is built into the browser. These easy-to-use JavaScript APIs are made available via Edge flags (set to Enabled, by default only for the Summarizer and Prompt API for extensions) so that sites and extensions can apply AI capabilities on the web. Enhancements to Performance and Secure network. Browser essentials is now separated into two distinct experiences (Performance and Secure Network) - both available from the Settings and more menu (“…” on the menu bar). Reset Microsoft Edge enterprise sync. For users having problems syncing browsing data across other signed-in devices, they can reset sync data from the Microsoft servers via Edge Settings edge://settings/profiles/sync/reset. Update to Microsoft AutoUpdate policy. The MAUEnabled policy allowed admins to continue using Microsoft AutoUpdate on macOS. Finally, Edge 139 contains eight security fixes for vulnerabilities originating from Chromium. Microsoft also published a security guideline with details about a key graphics feature, which is now disabled. You can update to Microsoft Edge 139 by heading to edge://settings/help. By the way, if you uninstalled the browser and do not know how to get it back, check out this guide.
  • Recent Achievements

    • Week One Done
      harveycoleman123 earned a badge
      Week One Done
    • First Post
      EzraNougat earned a badge
      First Post
    • One Month Later
      westDvina earned a badge
      One Month Later
    • Community Regular
      Bern@rd went up a rank
      Community Regular
    • Week One Done
      Joey Solo earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      667
    2. 2
      +FloatingFatMan
      196
    3. 3
      ATLien_0
      154
    4. 4
      Xenon
      132
    5. 5
      wakjak
      102
  • Tell a friend

    Love Neowin? Tell a friend!