VMware Horizon Community
Alexz1
Contributor
Contributor

o365 credentials not being saved. DEM horizon 7.13, non-persistent instant clones

Hello-

I've been having trouble trying to get users credentials to persist through to their next machine after deletion.

I'm running ODT and have shared licensing activated for the install. Looking through documentation I've combined different things but still to no avail. Directflex is off. I'm really hoping this is something small I've been missing. 

Here's my shared settings:

[IncludeRegistryTrees]
HKCU\Software\Microsoft\Office\16.0\Common
HKCU\Software\Microsoft\Office\16.0\FirstRun
HKCU\Software\Microsoft\Office\16.0\Registration
HKCU\Software\Microsoft\Office\16.0\User Settings
HKCU\Software\Microsoft\Office\Common
HKCU\Software\Microsoft\Shared Tools\Proofing Tools
HKCU\Software\Microsoft\VBA
HKCU\Software\Microsoft\Internet Explorer\IntelliForms
HKCU\Software\Microsoft\Office\16.0\Outlook\Profiles


[ExcludeRegistryTrees]
HKCU\Software\Microsoft\Office\Common\ClientTelemetry
HKCU\Software\Microsoft\Office\16.0\Common\Identity\DocToIdMapping
HKCU\Software\Microsoft\Office\16.0\Common\Identity\Identities
HKCU\Software\Microsoft\Office\16.0\Common\Identity\IdToAuthorityUrlMapping
HKCU\Software\Microsoft\Office\16.0\Common\Identity\Profiles

[IncludeFolderTrees]
<AppData>\Microsoft\Access
<AppData>\Microsoft\AddIns
<AppData>\Microsoft\Bibliography
<AppData>\Microsoft\Excel
<AppData>\Microsoft\Office
<AppData>\Microsoft\OneNote
<AppData>\Microsoft\Outlook
<LocalAppData>\Microsoft\Outlook
<AppData>\Microsoft\Powerpoint
<AppData>\Microsoft\Proof
<AppData>\Microsoft\Publisher
<AppData>\Microsoft\Publisher Building Blocks
<AppData>\Microsoft\Signatures
<AppData>\Microsoft\Spelling
<AppData>\Microsoft\Templates
<AppData>\Microsoft\UProof
<AppData>\Microsoft\Word
<AppData>\Microsoft\Crypto
<AppData>\Microsoft\Protect
<LocalAppData>\Microsoft\Office\ONetConfig
<UserProfile>\AppData\LocalLow\Microsoft
<LocalAppData>\Microsoft\Credentials
<AppData>\Microsoft\Credentials
<LocalAppData>\Microsoft\Office\16.0\Licensing

Profile Cleanup
[DeleteRegistryTrees]
HKCU\Software\Microsoft\Office\16.0\Common\Identity

0 Kudos
10 Replies
mrkasius
Hot Shot
Hot Shot

Hi @Alexz1,

Do you use single sign-on for Office 365?

0 Kudos
Alexz1
Contributor
Contributor

We use Azure AD Connect with password hash synchronization, sso is enabled, yes.

0 Kudos
sjwood
Contributor
Contributor

Alexz1, did you make any progress with this? I'm having the same exact problem as you and have a similar config for DEM and shared activation. 

I think this started when we recently turned on modern authentication for O365. 

0 Kudos
vBritinUSA
Hot Shot
Hot Shot

Personally I would use FSLogix, It will hold this for you as well as enabling indexing for searching, Mailbox cache and Onedrive Cache. Use DEM to manage the rest of the persona.

But, with regards to SSO. If a user logs in with DEM disabled does Outlook/Word automatically sign in with the creds?

Please mark helpful or correct if my answer resolved your issue.
sjwood
Contributor
Contributor

I'd prefer not to have another utility just for this purpose. There's already enough moving parts to manage to make Horizon comparable enough to a physical machine to make it palatable to the users. O365 was working just fine with DEM up until a month or so ago for us.

With DEM disabled Outlook/Word does NOT automatically sign in. 

0 Kudos
vBritinUSA
Hot Shot
Hot Shot

Understood your concerns. Even VMware Horizon best practices suggested using it. best practices delivering microsoft office 365 

Maybe worth a read.

Are the VM's Azure AD Joined? if so are they also being cleaned up in AAD?

Please mark helpful or correct if my answer resolved your issue.
0 Kudos
DigeratiMVP
Contributor
Contributor

I tried to use FSlogix and it did not capture what was needed.

0 Kudos
TomH201110141
Enthusiast
Enthusiast

It seems to be the same problem I had. Look at this thread and my last post:

https://communities.vmware.com/t5/Dynamic-Environment-Manager/DEM-template-for-Office-365-is-insuffi...

 

 

 

 

0 Kudos
Beebes
Contributor
Contributor

I turned on Modern Auth in the options for 0365 and my experience was that the passwords weren't saved by DEM. Before enabling Modern Auth (and after disabling it) Outlook (mailbox) passwords were saved by DEM. I'm thinking that the Modern Auth password is being saved into another location that DEM is capturing.

 

0 Kudos
lgruembel
Contributor
Contributor

0 Kudos