On the login screen for Defender Desktop Login the user can click (or enter return) on the arrow next to the logon fields, however no logon occurs. No error is shown, and the text cursor moves back to the username prompt.
1. If the workstation has not been rebooted after installing Defender Desktop Login, this same issue may occur. The workstation must be rebooted after the installation of Defender Desktop Login to complete the installation.
2. The issue occurs when the Defender Desktop Login credential provider is unable to allocate a block of shared memory in the Microsoft Windows lsass.exe process. This is due to 3rd party antivirus software (such as Kaspersky, eSet, Nod32, Windows Defender) being installed on the machine which is blocking the process. This occurs when the security / AV software has the HIPS (Host-based Intrusion Prevention System) options enabled.
WORKAROUND 1
1. Browse into HIPS's advance options page for your antivirus software.
2. Determine if Rules and exception can be configured.
3. Configure a rule that allows the Microsoft process C:\Windows\System32\LogonUI.exe (source) to access C:\Windows\System32\lsass.exe (target).
WORKAROUND 2 - Kaspersky AV software
1. Browse into HIPS's advance options page for your antivirus software.
2.. Disable the “Self Defense" option
© 2024 One Identity LLC. ALL RIGHTS RESERVED. Feedback Terms of Use Privacy Cookie Preference Center