Cyber Cloud Ops Logo
Microsoft Intune

Step-by-Step: How to Require CTRL + ALT + DEL for Windows Login Using Intune

By Admin User
April 9, 2025
4 min
Step-by-Step: How to Require CTRL + ALT + DEL for Windows Login Using Intune

Improve security and protect user credentials by enforcing CTRL + ALT + DEL login with Microsoft Intune

Today, we're diving into an important security feature—requiring CTRL + ALT + DEL to log on—and how you can enforce it using Microsoft Intune.

Implementing this requirement enhances security by ensuring that user credentials are entered through a trusted path, reducing the risk of password interception. In this article, we’ll guide you through the best practices for enabling this setting, helping you achieve the same secure login experience as when accessing a Windows Server.

Whether you're just starting with Intune or looking to refine your security policies, this guide will help you strengthen your device management strategy.

📌 Table of Contents

Why Require CTRL + ALT + DEL to Log On

How to Require CTRL + ALT + DEL to Log On with Microsoft Intune

Why Require CTRL + ALT + DEL to Log On?

This security policy setting ensures that users must press CTRL + ALT + DEL before logging into a Windows device. Microsoft designed this feature to provide a secure authentication mechanism, protecting users from potential attacks that attempt to intercept passwords.

If this requirement is disabled, malicious software could trick users into entering credentials into a fake login prompt. By enforcing CTRL + ALT + DEL, passwords are always processed through a secure and trusted path, significantly reducing security risks.

How to Require CTRL + ALT + DEL to Log On with Microsoft Intune

Now, let’s walk through the step-by-step process of configuring this policy using Microsoft Intune. We'll set up this security requirement through Configuration Profiles, ensuring that all managed Windows devices follow this policy.

Step-by-Step Guide:

  1. Go to Intune Portal

  2. Click on Devices

  3. Click on Windows

  4. Click on Configuration Profiles

  5. Click on Create

  6. Select New Policy

  7. Platform: Windows 10 and later

  8. Profile Type: Settings Catalog

  9. Click on Create

Enhance security by enforcing CTRL + ALT + DEL login with Microsoft Intune – Fig. 01

Give it a meaningful name and description. Click on Next.

Enhance security by enforcing CTRL + ALT + DEL login with Microsoft Intune – Fig. 02

On the Configuration settings tab do the following:

  • Click on Add settings

  • Search for Interactive Logon Do Not Require CTRLALTDEL

  • Choose Local Policies Security Options

  • Click on Interactive Logon Do Not Require CTRLALTDEL

  • On the left site Enabel Interactive Logon Do Not Require CTRLALTDEL

Enhance security by enforcing CTRL + ALT + DEL login with Microsoft Intune – Fig. 03
  • Define your Scope if applicable and click on Next

  • On the Assignments tab assign the Policy to a Group or to All Users / All Devices

  • And Review + Create the Policy

Congratulations! Your Policy Has Been Successfully Deployed!

Conclusion

In this guide, you’ve learned how to require CTRL + ALT + DEL to log on using Microsoft Intune. We walked through the process of creating a new Configuration Profile in the Microsoft Intune Portal, ensuring that your assigned users or groups receive the policy when their devices check in with the Intune service.

Once the policy is applied, users will be required to press CTRL + ALT + DEL before logging into Windows, unless they use a smart card—a secure, tamper-proof device that stores authentication credentials.

We hope this guide has provided valuable insights to enhance your device security and management strategy.

More Information

For additional guidance on configuring the "Require CTRL + ALT + DEL to log on" policy using Microsoft Intune, refer to the following resources on Microsoft Learn:

These resources provide comprehensive instructions on setting up, managing, and optimizing device configurations with Microsoft Intune.

Thank you!

🖥️ Ricardo Barbosa

📘 MCT Microsoft Certified Trainer | ☁️ Cloud Architect

🌐 Technology Director - https://altelix.com

Originally published on LinkedIn · April 9, 2025 · read the original article
Tags:
MicrosoftIntune
EndpointManagement
Windows11
DeviceManagement
ModernWorkplace
MEM
ITPro
ZeroTrust
MVPBuzz
Keep reading

The full Hardening Windows Endpoints series

One control at a time, with the exact policy paths, the detection and remediation scripts, and the reporting to prove it worked across the fleet.

Browse all articles
Need a hand

Rolling this out across a real fleet?

Reading the guide is the easy part. Designing it for thousands of devices, piloting it without breaking production and proving compliance afterwards is the hard part. That is what we do at ISolutions CloudX.

Talk to ISolutions CloudX

Written by Ricardo Barbosa, Microsoft MVP and MCT. New guide every Wednesday and Friday. Follow on LinkedIn to get the next one.

Posts Sugeridos

Step-by-Step: How to Require CTRL + ALT + DEL for Windows Login Using Intune | CyberCloudOps Blog