--- title: FederatedAuthentication Policy CSP description: Learn more about the FederatedAuthentication Area in Policy CSP. ms.date: 01/18/2024 --- # Policy CSP - FederatedAuthentication ## EnableWebSignInForPrimaryUser | Scope | Editions | Applicable OS | |:--|:--|:--| | ✅ Device
❌ User | ✅ Pro
✅ Enterprise
✅ Education
✅ Windows SE
✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 11, version 22H2 [10.0.22621] and later | ```Device ./Device/Vendor/MSFT/Policy/Config/FederatedAuthentication/EnableWebSignInForPrimaryUser ``` Specifies whether web-based sign-in is enabled with the Primary User experience. > [!NOTE] > Web Sign-in is only supported on Microsoft Entra joined PCs. **Description framework properties**: | Property name | Property value | |:--|:--| | Format | `int` | | Access Type | Add, Delete, Get, Replace | | Default Value | 0 | **Allowed values**: | Value | Description | |:--|:--| | 0 (Default) | Feature defaults as appropriate for edition and device capabilities. As of now, all editions/devices exhibit Disabled behavior by default. However, this may change for future editions/devices. | | 1 | Enabled. Web Sign-in Credential Provider will be enabled for device sign-in. | | 2 | Disabled. Web Sign-in Credential Provider won't be enabled for device sign-in. | ## Related articles [Policy configuration service provider](policy-configuration-service-provider.md)