2FA Office 365 - Blank page

Mirko 0 Punti di reputazione
2026-05-18T20:08:07.84+00:00

Hi, we use to deploy a Win11 golden image on some of our computers, which is built on a virtual machine and captured using Dell Image Assist. Now we have to upgrade from Office 2016 to Office 365, so the licensing has changed too from product keys to user-based licensing on a tenant. I took our golden image, uninstalled Office 2016 and installed Office365; all seemed good as usual, but when we try to activate Office 365 in-app (from Word for example) with microsoft account and password the procedure get stuck at the 2fa configuration step, showing a blank page. The only workaround atm is to use web login instead to complete it, but we need to get the in-app procedure working too.

I noticed 3 things that could help understanding what is happening:

1- the creation of a new local account from the modern Windows settings is also broken; it tries to load the microsoft account login page for some seconds and then it closes itself.

2- If I manage to create a new local account (for example through lusrmgr.msc) and I login into it, Office in-app 2fa starts working properly.

3- On the virtual machine, before capturing the image, it works fine too.

My idea is that something breaks after sysprep, but I'm not sure what and how to fix it.

What do you think about it?

Thanks for help.

Mirko

Microsoft 365 e Office | Installare, riscattare, attivare | Per il lavoro | Windows
0 commenti Nessun commento

1 risposta

Ordina per: Più utili
  1. Alexis-NG 18,070 Punti di reputazione Personale Esterno Microsoft Moderatore
    2026-05-18T21:29:16.71+00:00

    Hi Mirko,

    Thank you for providing such a detailed breakdown of the issue.

    Modern Microsoft authentication (including Office activation and MFA prompts) relies on components such as the Microsoft Edge WebView2 runtime and the Web Account Manager (WAM), which are closely tied to user profiles. These authentication interfaces are rendered through WebView2.

    In your scenario, the issue seems to be introduced during the Sysprep process, particularly when capturing the image with CopyProfile=True. This setting copies the administrator’s profile state into the Default User profile, which in Windows 11 can disrupt the proper initialization of user-specific components. As a result, critical elements like the Microsoft AAD Broker Plugin responsible for rendering authentication dialogs may fail to function correctly, leading to the blank MFA page you are experiencing.

    Microsoft warns against using CopyProfile to handle modern Windows layouts because encrypted users-specific hashes break when copied to other users.

    For reference, please consult:

    Customize the default user profile by using CopyProfile | Microsoft Learn

    Authentication automatically fails in Microsoft 365 services - Microsoft 365 | Microsoft Learn

    Issues with AppX, MSIX, or Microsoft store applications - FSLogix | Microsoft Learn

    At this stage, while we have identified some likely contributing factors (such as profile-level configuration and authentication components affected during the imaging process), the exact root cause cannot be fully confirmed yet.

    To proceed further, this will require a deeper investigation into the backend and system-level configurations. This includes reviewing how authentication services (such as the Web Account Manager and related components) are provisioned and initialized in the deployed environment, as well as validating whether any settings or states carried over during the imaging process may be impacting the sign-in flow.

    This issue needs a more in-depth review, which may involve collecting diagnostic logs and examining the system configuration in detail. Given the nature of the problem, the most effective next step is using your admin credentials to submit a support request through the Microsoft 365 Admin Center .

     Microsoft also provides customer service phone numbers based on your region. You can find the appropriate contact number here: Customer service phone numbers - Microsoft Support 

    This route ensures that a Microsoft support engineer can initiate a remote session to investigate backend configurations, run advanced diagnostic tools, and, if necessary, escalate the case to specialized teams with access to internal systems and logs. These backend resources are essential for resolving issues that go beyond what’s visible in the user interface.

    As community moderators, we’re here to guide you, but due to privacy and security limitations, we don’t have access to the backend tools required for a full resolution. For this reason, contacting Microsoft Support via the Admin Center is the most secure and efficient way forward.

    I hope this helps you resolve the issue quickly. I’m glad to assist and truly hope the information provided has been useful. Please feel free to reach out anytime if you need further assistance.  

    If you find my post helpful, kindly consider marking it as the accepted answer. Doing so can assist others in the community who may have similar questions in finding solutions more quickly.  

    Thank you for your kindness and contributions to the forum. 


    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.  

    La risposta è stata utile?

    0 commenti Nessun commento

Risposta

Le risposte possono essere contrassegnate come "Accettata" dall'autore della domanda e "Consigliata" dai moderatori, in modo da consentire agli utenti di sapere che la risposta ha risolto il problema dell'autore.