Rob Nicholson 11Reputation points
On a local domain joined Windows 11 Pro computer, where the primary profile is logged/synchronised using a Microsoft 365 tenant, attempting to add additional profiles to access other M365 tenants is fraught with difficultly. I support four clients each with their own M365 tenant which I've got separate Edge profiles. All of them signed in fine the first time but two of them have signed out whilst two remain signed in. This is the error that shows on the profile that isn't synchronising anymore:
If you try and turn on Sync in the profile settings, nothing happens. If you sign-out, you're up a creek without a paddle because you get this error trying to login:
Once you've got this error, you can't access that tenant ever again. Even removing the Edge profile and adding a new one doesn't help. The above error occurs again. The only solution I had was to restore the PC to an earlier Macrium Reflect image.
This is on Windows 11 Pro but I've managed to repeat the same problem on a test Windows 10 Pro virtual machine. The primary M365 tenant was added as an account to the domain joined PC by accepting this prompt:
This ends up with this account setting:
Microsoft Edge
Microsoft Edge
A Microsoft cross-platform web browser that provides privacy, learning, and accessibility tools.
1,739 questions
Sign in to follow
1{count} vote
Yu Zhou-MSFT 10,431Reputation points • Microsoft Vendor
2022-12-12T09:21:03.36+00:00 Hi @Rob Nicholson
Does the issue only happen with that two specific M365 account? Which version of Edge do you use on Win11, Win10 virtual and the restored version of earlier Macrium Reflect image? Besides, you can compare the Windows updates installed as the issue disappears after restoring the PC to an earlier image.
I also find a similar thread. You can refer to it. There's a reply says that closing all instances of Edge with Task Manager then deleting %LOCALAPPDATA%\Microsoft\Edge\User Data can fix the login issue. You can also have a try. Please notice to back up the browser data you need before you delete the folder.
Rob Nicholson 11Reputation points
2022-12-12T12:07:32.953+00:00 Does the issue only happen with that two specific M365 account?
When I wrote the post yes, but right now none of the additional profiles are synchronising:
Which version of Edge do you use on Win11, Win10 virtual and the restored version of earlier Macrium Reflect image?
Version 108.0.1462.46 (Official build) (64-bit) on all systems.
Besides, you can compare the Windows updates installed as the issue disappears after restoring the PC to an earlier image.
Possibly but this is endemic across multiple systems so doubt it's an update issue.
I also find a similar thread. You can refer to it. There's a reply says that closing all instances of Edge with Task Manager then deleting %LOCALAPPDATA%\Microsoft\Edge\User Data can fix the login issue. You can also have a try. Please notice to back up the browser data you need before you delete the folder.
I'll give it a go... I use Bitwarden password managed so zapping Edge settings isn't too much of a headache.
Cheers, Rob.
Yu Zhou-MSFT 10,431Reputation points • Microsoft Vendor
2022-12-13T09:21:44.037+00:00 Hi @Rob Nicholson
For the sync issue, I suggest that you can first try to reset sync in Settings > Profiles > Sync > Reset sync. If it doesn't work, you can refer to this doc Diagnose and fix Microsoft Edge sync issues to troubleshoot the issue. First go to edge://sync-internals to identify if identity issue or sync issue according to the doc. If sync issue, then do the basic troubleshooting steps.
Sign in to comment
3 answers
Sort by: Most helpful
Most helpful Newest Oldest
Rob Nicholson 11Reputation points
2022-12-12T12:08:26.48+00:00 BTW - all systems are on 22H2.
0 commentsNo comments
Sign in to comment
Rob Nicholson 11Reputation points
2022-12-12T12:19:13.437+00:00 Another scenario where M365 profiles are messed up. Brand new Windows 11 test build:
- Windows 11 Pro 22H2 in test VM (not activated)
- Logon initially as a Microsoft personal account (as you can't join domain during setup)
- Windows updates
- Joined to local domain
- Logged on as domain account
- Synchronise Edge using my own M365 tenant/email and select the option to "Stay logged in"
- Add second profile for another M365 tenant
- Try and open their SharePoint home page
I get the error "You need permission to access this site". This is because Edge is attempting to logon (incorrectly) using the account added to Windows in step 6 and not the client's email acccount. It fails because my own M365 tenant/email is added as a guest to the client's M365 tenant (as they have shared documents with me), i.e. rob.nicholson@mydomain.com is present in the Azure AD for the @theclient.com.
I'm pretty sure that if I deleted my own guest account in the client's Azure AD, that this issue would go away and I'd be able to open their SharePoint home page using the correct account.
The core problem in this instance (but I suspect it's linked to sync problems) is that Edge is attempting to use the account that's added here to authenticate against the tenant. This behaviour is IMO wrong when you're set-up a separate Edge profile for the very reason of isolating settings, accounts etc.
Rob Nicholson 11Reputation points
2022-12-12T12:21:37.247+00:00 Of course, the other option is to not select the option to "Stay logged in". That also resolves the problem but I still stand by the observation that you should be able to configure Edge to really treat profiles as isolated and not try to help by authenticating using any "Access work or school" accounts you happen to have added. Often by mistake as the default option is to "Stay logged on" which adds the account in this way.
Rob Nicholson 11Reputation points
2022-12-12T12:27:26.687+00:00 In the above example, the second profile happens to be one where my primary M365 account is a guest in that tenant. For another client, my own M365 account isn't a guest. In that case, you get this prompt when you try and open their SharePoint site in a separate profile. But at least in this case, you have the option to sign in with a different account:
In the previous example where my M365 account is also a guest in their Azure AD, there isn't such an option to use a different account. The only solution is to remove it under "Access work or school" in settings.
Yu Zhou-MSFT 10,431Reputation points • Microsoft Vendor
2022-12-13T09:39:04.72+00:00 Hi @Rob Nicholson
For this scenario, you can check if you have enabled Automatically sign in to sites with your current work or school account? in edge://settings/profiles/multiProfileSettings.
Besides, you can try select No, sign in to this app only when you add an account to the computer to see if this can fix the issue.
Brent Newland 0Reputation points
2023-08-22T20:43:06.65+00:00 There is an Edge addon to help fix this issue:
https://microsoftedge.microsoft.com/addons/detail/use-my-current-account/hbfacnnpimgddoojjaonnnbeljegicfl
Sign in to comment
Brent Newland 0Reputation points
2023-08-22T20:41:51.0333333+00:00 I have had this issue for the longest time, and I think I fixed it.
Go to PC Settings > Accounts > Email & Accounts
Add the account that is giving you the -2146893802 error here.
Go back to Edge and click Sign In.
My account started syncing immediately.
0 commentsNo comments
Sign in to comment
Sign in to answer