Force login with SSO only (Recommendation Setting)
Vérifié avec Zoom 7.1.5 — mis à jour le 10 juillet 2026
Pris en charge sur : Microsoft Windows XP SP2 or later
Chemin dans la console GPO
Configuration utilisateur\Modèles d'administration\Zoom Meetings\Zoom Meetings - Default Settings (users can override)\Zoom General Default Settings Description
Default policy is false. If this policy is set to true, client will be forced to login with SSO only. If this policy is set to false, client will not be forced to login with SSO. If this policy is not set, client will use default policy. If another setting 'Disable login with SSO' is enabled, this policy will be voided and makes no impact no matter this policy is set to true or false.
Registre
Software\Policies\Zoom\Zoom Meetings\Recommended\General Nom de valeur : ForceLoginWithSSO
Activé : ForceLoginWithSSO = 1
Désactivé : ForceLoginWithSSO = 0
Générateur d'exports
BETAConfigurez l'état, la portée et les options, puis générez les sorties .reg, PowerShell, Intune et SCCM — ou ajoutez le paramètre à une collection multi-paramètres.
Ces exports écrivent le registre — ce n'est pas une GPO managée. ⓘ
Fichier .reg
Windows Registry Editor Version 5.00
; Exported from gporais.com
; Policy: Force login with SSO only (Recommendation Setting)
; State: Enabled
; Supported on: Microsoft Windows XP SP2 or later
[HKEY_CURRENT_USER\Software\Policies\Zoom\Zoom Meetings\Recommended\General]
"ForceLoginWithSSO"=dword:00000001 Autres formats (PowerShell, Intune, SCCM)
PowerShell
# Exported from gporais.com
# Policy: Force login with SSO only (Recommendation Setting)
# State: Enabled
# Supported on: Microsoft Windows XP SP2 or later
# Warning: In SYSTEM context (the Intune default), HKCU targets the SYSTEM profile. Run this script using the logged-on credentials.
$path = 'HKCU:\Software\Policies\Zoom\Zoom Meetings\Recommended\General'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'ForceLoginWithSSO' -Value 1 -Type DWord Intune XML
Aucune correspondance directe Policy CSP / OMA-URI pour cette stratégie. Utilisez l'onglet Intune Remediation, ou importez l'ADMX dans Intune. Intune Remediation
# === Detection script ===
# Exported from gporais.com
# Policy: Force login with SSO only (Recommendation Setting)
# State: Enabled
# Supported on: Microsoft Windows XP SP2 or later
# Warning: In SYSTEM context (the Intune default), HKCU targets the SYSTEM profile. Run this script using the logged-on credentials.
function Test-RegistryValue {
param(
[Parameter(Mandatory = $true)][string]$Path,
[Parameter(Mandatory = $true)][string]$Name,
[object]$Expected,
[ValidateSet('String', 'DWord', 'MultiString')][string]$Kind = 'String',
[switch]$Absent
)
try {
$item = Get-ItemProperty -LiteralPath $Path -Name $Name -ErrorAction Stop
} catch {
return $Absent.IsPresent
}
if ($Absent.IsPresent) { return $false }
$actual = $item.$Name
if ($Kind -eq 'DWord') { return ([int64]$actual) -eq ([int64]$Expected) }
if ($Kind -eq 'MultiString') {
$actualValues = @($actual)
$expectedValues = @($Expected)
if ($actualValues.Count -ne $expectedValues.Count) { return $false }
for ($i = 0; $i -lt $expectedValues.Count; $i++) {
if ([string]$actualValues[$i] -ne [string]$expectedValues[$i]) { return $false }
}
return $true
}
return [string]$actual -eq [string]$Expected
}
$checks = @(
(Test-RegistryValue -Path 'HKCU:\Software\Policies\Zoom\Zoom Meetings\Recommended\General' -Name 'ForceLoginWithSSO' -Expected 1 -Kind DWord)
)
if ($checks -notcontains $false) {
Write-Output 'Compliant'
exit 0
}
Write-Output 'Non-compliant'
exit 1
# === Remediation script ===
# Exported from gporais.com
# Policy: Force login with SSO only (Recommendation Setting)
# State: Enabled
# Supported on: Microsoft Windows XP SP2 or later
# Warning: In SYSTEM context (the Intune default), HKCU targets the SYSTEM profile. Run this script using the logged-on credentials.
$path = 'HKCU:\Software\Policies\Zoom\Zoom Meetings\Recommended\General'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'ForceLoginWithSSO' -Value 1 -Type DWord Scripts SCCM
# Exported from gporais.com
# Policy: Force login with SSO only (Recommendation Setting)
# State: Enabled
# Supported on: Microsoft Windows XP SP2 or later
# SCCM Configuration Item guidance:
# Create a Configuration Item of type "Setting: Script".
# Discovery script: use the Detection script below.
# Remediation script: use the Remediation script below.
# Compliance rule: the Discovery script output equals 'Compliant'.
# === Detection script ===
# Exported from gporais.com
# Policy: Force login with SSO only (Recommendation Setting)
# State: Enabled
# Supported on: Microsoft Windows XP SP2 or later
# Warning: In SYSTEM context (the Intune default), HKCU targets the SYSTEM profile. Run this script using the logged-on credentials.
function Test-RegistryValue {
param(
[Parameter(Mandatory = $true)][string]$Path,
[Parameter(Mandatory = $true)][string]$Name,
[object]$Expected,
[ValidateSet('String', 'DWord', 'MultiString')][string]$Kind = 'String',
[switch]$Absent
)
try {
$item = Get-ItemProperty -LiteralPath $Path -Name $Name -ErrorAction Stop
} catch {
return $Absent.IsPresent
}
if ($Absent.IsPresent) { return $false }
$actual = $item.$Name
if ($Kind -eq 'DWord') { return ([int64]$actual) -eq ([int64]$Expected) }
if ($Kind -eq 'MultiString') {
$actualValues = @($actual)
$expectedValues = @($Expected)
if ($actualValues.Count -ne $expectedValues.Count) { return $false }
for ($i = 0; $i -lt $expectedValues.Count; $i++) {
if ([string]$actualValues[$i] -ne [string]$expectedValues[$i]) { return $false }
}
return $true
}
return [string]$actual -eq [string]$Expected
}
$checks = @(
(Test-RegistryValue -Path 'HKCU:\Software\Policies\Zoom\Zoom Meetings\Recommended\General' -Name 'ForceLoginWithSSO' -Expected 1 -Kind DWord)
)
if ($checks -notcontains $false) {
Write-Output 'Compliant'
exit 0
}
Write-Output 'Non-compliant'
exit 1
# === Remediation script ===
# Exported from gporais.com
# Policy: Force login with SSO only (Recommendation Setting)
# State: Enabled
# Supported on: Microsoft Windows XP SP2 or later
# Warning: In SYSTEM context (the Intune default), HKCU targets the SYSTEM profile. Run this script using the logged-on credentials.
$path = 'HKCU:\Software\Policies\Zoom\Zoom Meetings\Recommended\General'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'ForceLoginWithSSO' -Value 1 -Type DWord Vous construisez une collection multi-paramètres ? Ajoutez ce paramètre et générez des exports combinés (.reg, PowerShell, GPO).