> Source: [sk72900](https://support.checkpoint.com/results/sk/sk72900)

# sk72900 - Only Authorized Preboot user is allowed to log into Windows

| Property | Value |
|----------|-------|
| Solution ID | sk72900 |
| Date Created | 2012-05-15 |
| Last Modified | 2025-06-24 |
| Technical Level | Advanced |
| Products | Endpoint Security |
| Versions | E89.X, E88.X |
| OS | Windows |

## Symptoms

- When trying to log into Windows with Full Disk Encryption, and with the OneCheck policy enabled from the Full Disk Encryption Policy, only the authorized preboot users can log into the Windows logon. This is not the preboot logon.

## Cause

This is an optional setting by default is enabled.   
If you open the Full Disk Encryption Policy and select the OneCheck Settings branch there is a setting that will enforce only the authorized Preboot users can log into Windows.

Require that only an authorized Preboot user is allowed to log into Windows

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
