{"id":5115,"date":"2023-05-16T08:43:30","date_gmt":"2023-05-16T06:43:30","guid":{"rendered":"https:\/\/www.msb365.blog\/?p=5115"},"modified":"2023-07-08T11:48:19","modified_gmt":"2023-07-08T09:48:19","slug":"solution-for-microsoft-error-caa50021","status":"publish","type":"post","link":"https:\/\/www.msb365.blog\/?p=5115","title":{"rendered":"Logon problems Session Broker &#8211; CAA50021"},"content":{"rendered":"<p>Some time ago, one of my customers had the problem that after his environment was migrated to the cloud (hybrid with Microsoft 365), some users had sporadic logon problems with Microsoft 365 services.<\/p>\n<p>The phenomena can be described as follows:<br \/>\nUsers can log on to Microsoft 365 Services via the browser without any problems (everything is ok).<br \/>\nSSO partially does not work<br \/>\nUsers lose their logon in Office applications such as Word, Outlook or Teams.<br \/>\nRe-logon in the Office products has to be repeated several times<br \/>\nRe-logon does not always work directly (user gets an error message)<\/p>\n<p>Some of the users have also received the following message during re-logon:<\/p>\n<p><img fetchpriority=\"high\" decoding=\"async\" class=\"alignnone size-full wp-image-5116\" src=\"https:\/\/msb365.abstergo.ch\/wp-content\/uploads\/2023\/04\/error.jpg\" alt=\"\" width=\"588\" height=\"588\" srcset=\"https:\/\/msb365.abstergo.ch\/wp-content\/uploads\/2023\/04\/error.jpg 588w, https:\/\/msb365.abstergo.ch\/wp-content\/uploads\/2023\/04\/error-300x300.jpg 300w, https:\/\/msb365.abstergo.ch\/wp-content\/uploads\/2023\/04\/error-150x150.jpg 150w, https:\/\/msb365.abstergo.ch\/wp-content\/uploads\/2023\/04\/error-500x500.jpg 500w\" sizes=\"(max-width: 588px) 100vw, 588px\" \/><\/p>\n<p>It was also interesting that only a handful of people were affected.<\/p>\n<p>\u00a0<\/p>\n<h3>Solving the problem<\/h3>\n<p>I had done a deeper analysis of the possible synchronization problems on different levels. The customer had configured the Azure AD Connect as hash sync.<br \/>\nAfter a deeper look in the Event Viewer, I noticed that there was a problem with the Session Broker.<\/p>\n<p>One of the solutions was to reload the Session Broker plugin for the affected clients. (This can be done with the following command):<\/p>\n<pre>if (-not (Get-AppxPackage Microsoft.AAD.BrokerPlugin)) { Add-AppxPackage -Register \"$env:windir\\SystemApps\\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy\\Appxmanifest.xml\" -DisableDevelopmentMode -ForceApplicationShutdown } Get-AppxPackage Microsoft.AAD.BrokerPlugin<\/pre>\n<p>However, this only really helped one user, and only temporarily. Therefore, I had to continue my analysis and was able to find the right solution.<\/p>\n<p>The problem was the Anti Virus Client (in this case the product from Trendmicro). After I had carried out the following points, the problem was finally solved:<\/p>\n<p>\u00a0<\/p>\n<p>Go to SECURITY AGENTS > go to the specific group where the issue occurs<\/p>\n<p>\u00a0<\/p>\n<p><strong>I. Under Real-Time Scan \/ Scheduled Scan \/ Manual Scan> click +Add<\/strong><\/p>\n<p>Add the following directories in the Folders tab:<\/p>\n<p>C:\\Users\\*\\AppData\\Local\\Packages\\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy*<\/p>\n<p>C:\\Windows\\SystemApps\\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy*<\/p>\n<p>Add the following directories in the Files tab:<\/p>\n<p>C:\\Windows\\SystemApps\\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy\\Microsoft.AAD.BrokerPlugin.exe<\/p>\n<p>\u00a0<\/p>\n<p><strong>II. Add the following Under the Behavior Monitoring Approved List:<\/strong><\/p>\n<p>C:\\Windows\\SystemApps\\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy\\Microsoft.AAD.BrokerPlugin.exe<\/p>\n<p>C:\\Users\\*\\AppData\\Local\\Packages\\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy*<\/p>\n<p>\u00a0<\/p>\n<p><strong>III. Add the following files below for Trusted Program List:<\/strong><\/p>\n<p>Go to Policies> Policy Management> Global Security Agent Settings> Trusted Program List > Add+<\/p>\n<p>C:\\Windows\\SystemApps\\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy\\Microsoft.AAD.BrokerPlugin.exe<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Some time ago, one of my customers had the problem that after his environment was migrated to the cloud (hybrid with Microsoft 365), some users had sporadic logon problems with Microsoft 365 services. The phenomena can be described as follows: Users can log on to Microsoft 365 Services via the browser without any problems (everything [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":5121,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_crdt_document":"","om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"_uf_show_specific_survey":0,"_uf_disable_surveys":false,"footnotes":""},"categories":[685,1923],"tags":[],"class_list":["post-5115","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-active-directory","category-microsoft-365"],"post_mailing_queue_ids":[],"_links":{"self":[{"href":"https:\/\/www.msb365.blog\/index.php?rest_route=\/wp\/v2\/posts\/5115","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.msb365.blog\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.msb365.blog\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.msb365.blog\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.msb365.blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=5115"}],"version-history":[{"count":4,"href":"https:\/\/www.msb365.blog\/index.php?rest_route=\/wp\/v2\/posts\/5115\/revisions"}],"predecessor-version":[{"id":5120,"href":"https:\/\/www.msb365.blog\/index.php?rest_route=\/wp\/v2\/posts\/5115\/revisions\/5120"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.msb365.blog\/index.php?rest_route=\/wp\/v2\/media\/5121"}],"wp:attachment":[{"href":"https:\/\/www.msb365.blog\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=5115"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.msb365.blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=5115"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.msb365.blog\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=5115"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}