An OneDrive sign-in error — where the app shows “Sign in” despite you having previously connected it, or loops through the login process without completing — is almost always an authentication token problem rather than a password issue. The token OneDrive uses to stay signed in has expired, been invalidated by a security change, or become corrupted. The fix in most cases is re-establishing a clean authentication. For the bigger picture, our Complete Guide to Fixing Windows, Browser, and Software Errors pulls everything together.
Before anything else: verify the actual error message. “Sign in” with no error detail means the token expired. A “0x8004de88” error code means a Microsoft account authentication problem. An error about your account not being found means the account may have changed. Codes starting with “0x8004” are authentication errors; codes starting with “0x80070” are local system errors. This matters because the fixes are different.
Fix 1: Unlink and Re-Sign In
The cleanest solution for most sign-in errors: completely unlink the account from OneDrive and reconnect with fresh credentials. This establishes a new authentication token from scratch rather than trying to refresh a corrupted one.
Right-click the OneDrive cloud icon in the taskbar → Settings → Account → Unlink this PC → confirm. After unlinking, OneDrive stops syncing but keeps all locally synced files on the machine — nothing is deleted. The OneDrive application then shows a sign-in prompt. Sign in with your Microsoft account credentials. If two-factor authentication is enabled, complete the 2FA step during sign-in.
After re-linking: OneDrive performs a fresh check of all files and resumes syncing. If the sign-in loop was caused by a stale token or an account credential change, this resolves it immediately.
Fix 2: Reset OneDrive
When unlinking and re-signing in doesn’t break the loop, OneDrive’s local configuration has deeper corruption than a simple token issue. A full reset clears the application state and forces OneDrive to rebuild its configuration from scratch.
Close OneDrive (right-click system tray → Close OneDrive). Win + R → type the following and press Enter:
%localappdata%MicrosoftOneDriveonedrive.exe /resetOneDrive restarts automatically within a minute (if it doesn’t appear after 2 minutes, open it manually from Start). After the reset, sign in when prompted. The reset clears the sync database and token storage — it’s more thorough than the unlink/re-link approach and resolves cases where the token corruption was at the application level rather than just the account credential level.
Fix 3: Clear Stored Credentials
Windows Credential Manager stores OneDrive authentication tokens alongside other saved credentials. When these stored tokens become outdated after a password change or account security update, OneDrive continues trying to use them and loops through the sign-in process without completing because the stored token fails validation.
Search “Credential Manager” in Start → Windows Credentials tab → look for entries containing “OneDrive,” “MicrosoftOffice,” “microsoftoffice,” or “OneDriveFRE” → remove each one → try signing into OneDrive again. After removing the stale stored credentials, OneDrive prompts for fresh credentials rather than trying to use the failed stored ones. This is particularly effective when a Microsoft account password was recently changed — the old password stored in Credential Manager causes repeated authentication failures.
Fix 4: Microsoft Account Sign-In Issues
OneDrive for personal use requires a Microsoft account. If the Microsoft account itself has issues — an unpaid subscription that locked the account, a security alert requiring action, a mandatory password reset — OneDrive can’t sign in regardless of what credentials are entered locally.
Check the account directly: open a browser and go to account.microsoft.com. If prompted to verify your identity, change your password, or review security activity, complete those steps first. After resolving any account-level issues on the Microsoft account portal, OneDrive sign-in typically works immediately because the problem was at the account level rather than the local OneDrive application.
Fix 5: Work/School Account Configuration
Work and school OneDrive accounts (Microsoft 365 accounts) behave differently from personal Microsoft accounts. They’re tied to an organisation’s Azure Active Directory and subject to IT-configured authentication policies. When these policies change — MFA requirements added, conditional access policies updated, account licences changed — OneDrive for work accounts may fail to authenticate.
The symptom: sign-in works on a phone or browser but loops on the Windows desktop app. The work account sign-in page requires completing a browser-based MFA challenge that the desktop app can’t handle through its embedded sign-in window.
Try: when OneDrive shows the sign-in prompt, look for “Sign in with a web browser” or a similar option that opens the authentication in your default browser rather than within OneDrive’s embedded window. Browser-based authentication handles MFA challenges and conditional access policies more reliably than the embedded window. Complete the sign-in in the browser, then return to OneDrive.
Fix 6: OneDrive Reinstall
When all authentication fixes fail and OneDrive can’t complete sign-in regardless of approach, the OneDrive installation itself may be corrupted. Signs of installation corruption: error codes that appear before any sign-in attempt, crashes during the sign-in process, or the sign-in window not appearing at all.
Settings → Apps → Microsoft OneDrive → Uninstall. Navigate to %localappdata%MicrosoftOneDrive and delete any remaining folders. Download the latest OneDrive installer from onedrive.live.com/about/download. Install → sign in. The fresh installation uses clean code paths for authentication without the corrupted state that was preventing sign-in.
Error Codes and Their Meanings
Specific OneDrive sign-in error codes point directly at their cause:
- 0x8004de88 — Microsoft account requires action (verify account at account.microsoft.com)
- 0x8004de40 — Network connectivity problem (check internet and firewall)
- 0x8004de69 — Sign-in credentials incorrect or account changed
- 0x8004de80 — Account type not supported by this OneDrive version (personal account trying to connect to a work-only configuration)
- 0x80040C97 — Installation corruption (reinstall OneDrive)
Looking up the error code on the Microsoft Support site confirms the specific cause and the recommended fix, saving time working through fixes that don’t apply to the specific error code being shown.
OneDrive and Windows Account Sign-In
If your Windows 11 user account is connected to a Microsoft account (Settings → Accounts → Your info → “Microsoft account”), the OneDrive sign-in uses the same session as your Windows login. When the Windows account session has issues — expired session token, changed password, removed account — OneDrive inherits those issues.
Check: Settings → Accounts → Your info → confirm the Microsoft account is connected and shows no errors. If it shows “Fix now” or any account alert, resolve it at the Windows account level first. After fixing the Windows account connection, OneDrive sign-in typically works automatically because it uses the same authentication session.
Our guide on OneDrive not syncing covers the sync failures that follow successful sign-in — once authentication is working, sync errors become the next layer to address. For Microsoft 365 authentication problems affecting OneDrive alongside Teams and Outlook, our Office authentication guide covers the shared credential management across the suite. Microsoft’s OneDrive sign-in documentation covers the complete list of error codes with specific remediation steps and the OneDrive diagnostic log locations that Microsoft support uses for persistent authentication failures.
Multi-Account Sign-In Conflicts
Many users have both a personal Microsoft account and a work/school Microsoft 365 account. When both are configured in OneDrive simultaneously, a sign-in failure for one account can affect the other — or the wrong account’s sign-in prompt may appear when you try to authenticate the correct one.
In the OneDrive settings, each account has its own sign-in status. Check: right-click OneDrive cloud icon → Settings → Account tab — both accounts should be listed here. If one shows a sign-in error, click “Sign in” next to that specific account rather than signing out of both. The multi-account context is easy to miss when troubleshooting because users often assume there’s only one account active. Identifying which specific account has the authentication failure narrows the fix to that account’s type and sign-in method.
Proxy Settings Blocking OneDrive Authentication
OneDrive authentication communicates with Microsoft’s identity servers over HTTPS. When proxy settings are configured that intercept these connections — particularly after VPN installations or corporate network configuration changes — the authentication handshake fails mid-process, causing the sign-in to loop.
Check: Settings → Network and internet → Proxy. If a proxy is configured with an address that’s no longer valid or accessible on the current network, OneDrive’s authentication requests are routed to an unreachable proxy and time out. Switching to “Automatically detect settings” or removing a manually configured proxy resolves authentication failures caused by incorrect proxy routing. For corporate machines: confirm with IT that the proxy configuration is correct for the current network location.
Windows Hello and PIN Sign-In Conflicts
Windows 11 uses Windows Hello (PIN, fingerprint, or face recognition) for secure device sign-in alongside the Microsoft account password. When the Windows Hello configuration becomes invalid — after a significant hardware change, after PIN reset, or after joining/leaving a domain — OneDrive’s integration with the Windows authentication system breaks, causing sign-in failures that appear as account or credential errors.
Fix the Windows Hello configuration first: Settings → Accounts → Sign-in options → Windows Hello PIN → remove the current PIN and re-add it. After re-establishing a working Windows Hello PIN, sign out of OneDrive and sign back in. The OneDrive authentication uses Windows Hello for credential validation internally, and resolving the Hello configuration issue restores proper OneDrive sign-in through that authentication path.
Time Synchronisation and Token Validation
Microsoft authentication tokens are time-sensitive — they include timestamps validated against the server’s current time. When the PC’s system clock is significantly wrong (more than 5 minutes off from actual time), token validation fails because the timestamps don’t align with what the authentication server expects. This produces sign-in failures that look like credential problems but are actually clock synchronisation issues.
Check: right-click the taskbar clock → Adjust date and time → confirm the date, time, and timezone are correct → click “Sync now” to synchronise with Microsoft’s time server. After the clock synchronises, attempt OneDrive sign-in again. This is a less common cause but resolves quickly and is worth checking before more involved fixes when the system clock shows any discrepancy from the actual current time.
OneDrive for Business: Admin Licence Issues
OneDrive for Business (the work/school version) requires an active Microsoft 365 licence that includes OneDrive storage. When this licence is removed, expires, or is changed to a tier without OneDrive access, sign-in fails with messages about the account not being found or not being authorised. The user’s credentials are correct but the account no longer has OneDrive access.
Check: sign in at portal.office.com with the work/school account → click OneDrive. If OneDrive is accessible in the browser, the licence is active and the issue is local (use the fixes above). If OneDrive in the browser also shows an access denied message or no OneDrive option: contact IT to verify the licence assignment for the account. Licence changes are an IT administrator action — users can’t restore a removed licence themselves.
Azure AD Conditional Access Failures
Corporate Azure AD conditional access policies control which devices, locations, and authentication methods are permitted to access organisation resources including OneDrive. When a device becomes non-compliant — missing a security update, having antivirus disabled, or no longer enrolled in Intune — conditional access blocks authentication and OneDrive shows a sign-in failure.
The indicator: sign-in works on other enrolled corporate devices but fails on this specific machine. The error message may include “You cannot access this right now” or reference device compliance. Check Settings → Accounts → Access work or school → confirm the work account is listed and connected. If it shows a disconnect or compliance issue, re-enrol the device through IT’s device management process. Conditional access blocks require device compliance to be restored at the Intune/MDM level before OneDrive authentication can succeed.
A useful diagnostic that applies when nothing else has worked: test OneDrive sign-in through the OneDrive website (onedrive.live.com for personal, or portal.office.com → OneDrive for work accounts) using the same credentials in a browser. If the web interface works but the desktop app loops, the issue is specific to the desktop application’s authentication mechanism — reinstalling OneDrive or resetting it (Fix 2) is the path forward. If the web interface also fails to sign in, the issue is at the account or identity server level rather than the local application — Microsoft account portal or IT is the next step rather than local troubleshooting.
One scenario that’s easy to miss: if a Microsoft account’s primary email address was changed recently (through account.microsoft.com → Your info → Account info → Edit email or phone), existing authentication tokens that reference the old email address become invalid. OneDrive and other Microsoft applications using the old email as the account identifier will fail to authenticate until they’re re-signed in with the new primary email. This is a common trigger for sign-in failures that appear out of nowhere several days after an account email change, once the cached tokens using the old address expire. You might also run into Windows 11 File Explorer Slow.







