Some links on this page are affiliate links: if you buy through them we may earn a commission, at no extra cost to you.
Yes—but use a device-level setting. On Windows 10 Enterprise, Education, or IoT Enterprise, configure the computer policy named Force a specific default lock screen and logon image. For Intune-managed devices, use the Personalization CSP. Ordinary Windows 10 Home and Pro installations do not have the same supported Group Policy route, so registry hacks and per-user scripts are only best-effort alternatives. Windows 10 reached general end of support on October 14, 2025; keep these instructions mainly for existing, LTSC, or ESU-covered devices.
Microsoft’s supported policy documentation is available at Configure desktop and lock-screen backgrounds.
First identify the Windows 10 edition
The available method depends on the edition and management system. Open Settings > System > About, or press Windows + R, type winver, and press Enter.
Quick wins for a faster PC:
Repair Windows errors before they cause bigger problemsFix Now →Fix the driver behind crashes, sound loss and screen glitchesFind Drivers →| Situation | Recommended method | Important limitation |
|---|---|---|
| Enterprise, Education, or IoT Enterprise PC | Local Group Policy | Requires local administrator rights |
| Domain-joined Enterprise/Education computers | Domain Group Policy | Computer accounts must read the image path |
| Intune-managed devices | Personalization CSP or Settings catalog | Professional has Shared PC/SetEduPolicies qualifications |
| Unmanaged deployment fleet | Provisioning package | Usually a one-time configuration, not continuous enforcement |
| Home or ordinary Pro without MDM | No universally supported forced-policy route | Scripts and registry workarounds can vary by build and profile |
Windows 10 22H2 was the final general feature release. Home and Pro general support ended on October 14, 2025; Enterprise and Education have their own lifecycle entries, while LTSC releases follow separate dates. See Microsoft’s Home and Pro lifecycle, Enterprise and Education lifecycle, and end-of-support announcement.
#1 Best Overall
- 14" diagonal, 1366x768 resolution, HD BrightView LED, Glossy NON-TOUCH Display
What this setting changes
A lock screen appears when Windows is locked or before credentials are entered. The sign-in (logon) screen appears after the lock screen is dismissed. Desktop wallpaper is a separate setting, and a user’s personal lock-screen choice is stored in that user profile.
The Microsoft policy is explicitly named Force a specific default lock screen and logon image. Because it is under Computer Configuration, it targets the device rather than one profile. A device-level policy is intended to provide the same image for users who lock, sign out, switch users, or start the computer, although you should test each state on the Windows build you operate.
Set one image with Local Group Policy
Prepare a reliable image path
- Use a stable local path such as
C:ProgramDataCompanyLockScreencompany-lock.jpg. - For a share, use a fully qualified UNC path such as
\FileServerBrandingcompany-lock.jpg. - Use JPG, JPEG, or PNG. Ensure the file exists before policy refresh.
- Avoid user profiles, OneDrive folders, removable media, and temporary directories.
Configure the policy
- Press Windows + R, enter
gpedit.msc, and press Enter. - Go to Computer Configuration > Administrative Templates > Control Panel > Personalization.
- Open Force a specific default lock screen and logon image.
- Select Enabled and enter the complete local or UNC image path.
- Select Apply, then OK.
- Open Command Prompt as administrator and run
gpupdate /force. - Press Windows + L to test. If the old image remains, sign out or restart.
Microsoft lists this Group Policy route for Enterprise, Education, and IoT Enterprise in its background configuration documentation. Seeing a setting in the editor does not, by itself, prove that an installed edition can apply it.
Free tools Windows power users keep installed
One-click scans. No signup required.
Rank #2
- 1.1 GHz (boost up to 2.4GHz) Intel Celeron N5030 Quad-Core
- 4GB DDR4 System Memory; 128GB Solid State Drive
- 11.6" HD (1366 x 768) Multi-Touch Display
- Combo headphone/microphone jack - Noble Wedge Lock slot - HDMI; 2 USB 3.1 Gen 1
- Windows 11 Pro
Apply the image to domain computers
- Place the image on a share that every target computer can read, or deploy it locally first.
- Create or edit a domain GPO and configure the same computer-policy path.
- Link the GPO to the target domain, site, or organizational unit.
- Use security-group filtering when only selected computers should receive it.
- Grant read permission to the relevant computer accounts or a domain-computers group. A share that works for
DOMAINAlicecan fail for the computer account such asDOMAINPC-123$. - On a target computer, run
gpupdate /force. - Generate a report with
gpresult /h "%USERPROFILE%Desktopgpresult.html"and inspect the Personalization policy, precedence, and any denied GPO.
GPO linking and filtering behavior is covered in Microsoft’s background policy documentation. For unreliable network availability during startup, copy the file locally with your software-distribution system and point the policy at the local copy.
Configure Intune or another MDM
For an Intune-managed device, create a device configuration profile in the Microsoft Intune admin center. In the Settings catalog, search for Lock Screen Image Url, enter an HTTPS image URL, and assign the profile to the target device group or user group. Sync the device and review policy status.
The underlying Personalization CSP node is:
./Vendor/MSFT/Personalization/LockScreenImageUrl
The status node is:
./Vendor/MSFT/Personalization/LockScreenImageStatus
Rank #3
- 256 GB SSD of storage.
- Multitasking is easy with 16GB of RAM
- Equipped with a blazing fast Core i5 2.00 GHz processor.
| Status | Meaning |
|---|---|
| 1 | Downloaded or copied successfully |
| 2 | Download or copy in progress |
| 3 | Download or copy failed |
| 4 | Unknown file type |
| 5 | Unsupported URL scheme |
| 6 | Maximum retry count failed |
Microsoft documents supported URL/file inputs, device scope, status values, and edition qualifications in the Personalization CSP reference. It lists Enterprise and Education as normal supported SKUs. Professional requires SetEduPolicies through SharedPC CSP or a supported Shared PC/Boot to Cloud configuration; do not assume that Intune makes this setting available on every Windows 10 edition.
Do these 3 things before closing this tab:
1Fix the driver behind crashes, sound loss and screen glitches2Repair Windows errors before they cause bigger problems3Scan for outdated or missing drivers - takes under a minuteProvisioning packages for initial deployment
A provisioning package can configure the image while an unmanaged computer is being prepared. This is useful for non-domain PCs or imaging many machines before hand-off. It is a deployment-time option, not a continuously enforced replacement for Group Policy or MDM; later policies can change or remove the setting. The same CSP details are documented by Microsoft at Personalization CSP.
Why Home and ordinary Pro are different
The traditional Force a specific default lock screen and logon image policy is not a supported general solution for ordinary Home or Pro installations. Community instructions often create HKEY_LOCAL_MACHINESOFTWAREPoliciesMicrosoftWindowsPersonalization and a LockScreenImage value. That value reflects policy configuration where the policy is supported; manually adding it does not remove edition restrictions.
Rank #4
- EFFORTLESS EVERYDAY PERFORMANCE: Powered by Intel Celeron N4020 processor and Windows 11 Home system, delivering reliable, low-power efficiency for daily tasks like document editing, email, online classes, and web browsing
- 15.6-INCH FULL HD DISPLAY: Enjoy immersive visuals on the 15.6" FHD (1920x1080) anti-glare screen with micro-edge bezels. Delivers clear details and comfortable viewing for long study sessions, working on spreadsheets, and video playback
- RESPONSIVE MULTITASKING & STORAGE: Built with 4GB LPDDR4 RAM and 128GB eMMC storage for smooth daily essential use. Expand your storage by up to 1TB via the integrated TF card slot to easily store movies, photos, and working files
- ADVANCED CONNECTIVITY: Outfitted with 2x Full-Featured Type-C ports for data transfer, fast charging, and dual-monitor output, alongside 2x USB 3.2 Gen1 ports and a 3.5mm audio jack for complete peripheral compatibility
- LIGHTWEIGHT & SILENT OPERATION: Slim and portable for effortless travel or commuting. Features a 1MP HD webcam for remote meetings, 38Wh battery with 45W Type-C fast charging, and a fanless silent design for peaceful work environments.
Registry edits can be overwritten by GPO, MDM, servicing, or another management agent. If you automate one, back up the registry and test on a non-production machine. A script that copies an image and changes per-user settings must run for every profile and can be defeated by cached content or policy. For guaranteed shared-PC branding, use an eligible edition or management platform instead.
Default profile versus device policy
Putting an image in the Default User profile or changing ContentDeliveryManager settings may influence a newly created profile or one user. It does not reliably replace the lock-screen choice of every existing and future account. A device policy is the appropriate model when multiple people use the same computer; a profile script is suitable only when user choice is acceptable and enforcement is not required.
Lock screen, sign-in screen, and Spotlight troubleshooting
Test each pre-authentication state
| Test | What to verify |
|---|---|
Windows + L while signed in |
Lock-screen background |
| Sign out | Sign-in/logon background |
| Restart before signing in | Pre-authentication image |
| Switch user | Image before another account signs in |
| Lock a second user’s session | Consistency across profiles |
If one account works but another does not
- Confirm the setting was configured under Computer Configuration, not a user hive.
- Refresh policy, then sign out or restart; an existing cached image can delay the visual change.
- Check for conflicting GPO or MDM assignments and verify the edition supports the method.
If a GPO appears but has no effect
- Check for Home/Pro edition limitations.
- Validate the path, file permissions, file format, and image integrity.
- For UNC paths, test access as the computer account, not only as the signed-in administrator.
- Use
gpresultto find denied or higher-priority policies.
If the image changes back
Investigate Windows Spotlight, competing GPO or Intune profiles, OEM customization, endpoint scripts, and paths pointing to temporary or user-owned files. Windows Spotlight can automatically rotate backgrounds; Microsoft describes its interaction with custom images at Windows Spotlight configuration. A custom policy may replace the Spotlight background while other Spotlight content remains available, depending on configuration.
Best Value
- WINDOWS 11 | STABLE PERFORMANCE: Powered by Intel Celeron N4020 processor and Windows 11 system, this laptop delivers stable performance for everyday computing tasks. It supports web browsing, online learning, document editing, email communication, and basic office work with optimized power efficiency, providing a practical and reliable experience for essential daily use for daily use.
- 15.6” FHD IPS DISPLAY: Features a 15.6-inch Full HD IPS display with narrow bezels, offering wider viewing angles and clearer image details compared to standard panels. The improved screen-to-body ratio enhances visual experience for study, reading, document work, and video playback, making it suitable for both productivity and entertainment use.
- 4GB DDR4 + 128GB eMMC STORAGE: Equipped with 4GB DDR4 memory and 128GB eMMC storage for everyday basics such as browsing, documents, email, and online learning platforms. The built-in TF card slot supports storage expansion up to 1TB, giving you more flexibility for files, photos, videos, and daily documents. TF card not included.
- CONNECTIVITY & PORTS: Includes 1× TF card slot, 2× USB 3.2 Gen1 ports, and 2× full-featured Type-C ports (USB 3.2 Gen1). The Type-C ports support data transfer, charging, and video output, enabling flexible connection with external devices such as monitors, storage, and peripherals for daily work and study use.
- LIGHTWEIGHT DESIGN | ONLINE COMMUNICATION: Designed with a slim, portable profile, this laptop is easy to carry for school, commuting, and travel. A built-in 1MP front camera supports online classes, video meetings, remote communication, and everyday conferencing. The 3300mAh battery works with the low-power system design to support practical daily use, while thermal optimization helps maintain quieter operation during extended tasks.
How to roll back
Set the Group Policy to Not Configured, remove or unassign the MDM profile, restore the original image path, and run gpupdate /force. Then sign out or restart and retest all pre-authentication states.
Choosing the practical approach
For one eligible Enterprise or Education PC, Local Group Policy is simplest. For domain fleets, use a domain GPO with computer-account permissions. For Intune fleets, use the CSP and monitor its status. For initial setup of unmanaged machines, use a provisioning package. If the requirement is only to suggest an image while preserving user choice, use a default profile or setup script instead of a forced device policy.
For new deployments, prefer Windows 11 where hardware supports it because Windows 10 is now a legacy platform outside general support. Retain these procedures for compatible LTSC systems, ESU-covered devices, and migration projects.
Quick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

