.      How to articles       Windows Services       Group Policy             Donate        
Computer step by step

How to Start/Stop Secondary Log-on

Service name: seclogon

Display name: Secondary Log-on


Enables starting processes under alternate credentials. If this service is stopped, this type of log-on access will be unavailable. If this
service is disabled, any services that explicitly depend on it will fail to start.

Path to executable:

C:\WINDOWS\system32\svchost.exe -k netsvcs -p

This method shows you how to Start/Stop Secondary Log-on service from Command Prompt

Perform the following steps:

Please go to Start and click on the Type here to search

Type cmd, right click on cmd icon under the Programs and click on Run as administrator

Services Regedit CMD Msconfig

Please confirm User Account Control pop-up

Please select, right and copy a registry key from below, then right click on command prompt window, select Paste and press Enter

To Start Secondary Log-on service:

net start seclogon

sc start seclogon

Note: You can’t start a service if Startup type is on Disabled.

To Stop Secondary Log-on service:

net stop seclogon

sc stop seclogon

To change Startup type:


REG add "HKLM\SYSTEM\CurrentControlSet\services\seclogon" /v Start /t REG_DWORD /d 2 /f

sc config seclogon start= auto


REG add "HKLM\SYSTEM\CurrentControlSet\services\seclogon" /v Start /t REG_DWORD /d 3 /f

sc config seclogon start= demand


REG add "HKLM\SYSTEM\CurrentControlSet\services\seclogon" /v Start /t REG_DWORD /d 4 /f

sc config seclogon start= disabled

Automatic (Delayed Start):

REG add "HKLM\SYSTEM\CurrentControlSet\services\seclogon" /v Start /t REG_DWORD /d 2 /f

sc config seclogon start= delayed-auto

Note: When you change to Automatic (Delayed Start) a new key DelayedAutostart is created with value 1.

REG add "HKLM\SYSTEM\CurrentControlSet\services\seclogon" /v DelayedAutostart /t REG_DWORD /d 1 /f

When you change to Automatic from Automatic (Delayed Start), DelayedAutostart change value to 0.

REG add "HKLM\SYSTEM\CurrentControlSet\services\seclogon" /v DelayedAutostart /t REG_DWORD /d 0 /f