Microsoft 365

Fix OneDrive sync problems on Windows: error codes, resets and policies

Fix OneDrive files not syncing on Windows: read the error code, clear file-level blockers, reset the sync app safely and check the admin policies that stop sync.

15 min read
On this page

When OneDrive files aren't syncing on Windows, open the OneDrive icon's Activity Center and read the error code or message first: most problems are a specific file (invalid name, path over 400 characters, a file that's open or larger than 250 GB), a sign-in or connectivity error such as 0x8004de40, or a policy that blocks the account. Fix the file or the connection, and if the app itself is stuck, reset it with onedrive.exe /reset, which reconnects sync without deleting any files. For problems across many PCs, check the OneDrive policies on the device and the sync health dashboard in the Microsoft 365 Apps admin center.

Who this is for and what you will have at the end

This guide is for service desk engineers and Microsoft 365 administrators who support the OneDrive sync app (OneDrive.exe) on Windows 10 and Windows 11 with work or school accounts. It works through the problem in the order that resolves most tickets fastest: read the error, fix the file, fix the connection, reset the app, then look at policies and fleet-wide reporting.

At the end you will have:

  • A lookup table for the OneDrive error codes you are most likely to see.
  • The file-level limits that silently block sync, and how to clear them.
  • A safe reset procedure and what it does and doesn't touch.
  • The tenant and device policies that stop sync on purpose, and how to confirm them.
  • Sync health reporting so you see errors before users report them.

Before you start: collect the basics

From the affected device, note:

  • The exact message or error code from the Activity Center (select the OneDrive cloud icon in the notification area).
  • The OneDrive version and device ID: select the OneDrive icon, then Help & Settings > Settings > About.
  • Which account is affected: a device can have one personal account and up to nine work or school accounts, and an error on one account doesn't mean the others are broken.
  • Whether the user is signed in. A password change often leaves OneDrive waiting for a fresh sign-in.
  • Storage. If the user's OneDrive is full, OneDrive can't upload, edit or sync new files.

Also rule out unsupported setups early. You can't use a network or mapped drive as the OneDrive sync location, OneDrive doesn't sync through symbolic links or junction points, roaming, mandatory and temporary Windows profiles aren't supported, and OneDrive can't run with elevated privileges.

Step 1: Match the error code

Microsoft maintains a list of OneDrive error codes. These are the ones that come up most often on Windows with work accounts:

Error codeWhat it meansFix
0x8004de40, 0x8004de88OneDrive can't connect to the cloud, typically at sign-inCheck connectivity, TLS 1.2 and cipher suites (Step 5), then reset
0x80040c81Trouble connecting to the cloudReset OneDrive and troubleshoot the network connection
0x8004de42, 0x8004de44, 0x80048823A proxy requires authenticationAuthenticated proxies aren't supported in OneDrive; don't send OneDrive traffic through a proxy that requires authentication
0x8004de85, 0x8004de8aMissing account or a mix-up between personal and work accountsSign in with the right account and confirm it on the Account tab
0x8004de90OneDrive isn't fully set upOpen OneDrive and finish signing in
0x8004de96Can occur after a password changeFollow Microsoft's "You're syncing a different account" guidance
0x8004def0Credentials changed or expiredCheck the user can sign in to other Microsoft 365 services, then sign in to OneDrive again
0x8004def5Expired credentialsDelete PreSignInSettingsConfig.json from %localappdata%\Microsoft\OneDrive\settings; reinstall if that fails
0x8004def7Storage exceeded or account suspendedFree up or add storage, or follow Microsoft's frozen account guidance
0x8004ded7, 0x8004def1Sync app too old, update requiredInstall the latest OneDrive; no need to uninstall first
0x80070005Update problem, or Known Folder Move blocked by Group PolicyInstall Windows updates and run OneDriveSetup.exe from %localappdata%\Microsoft\OneDrive\update; for folder backup, set Prohibit User from manually redirecting Profile Folders to Not configured
0x8007016aFiles On-Demand error when moving or deleting filesUpdate Windows, turn off Files On-Demand, reset, then turn it back on (Step 6)
0x8007018bThe file is open or in use by OneDriveWait for sync to finish, then close OneDrive
0x80070194Sync problem in the appReset OneDrive and start it again manually
0x80071128, 0x80071129The reparse point data or tag is invalidRun chkdsk <volume> /R /F as an administrator; it can take hours

Numeric codes appear too: 6 is a timeout, 36 means the SharePoint List View Threshold (about 5,000 items) was exceeded, and 49 means the OneDrive version is too old.

Step 2: Clear file-level blockers

Many "not syncing" tickets have no code at all, only a red X on a few items. These are almost always one of the following limits.

BlockerRuleWhat to do
Invalid characters`" * : < > ? / \`, and leading or trailing spaces, aren't allowed
Blocked names.lock, CON, PRN, AUX, NUL, COM0-COM9, LPT0-LPT9, desktop.ini, names starting with ~$, and _vti_ anywhere in the nameRename the item
Path lengthThe entire decoded path, folder path plus file name, can't exceed 400 charactersShorten or move (below)
File size250 GB per fileMove the file out of OneDrive
Item countMicrosoft recommends no more than 300,000 items in total across your cloud storageRemove shortcuts and stop syncing libraries that aren't needed
Temporary filesTMP files don't sync, and the sync app doesn't sync .tmp and .ini filesExpected behavior
Outlook data filesPST files are supported but sync less often, and large PST and OST files can keep OneDrive in Processing changesMove PST and OST files out of OneDrive
Excluded by policyFiles matching an admin keyword list show Excluded from syncExpected; see Step 7

Fix paths that are too long

OneDrive pauses only the item whose path is too long and keeps syncing everything else. In the Activity Center the item shows two buttons:

  • Shorten path opens Shorten this path, which lists every folder in the path and how many characters you need to remove. Edit a name until it shows "Path is short enough to sync", then select Save changes. Renaming a folder here renames it everywhere in OneDrive.
  • Move file or Move folder lets you pick a location nearer the top of OneDrive. Moving up one or two levels is often enough.

When several items are affected, select Fix paths to open Fix paths that are too long to sync. Fixing a parent folder clears every item beneath it. Be careful with shared folders: renaming or moving inside a shortcut to someone else's folder changes it for everyone who uses it.

Step 3: When OneDrive is stuck on "Processing changes"

Microsoft lists five common reasons: a OneDrive file is open, a lot of files were added, a very large file was added, the user isn't signed in, or the user has just signed in or updated the PC. In the last two cases and for large batches, the fix is to wait; every file will upload, more slowly on a poor connection.

For the others:

  • Close files the user finished editing.
  • Move large items such as ZIP archives, long videos and Outlook PST or OST files out of OneDrive, or stop syncing the folders that hold them. Outlook data files can't be removed from sync while Files On-Demand is in use, because Outlook needs local access.
  • OneDrive log files named "aria-debug" can be safely deleted.
  • Open the Activity Center to see files that are open, syncing or recently synced; hidden or temporary files can also hold sync up.

If the status never clears, unlink and relink the account or reset the app (Step 4).

Step 4: Reset OneDrive safely

A reset clears OneDrive's settings and sync connections and rebuilds its local database. It doesn't delete files. During the reset, OneDrive deletes its DAT file, stores application logs in the registry and settings on disk; on restart it reloads the settings and rebuilds the DAT file, then performs a full sync.

Run the command for the install location that exists on the PC. Use the first one first:

%localappdata%\Microsoft\OneDrive\onedrive.exe /reset
C:\Program Files\Microsoft OneDrive\onedrive.exe /reset
C:\Program Files (x86)\Microsoft OneDrive\onedrive.exe /reset

Paste the command into the Run box (Windows key + R) and select OK. If Windows says it can't find the file, try the next path. If none of the paths exist, the OneDrive sync app isn't installed. After the reset, start OneDrive from the Start menu yourself.

Two side effects to warn users about: every account (personal and work) is disconnected and has to sign in again, and users who synced only selected folders must choose those folders again once the first sync completes.

Step 5: Fix sign-in and connection errors (0x8004de40)

Error 0x8004de40 shows as "Login was either interrupted or unsuccessful" and 0x8004de88 as "We can't sign into your account, please try again later". Both mean the client can't reach the cloud. After confirming the device has internet access:

  1. Check TLS. Microsoft's article ties this error to the TLS 1.0 and 1.1 deprecation in Microsoft 365, so TLS 1.2 must be available. Open inetcpl.cpl, go to Advanced and make sure Use TLS 1.2 is selected, then Apply and OK. The article's own steps select the TLS 1.0, 1.1 and 1.2 check boxes; on managed devices, check that against your security baseline rather than re-enabling older protocols by hand.
  2. Check cipher suites. Even with TLS 1.2 on, the cipher suite order must suit Azure Front Door. The supported suites are TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256, TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 and TLS_DHE_RSA_WITH_AES_128_GCM_SHA256, and they should be at the top of the list.
Enable-TlsCipherSuite -Name "TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384" -Position 0
Get-TlsCipherSuite | Select-Object -First 5 Name

If the order doesn't change, the SSL Cipher Suite Order Group Policy setting is controlling it; fix it in the GPO instead.

  1. Restart while connected to the corporate network. If that doesn't help, Microsoft's article suggests leaving and rejoining Microsoft Entra ID with dsregcmd /leave and dsregcmd /join from an elevated prompt, but only while connected to the organization's network. Treat this as a last resort on managed devices, because it affects device-based access, not just OneDrive.
  2. Reset OneDrive as in Step 4.

Step 6: Fix Files On-Demand errors (0x8007016a)

Error 0x8007016a usually appears when users move or delete files. Microsoft's fix is: install Windows updates, open OneDrive Settings and clear Save space and download files as you use them, reset OneDrive, then turn Files On-Demand back on.

If the Files On-Demand option is missing on a supported Windows version, check the Windows Cloud Files Filter Driver. Its start type must be 2 (automatic):

reg.exe query HKLM\SYSTEM\CurrentControlSet\Services\CldFlt /v Start

Microsoft recommends keeping Files On-Demand enabled. The Use OneDrive Files On-Demand policy sets FilesOnDemandEnabled to 1 under HKLM\SOFTWARE\Policies\Microsoft\OneDrive; if it's disabled by policy, users can't turn it on.

Step 7: Check the policies that stop sync on purpose

Some "sync errors" are policies doing their job. All of these are configurable through Group Policy and Intune, and they write registry values you can read on the device:

reg.exe query HKLM\SOFTWARE\Policies\Microsoft\OneDrive /s
reg.exe query HKCU\SOFTWARE\Policies\Microsoft\OneDrive /s
PolicyRegistry valueEffect users see
Allow syncing OneDrive accounts for only specific organizationsHKLM\...\OneDrive\AllowTenantListError when adding an account from a tenant not in the list; existing accounts stop syncing
Block syncing OneDrive accounts for specific organizationsHKLM\...\OneDrive\BlockTenantListSame, for listed tenants; doesn't work if the allow list is enabled
Prevent users from syncing personal OneDrive accountsHKCU\...\OneDrive DisablePersonalSync = 1Personal account sync stops; local files remain
Prevent users from syncing libraries and folders shared from other organizationsHKLM\...\OneDrive BlockExternalSync = 1Libraries shared from other tenants don't sync
Exclude specific kinds of files from being uploadedHKLM\...\OneDrive\EnableODIgnoreListFromGPOMatching new files show Excluded from sync, with no error
Limit the sync app upload rate to a percentage of throughputHKLM\...\OneDrive AutomaticUploadBandwidthPercentageUploads look slow but work

Two notes from Microsoft's policy reference: if you set a OneDrive Group Policy and later change it back to Not configured, the registry value isn't removed and the last setting stays in effect, so set it explicitly to Enabled or Disabled. And the allow and block tenant lists take the tenant ID, not a domain name.

Tenant-wide, the SharePoint admin center Settings > Sync page has Allow syncing only on computers joined to specific domains, which takes Active Directory domain GUIDs. It applies only to Active Directory domains, not Microsoft Entra domains, so check it first when users on PCs outside the listed domains report that sync is blocked. For devices that are only Microsoft Entra joined, Microsoft recommends Conditional Access instead, which fits a device-trust model like the one in the Zero Trust remote access architecture.

Keep the sync app current

The Set the sync app update ring policy writes GPOSetUpdateRing: 4 for Insiders, 5 for Production (the default) and 0 for Deferred. Microsoft recommends a few IT staff on Insiders and everyone else on Production so they get fixes promptly.

Step 8: Watch sync health across the fleet

The OneDrive sync health dashboard in the Microsoft 365 Apps admin center shows devices with sync errors, the most common error messages, app versions and Known Folder Move status.

Requirements: sync app 22.232 or later on the Insiders, Production or Deferred ring, an Office Apps Administrator or Microsoft 365 Administrator to set it up (Global Reader and Reports Reader can view it afterwards), and devices that can reach https://clients.config.office.net.

  1. In the Microsoft 365 Apps admin center, go to Health > OneDrive Sync > Setup and make sure a Tenant Association Key exists (select Generate new key if it's empty).
  2. Deploy Enable sync health reporting for OneDrive to the devices. In the Intune admin center, go to Devices > Configuration, create a Settings catalog profile for Windows 10 and later, add the setting from the OneDrive category and paste the key into Sync Admin Reports. With Group Policy or the registry, set EnableSyncAdminReports to 1, for example from an elevated prompt:
reg.exe add HKLM\Software\Policies\Microsoft\OneDrive /v EnableSyncAdminReports /t REG_DWORD /d 1
  1. Wait. Reports take up to three days, devices must be on for at least five hours and signed in to OneDrive, and forcing a device to report isn't supported. The older SyncAdminReports value is no longer supported.

The Issues tab lists each error message with the number of affected devices, and the Devices tab shows each device's errors, app version and last synced time. Microsoft suggests rolling the reporting setting out gradually, starting with a few test devices a day.

Troubleshooting quick reference

SymptomMost likely causeFirst action
One file has a red XName, path or size limitRead the item's message in the Activity Center
"Processing changes" for hoursOpen file, PST, very large uploadClose files, move PST/OST out, wait
Can't sign in, 0x8004de40Connectivity, TLS or cipher suitesSteps 5 and 4
Error 0x8007016a on delete or moveFiles On-Demand stateStep 6
Account added but won't syncTenant allow or block list, domain restrictionStep 7
Shared library from a partner won't syncBlockExternalSyncConfirm the policy is intended
Option for Files On-Demand missingCldFlt start type or policyStep 6
Device missing from dashboardReporting key not set, not signed in, under five hours onStep 8

Checklist

  • Exact error code, OneDrive version and device ID recorded.
  • Unsupported setups ruled out: mapped drive, symbolic links, roaming profile, elevated run.
  • File blockers cleared: names, 400-character paths, 250 GB files, 300,000 items, PST files.
  • Reset done with the correct onedrive.exe /reset path, and selective sync reselected.
  • TLS 1.2 and cipher suite order verified for sign-in errors.
  • Files On-Demand and the CldFlt driver checked for 0x8007016a.
  • OneDrive policies read from the registry and matched against intent.
  • Sync health reporting enabled and the Issues tab reviewed weekly.

For new file share migrations into OneDrive, clean names and paths before the move, as described in the SharePoint Migration Tool guide, so these sync errors never reach users.

References

Questions people ask

Do I lose files if I reset OneDrive?

No. Resetting OneDrive with onedrive.exe /reset disconnects all sync connections and clears settings, but it doesn't delete files. OneDrive runs a full sync afterwards, and if you had chosen to sync only some folders you need to select them again.

What does OneDrive error 0x8004de40 mean?

It means the sync app is having trouble connecting to the cloud, usually at sign-in. Check internet connectivity, make sure TLS 1.2 is enabled and that the Azure Front Door TLS 1.2 cipher suites are at the top of the cipher suite order, then reset OneDrive if it persists.

Why does OneDrive say a path is too long?

The full decoded path, including every folder name and the file name, can't exceed 400 characters in OneDrive and SharePoint. OneDrive pauses only the affected item, and the Activity Center offers Shorten path and Move file buttons to fix it without deleting anything.

How many files can the OneDrive sync app handle?

Microsoft recommends syncing no more than 300,000 items in total across your cloud storage. Performance problems can appear above that number even if not every item is synced, so remove shortcuts and stop syncing libraries people don't need.

OneDriveWindowsIntuneGroup Policy
  1. OneDrive Known Folder Move with Intune: silent setup and troubleshooting

    Silently redirect Desktop, Documents and Pictures to OneDrive on Intune-managed Windows devices with the settings catalog, roll it out safely and fix the errors that block folder backup.

    Microsoft 36512 min read
  2. Control the new Outlook for Windows rollout with policies and toggles

    The admin controls for new Outlook for Windows: hide the toggle, stop automatic migration, block the app or mailbox access, and migrate on your own schedule before the March 2027 opt-out.

    Microsoft 36513 min read
  3. OneDrive after a user leaves: keep, hand over and clean up the files

    Preserve a departed user's OneDrive, give a manager or admin access, move what matters, and understand the retention, read-only, archive and deletion timelines before you delete the account.

    Microsoft 36513 min read