#2 - I've not actually tried what you are doing recently, but how about a
Stupid Solution? Configure the Windows AutoAdminLogin Stuff as well, But
provide an INVALID ID/PWD. This will ensure the login to Windows does not
succeed by any type of "passthru" and they user can then enter their own
creds. Really not the best answer, but one that works without having to
think very hard.
But........ Knowing the Creds that a user is autologged into Windows as may
help.