Re: Smart Card Authenticatyion to standalone PC



On Fri, 11 Jan 2008 01:37:05 -0800, MattLaw wrote:

Thanks, the info is just confirming what I knew I just wondered if there was
any other way...these machines will never connect to the domain so teh
authentication would have to take place locally. The end-users have smart
cards which they use when they are on the domain but when they access one of
the mobile machines that is never on the domain they currently login using a
local account (generic) then login to an SSL VPN then login to a Citrix
session then login to a SSO interface...I am trying to take some of teh steps
away to simplify the process.

I may automate the windows login in the registry but this reduces a level of
security even though it is a generic login.

Is there no way that you can connect these mobile systems to the domain at
least once? If you can, then as long as the users logon once with their
smart cards they will continue to be able to do so even after they are
disconnected from the domain.

--
Paul Adare
MVP - Virtual Machines
http://www.identit.ca
A computer scientist is someone who fixes things that aren't broken.
.



Relevant Pages

  • WinXP laptop, simple-style login conn to Win2000 share, error
    ... So, to simplify matters, add all machines to the domain. ... local machine accounts) to keep track of... ... the local account information. ... the "pushbutton login") and configure the Laptops to auto ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Account Logon Time Restriction
    ... I will have to expose my ignorance here. ... workstation from which the login originates. ... this recognizable as one of your machines? ... account's likely logged-into workstation, check if ...
    (microsoft.public.win2000.security)
  • Re: Account Logon Time Restriction
    ... attempt to see what all it can access via network shares. ... workstation from which the login originates. ... this recognizable as one of your machines? ... account's likely logged-into workstation, check if ...
    (microsoft.public.win2000.security)
  • Re: Safe way to rsync a homedir on login?
    ... windows machines to our couple of linux machines (rather than mount ... sure the ownership is right. ... the biggest issue is the time taken to login if all these ... on the desktop, which also happens, I wrote an rsync script that is ...
    (Ubuntu)
  • RE: Integrating Domain and VPN Login
    ... More than likely I was misinformed and these machines are not actually ... Integrating Domain and VPN Login ... dial-up connection' at the logon screen. ...
    (Focus-Microsoft)