none
Password Authentication RRS feed

  • Question

  • Is there a way we can do an authentication during the OSD process against AD? We need this to be configured during our Image build process - Either PXE or Task Sequence/
    Saturday, March 4, 2017 9:34 PM

All replies

  • SCCM already allows you to password protect things.

    Many questions such as where do I find logs and what logs are interesting are found in: MDT TechNet Forum - FAQ & Getting Started Guide Please take the time to read it. Also if you don't post logs your problem won't be easily solved.

    Monday, March 6, 2017 6:23 AM
    Moderator
  • There is nothing built in to the task deployment that will do AD authorization. Built in, you can ask for a password, but t it is not AD authentication. If you want to do AD authentication/authorization, you could write a small pre-execution hook that asks the user for name and password and then do either ADSI calls or use a webservice like "MDT webservice" to check if the user is part of an AD group. You could ask for a user/pass and then try to connect to a network share where only authorized users have access. Exit the deployment process if you are unable to connect to the network share. If you google MDT pre-execution hook, you should get some good ideas.
    Monday, March 6, 2017 1:33 PM
  • Please look at the post here. You can leave the fields empty in the bootstrap and this will force the IT technician to validate with AD credentials every time.. Or you can pre-define them!

    https://social.technet.microsoft.com/Forums/en-US/422bce1f-01db-4a29-b6da-de95d1d463ef/specify-credentials-for-connecting-to-network-shares?forum=mdt

    Tuesday, March 7, 2017 12:35 PM