Announcement

Collapse
No announcement yet.

Force Smart-Card login for a particular server...

Collapse
X
  • Filter
  • Time
  • Show
Clear All
new posts

  • Force Smart-Card login for a particular server...

    Hi

    We have a domain infrastructure where USB tokens containing PKI certificates CAN be used for login.

    However, this is currently only used on clients; we need to enable it (and if we can, FORCE it) on a particular server.

    So - when we RDP to the server, if an appropriate token is plugged in to the client, we want the server to use the certificate on the token for login. If possible (although this is of secondary importance) we want to deny logon UNLESS an appropriate token is plugged in.

    Can this be done?

    Thanks


    Tom
    For my own and your protection, I do not provide support by private message under any circumstances. All such messages will be deleted and ignored.

    Anything you say will be misquoted and used against you

  • #2
    Re: Force Smart-Card login for a particular server...

    Smart card logons have been available since Windows 2000 and should be easy enough to implement on a server.

    http://technet.microsoft.com/en-us/l.../cc960662.aspx

    This doc outlines how to do it with a 3rd party certificate

    http://support.microsoft.com/kb/281245

    Comment

    Working...
    X