[EXT] Re: Authenticate with machine account and without ntlm_auth

Brian Julin BJulin at clarku.edu
Mon Nov 18 15:17:24 UTC 2024


Rodrigo Antunes via Freeradius-Users <freeradius-users at lists.freeradius.org>:
> I have a windows machine that is in kiosk mode, it is not domain joined and has no local users.
> I need this machine to authenticate against radius automatically, without the user provide credentials.

If it is not domain joined, then there is no machine account, and thus, no machine account password exists.

I don't know anything about Windows "kiosk mode" but could you not create another user account especially for use by this machine, and then configure the network profile to use those credentials?

You'd of course want to apply policy on the back end to restrict that user account's access right appropriately.




More information about the Freeradius-Users mailing list