Document toolboxDocument toolbox

(12.3.1-en) Active Directory/Kerberos

This article shows how to enable local login to the device via the Kerberos protocol in IGEL OS.

Active Directory/Kerberos must be configured as a prerequisite, see (12.3.1-en) Active Directory/Kerberos 1.




Menu path: Security > Logon > Active Directory/Kerberos





The login can be used for single sign-on in a number of session types (ICA, RDP).



Login to Active Directory domain

 You can log in to the device via Active Directory.

 You cannot log in to the device via Active Directory. (Default)

Login Methods

Explicit

You can log in with a user name and password. (Default)

You cannot log in with a user name and password. If logging in with a smartcard is set up, you can log in with a smartcard.



Remember last user name

The login dialog will be pre-populated with the last user name that logged on. Explicit must be enabled for this.

The login dialog will not be pre-populated. (Default)



Smartcard

You can log in using a smartcard.

You cannot log in using a smartcard. (Default)



Smartcard removal action 

Specifies what action is performed when the smartcard via which the user is logged in is removed.
Possible actions:

  • Log out: The user is logged out from the device. (Default)

  • Lock device: The screen is locked.



If the login method is configured and the Allow system logoff option is enabled under System > Power Options > Shutdown, the user can log off the device through the shutdown menu. For information on how to access the shutdown menu, see (12.3.1-en) Commands. For information on how to configure the shutdown menu, see (12.3.1-en) Shutdown.