Configure Active Directory Agentless MFA

Prerequisites

  • AD Agent Installed - Required for syncing AD Users and Service Accounts.
  • Service Accounts Synced - Ensure service accounts are properly synchronized.
  • Credentials Provisioned - Wallet users must have credentials pre-provisioned.
  • Domain-Joined Machines - All Windows endpoints must be domain-joined.

Step 1: Download the File

Download the Agentless MFA setup script and copy it to the active directory machine.

Step 2: Install the File

In the active directory machine, open the PowerShell window as an administrator privilege and execute the following command.

./agentless-install.ps1 -OutputPath C:authull

Step 3: Onboard Windows Machines for Agentless MFA

Onboard windows machine by selecting active directory for agentless MFA setup, Navigate Endpoints > Endpoints > Add Windows Endpoint

Step 4: Verify Wallet

Check for an MFA push notification in the wallet app.