Configure Active Directory Agentless MFA
Prerequisites
- AD Agent Installed - Required for syncing AD Users and Service Accounts.
- Service Accounts Synced - Ensure service accounts are properly synchronized.
- Credentials Provisioned - Wallet users must have credentials pre-provisioned.
- Domain-Joined Machines - All Windows endpoints must be domain-joined.
Step 1: Download the File
Download the Agentless MFA setup script and copy it to the active directory machine.
Step 2: Install the File
In the active directory machine, open the PowerShell window as an administrator privilege and execute the following command.
./agentless-install.ps1 -OutputPath C:authull
Step 3: Onboard Windows Machines for Agentless MFA
Onboard windows machine by selecting active directory for agentless MFA setup, Navigate Endpoints > Endpoints > Add Windows Endpoint
Step 4: Verify Wallet
Check for an MFA push notification in the wallet app.