Jump to content

Recommended Posts

Posted

Hi All, I'm in a school with a standard AD network. We use an XG550 firewall and STAS for user SSO authentication for our domain users. We now have around 100 computers on site that were set up directly with Intune. These are Entra only, not hybrid. The students who use these computers are sometimes identified and authenticated by STAS but mostly they end up going anonymously through a catch all rule with very strict filtering. Can anyone shed some light on how we should be handling this please. All of the users of the Entra machines have domain accounts.

Hope that makes sence

Cheers

Garry

Posted

You'll need to send out the Sophos Client Authentication Agent out to those InTune devices. Don't forget to also install the Sophos CAA certificate too, otherwise it will fail authentication.

Once installed, pupils can then sign into CAA (opens on startup) to then authenticate with the Sophos XG.

 

Isn't the most seamless integration, but it works

  • Thanks 1
Posted
Hi, Thanks for the reply. I'd looked at the client but hoped there would be something without user involvement. I'll give it a go this afternoon

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...