Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

step by step guide to Sophos Authentication for Thin Client (SATC)

Hi All

i need a step by step guide to Sophos Authentication for Thin Client (SATC)

i have install STAS with no problem and my AD users are all working OK except when they use the RDP servers they get the following error

1.i have installed SATC on the RDP server (windows terminal server) and point to sophos xg

2.i have added system auth thin-client add citrix-ip (ip address of terminal server)

3. logged users off and back on

 

user logins are loged in SATC logs 

the users can work fine from a standard pc with AD login but not from terminal server with same AD login 

 

am i missing a step ?

 

thanks 



This thread was automatically locked due to age.
Parents
  • Hello Phil,

    do you have at least one Windows Server 2012 or Windows Server 2016 in your MS Active Directory domain?

    If yes, add the configuration in the enclosed screen for the Kerberos protocol in your MS Active Directory domain controller Group Policy.  After this configuration run command  " gpupdate / force " on all domain controllers to activate changes in a Group Policy settings.

    Please let us know if this configuration help you.

     

    alda

     

     

Reply
  • Hello Phil,

    do you have at least one Windows Server 2012 or Windows Server 2016 in your MS Active Directory domain?

    If yes, add the configuration in the enclosed screen for the Kerberos protocol in your MS Active Directory domain controller Group Policy.  After this configuration run command  " gpupdate / force " on all domain controllers to activate changes in a Group Policy settings.

    Please let us know if this configuration help you.

     

    alda

     

     

Children
  • Hello Alda,

     

    The picture look very small. Could you send it to me again bigger?

     

    Best Regards,

  • Hello Alda,

     

    The configuration didn't work.

     

    Best regards,

     

    RC

  • hi Alda

     

    I also cannot read the picture

     

    thanks

  • Hi Gary and Phil too,

     I'm so sorry for original image size, and that I also forgot write necessary comment.

    Enclosed are new and  I hope better pictures.

    What is important to note is that this setting is applied as the Default Domain Controllers Policy in the Group Policy Editor on all Active Directory Domain Controllers.

    And how you can check that everything working as expected?

    Please see to next picture - Sys Tray. It is the Sys Tray from the computer on which I connected via RDS. Important is the Sophos orange icon. The orange color tells me that I'm through XG connected to the Internet. If the the icon is gray, click on the icon right mouse button and insert your authentication data - next picture from the Authentication Client. And the last test and the last picture is the Live Users in the XG. For me it works this way, it is true that an authorization by the Authorization Client is somewhat arduous, but it works.

    Please let me know if this setting help solve your problem.

     alda