Reference12r1:Concept Netlogon Windows Authentication

From innovaphone wiki
Revision as of 15:50, 20 October 2015 by Msc (talk | contribs) (→‎How it works)
Jump to navigation Jump to search
There are also other versions of this article available: Reference12r1 (this version) | Reference12r2 | Reference13r1


Netlogon can be used to verify user credentials against a Windows domain controller. myPBX can use this service to allow users to login with their Windows password.

Applies to

  • innovaphone devices with a PBX from version 12r1.

How it works

The netlogon service on the innovaphone device uses a computer account in the Windows domain for connecting to the Windows domain controller. Afterwards it can check user logins against the Windows domain by passing NTLM hashes to the domain controller for verification.

Requirements

Windows domain

  • A computer account for the innovaphone device with a known password.
  • User authentication using NTLM must be enabled.

Device

  • Firmware from version 12r1.
  • Working DNS configuration.

PBX

  • The usernames (Name) of the user objects in the PBX must match the Windows user name (samAccountName).

Configuration

Usage

Tracing