This feature allows our service to sync with the users stored in an Active Directory instance. As users are added and removed from AD, they will be invited and deleted from your Allthenticate tenant. Additionally, certificates can be provisioned for each user with a AD Certificate Services instance in a domain. These certificates can be used to log in to domain joined Windows computers.

Before You Start

<aside> ℹ️

This guide is intended to be completed with an Allthenticate engineer during an implementation session; it is not a self-service guide. Before the call, confirm that the prerequisites below are available and that the administrators who hold these permissions can join.

</aside>

What the customer should have ready

Who does what

Steps throughout this guide are tagged:

How it works

certificate-logon-overview.svg

Then, at login:

windows-login-flow.svg