Click here to get back home

Smart Card Login + Certificate Login to AD -> Lost smart card

 HomeNewsGroups | Search | About
 microsoft.public.windows.server.security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content
Subject Author Date
Smart Card Login + Certificate Login to AD -> Lost smart card JY 12-15-2005
Posted by JY on December 15, 2005, 10:03 pm
Please log in for more thread options
We have AD login using smart card + certificate working fine. We also know
what needs to be done in the event the user forgets the smart card when they
come to the office (let them temporarily login using a password and disable
it the next day). However, what are people (companies who have implemented
this MS solution, including MS) doing with the user who is a traveler with a
laptop, has a good cached profile (from the last successful smart card login
from the office before disconnecting), loses the smart card and needs to
logon to the desktop at a foregin country (or anywhere where they are not
connected to the corporate network and can't due to the inability to logon to
the desktop in the first place?)?

Does anyone have a solution for this? Is there no solution?


Posted by Steven L Umbach on December 17, 2005, 3:49 pm
Please log in for more thread options
Losing their smart card is akin to forgetting their password and as long as
they can not connect to a network that allows access to a domain controller
they are out of luck. If there are easy workarounds then security would not
be adequate. If many users are loosing their smartcards then you should
find out why and how to minimize that. --- Steve


> We have AD login using smart card + certificate working fine. We also know
> what needs to be done in the event the user forgets the smart card when
> they
> come to the office (let them temporarily login using a password and
> disable
> it the next day). However, what are people (companies who have implemented
> this MS solution, including MS) doing with the user who is a traveler with
> a
> laptop, has a good cached profile (from the last successful smart card
> login
> from the office before disconnecting), loses the smart card and needs to
> logon to the desktop at a foregin country (or anywhere where they are not
> connected to the corporate network and can't due to the inability to logon
> to
> the desktop in the first place?)?
>
> Does anyone have a solution for this? Is there no solution?
>



Posted by Saleh Matani on January 5, 2006, 9:08 am
Please log in for more thread options
yes there is a 1/2 solution ,
just create a local profil for that user on notebook and user can logon
as local user and not domain user on his notebook and do everything he
needs!

Saleh Matani


JY schrieb:
> We have AD login using smart card + certificate working fine. We also know
> what needs to be done in the event the user forgets the smart card when they
> come to the office (let them temporarily login using a password and disable
> it the next day). However, what are people (companies who have implemented
> this MS solution, including MS) doing with the user who is a traveler with a
> laptop, has a good cached profile (from the last successful smart card login
> from the office before disconnecting), loses the smart card and needs to
> logon to the desktop at a foregin country (or anywhere where they are not
> connected to the corporate network and can't due to the inability to logon to
> the desktop in the first place?)?
>
> Does anyone have a solution for this? Is there no solution?
>

Similar ThreadsPosted
Smart card reader and card supplier in Australia May 5, 2008, 10:37 pm
Q: Seconary certificate on a smart card August 5, 2006, 6:24 am
Re-initialize smart card June 3, 2005, 8:34 am
Smart Card - two readers December 8, 2006, 8:28 am
Smart Card and VPN in Vista. May 26, 2008, 3:36 am
smart card offline logon July 7, 2005, 9:02 am
Base Smart Card CSP Update December 7, 2005, 3:12 pm
Question Regarding Smart Card Deployment September 12, 2007, 2:16 pm
Using a flash drive instead of a smart card. April 28, 2008, 1:25 am
Smart card enrollment issues April 29, 2008, 8:23 pm

Our other projects:

Art Dolls, Fairies and Mermaids - Sunnyfaces.net

Roy's Linux, Programming and Search Engines messages

1-Script XML SitemapXML Sitemap