07-31-2024 05:42 AM
We are new to this so probably a basic question
We have Admin accounts on PC's all called administrator but we want multiple engineers to have the ability to log into those for admin purposes. What's a good way to achieve this. We don't really want unique admin accounts for each possible engineer to log in with.
These are desktop PC's with local logins not AD etc
Many thanks
Solved! Go to Solution.
07-31-2024 06:33 AM
Although in general I would never recommend using a shared administrator account (how do you audit privileged activity by individual admins?), if you must you can associate up to 100 phones or tokens with an individual user in Duo representing your shared credential.
This would look like:
Read more in the Duo KB article Can multiple users authenticate with a shared account on a system protected with Duo for Windows Logon?
08-01-2024 12:39 AM
excellent thanks for the info
07-31-2024 06:33 AM
Although in general I would never recommend using a shared administrator account (how do you audit privileged activity by individual admins?), if you must you can associate up to 100 phones or tokens with an individual user in Duo representing your shared credential.
This would look like:
Read more in the Duo KB article Can multiple users authenticate with a shared account on a system protected with Duo for Windows Logon?
08-19-2024 08:57 AM
That's worked well - If we want to add offline activation that seems like that is tied to the computer and the 2FA device... would a Yubi key be better?
I've set up offline activation with 1 PC and one of the 2 admin phone numbers .. but with the second phone number can I tie that to offline as well..
08-01-2024 12:39 AM
excellent thanks for the info
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide