Skip to main content
Answer

Create a local account from LDAP during DEP.

  • January 24, 2018
  • 3 replies
  • 20 views

Forum|alt.badge.img+4

I've been playing around with DEP and user creation when staging a computer for users. We have a 1:1 environment.

I have ticked in Require Authentication and Skip Account Creation in our PreStage Enrollment, so a new user must authenticate with their LDAP credentials. So only a hidden management account and an extra admin account it created on the machine.

Is there any way to create a local user on the machine with the credentials provided from LDAP in the DEP enrollment? Like, without binding the machine to AD, if it makes sense? Sorta like a one-way operation, users log in during DEP, and the computer creates a local account from the credentials. Does this makes sense?

Best answer by DBrowning

If you uncheck the "Skip Account Creation" that will setup an account with the provided LDAP username/password. Just note that, they will be prompted to provide the Full name, which at that point, they can change the shortname and password if they so choose.

3 replies

DBrowning
Forum|alt.badge.img+24
  • Esteemed Contributor
  • Answer
  • January 24, 2018

If you uncheck the "Skip Account Creation" that will setup an account with the provided LDAP username/password. Just note that, they will be prompted to provide the Full name, which at that point, they can change the shortname and password if they so choose.


Forum|alt.badge.img+4
  • New Contributor
  • January 24, 2018

I personally prefer the method ddcdennisb describes. Password management is 10x easier this way. Just make sure you create a password policy profile before going this route.


Forum|alt.badge.img+4
  • Author
  • Contributor
  • January 29, 2018

@ddcdennisb

Exactly what I was looking for, thanks!