Goline Logo

FAQ

News

  • New Partnership Between Goline and EaseUS: Technology and Innovation at Your Service. We are excited to announce our collaboration with EaseUS, a leading company in data management, file recovery, and disk cloning software. This collaboration allows us to provide our users with reliable and cutting-edge tools to manage and protect their devices efficiently. Exploring the Benefits of Our New Partnership with EaseUS This collaboration enhances our capability to deliver top-notch services to our community. With EaseUS, you can optimize storage space, recover lost files, and clone disks easily and securely. Whether you're a home user or an IT professional, you'll...
  • GOLINE SA partner with FileCloud November 25th, 2024
  • In the supply and logistics sectors, email communication is pivotal. However, organizations face threats like email fraud and phishing. GOLINE SA's clients struggled with configuring email authentication protocols manually. To address this challenge, GOLINE SA partners with PowerDMARC as an MSP Partner, collaborating to streamline implementation and management. PowerDMARC's cloud-based platform automated DMARC, SPF, and DKIM protocols for GOLINE SA's clients. This streamlined the transition to DMARC enforcement policies, bolstering domain protection without compromising email deliverability. The intuitive platform facilitated easy navigation and provided detailed reporting for proactive issue resolution. Strategic Collaboration: GOLINE SA Partners with PowerDMARC GOLINE SA's clients...

ManageEngine ADSelfService Plus – ADSelfService_Enroll.hta

Biagio Galati Security 30 August 2023

What is the Self-Enrollment process and how does it work?
The Self-Enrollment process is an activity that allows users to register their mobile phone number and associate it with their profile. This will enable the user to perform password resets and/or profile unlocking directly from their smartphone through identity verification.

Script integration
The ADSelfService_Enroll.bat script has been created and integrated into the existing Windows login script.
The script is executed only if the logging-in user is NOT part of the "Domain Admins" group.

goline.scr


IF InGroup("Domain Admins") = 0

? "Execute ADSelf Service Enrollment…"
RUN @LSERVER + "NETLOGONADSelfService_Enroll.bat"
ENDIF


ADSelfService_Enroll.bat
@echo off
%SystemRoot%System32mshta.exe %LOGONSERVER%NETLOGONADSelfService_Enroll.hta

The .bat script opens the ADSelfService_Enroll.hta file using mshta.exe.
This file contains the actual script to carry out the Self-Enrollment procedure.

What happens for users who have already completed Self-Enrollment?
If an user has successfully completed the Self-Enrollment process, the script will recognize this status and allow the user to access the system as usual, without any further actions required.
No window will appear in this case.

What occurs if the user has not yet completed Self-Enrollment?
If an user has not yet completed the Self-Enrollment process, the script will detect this status and display a Self-Enrollment screen after the user logs in.
Clicking the "Enroll" button will initiate the guided procedure.



For the first two weeks, a "Cancel" button will be available, allowing the user to temporarily bypass the Self-Enrollment process and access the system as usual.

What happens after the first two weeks?
After the initial two-week period, the "Cancel" button will be removed from the Self-Enrollment screen. This means the user can no longer avoid the process and will be required to complete Self-Enrollment to access the Windows system.
To remove the "Cancel" button, simply uncomment the following code present in the ADSelfService_Enroll.hta file and delete the currently active on

0 0 votes
Article Rating
Subscribe
Notify of
0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments
0
Would love your thoughts, please comment.x
()
x