Forum Discussion
Machine Certificate Checker Service installed, but UAC still wants admin privileges to run certificate check
I am in the process of implementing Machine Certificate authentication. It works fine, but for some reason it needs admin privileges even with Machine Certificate Checker Service installed and running. It does not work for non-admin users. It does work for admins who confirm the UAC question.
I have taken the following steps:
- configured Machine Cert auth:
- customized install package to add machine certificate checker service:
- installed Edge client for Windows and Machine Certificate checker service gets installed and running:
- When trying to connect, I get the following pop-up:
It seems that Edge client does not detect the service, but still downloads an EXE file from the box and tries to run it.
I am using BIGIP v11.6.
Help greatly appreciated.
1 Reply
- Matej_Markelj_2
Nimbostratus
Never mind - was too quick on asking the question. This is expected behaviour. Turns out that it is working for users with non-admin privileges without prompt. If "Allow User Account Control right elevation prompts" setting in Machine Cert Auth is set to No, than for admin users it is not working. If set to Yes, than it is working after user confirms it. But it seems strange that admin has to confirm something that non-admin does not. This is a bug in my opinion...
Same issue as described here: https://devcentral.f5.com/questions/machine-certificate-check-and-uac
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com