Forum Discussion
Have you looked at pre-login? It works on Windows but not MAC. The client will fire up regardless of them not launching and if they login to their laptop we will pass the creds across the tunnel and the client will then be configured.
Pre-Login
Another approach that I like.....I leverage one of the main SaaS providers for the company. Say, SalesForce. Tell them you want your instance to be accessible from a static CATO IP address. Then setup a Network rule that access to the Application must be NAT'd via CATO IP. Your users that don't login to CATO are then blocked.....they will call the helpdesk and ask "why can I not get to SalesForce?!!?!" Helpdesk then helps the login to CATO to solve the problem and Always-On is enabled.
Pre-Login has already been configured and once user first authenticates then it automatically login the user but my problem is first time authentication to SDP client. I have recently migrated and now agent is pushed on laptop but for the first time, user needs to login to SDP client which users are not doing. In Netskope I did not had this issue as it was auto logged in even for the first time.
- JM2 months agoMeteor
Are you authenticating to Cato using SSO? We do, and the client automatically signs in at first boot. No manual action needed.
- PrakashRIndia2 months agoMeteor
Yes we are authenticating to Cato using SSO but in our case, user needs to login for the first time to enrol in SDP client.
- CFH2 months agoComet
Hello, I am also interested if there is a solution as I am in the same configuration.
I have deployed Cato on all endpoints via Intune, login is via SSO with our Entra tenant, and Always-on is configured but it still requires that the user log on Cato the first time.
- PrakashRIndia2 months agoMeteor
Can you tell me how you have achieved the same, any documentation or link so that I can also do the same for zero touch experience
- JM2 months agoMeteor
Basically by following the instructions at https://support.catonetworks.com/hc/en-us/articles/12952071873181-Authenticate-Users-Automatically-with-Windows-Credentials
I assume the crucial bit is populating the registry with LaunchAuthPageOnStartup set to enabled, we do that using a pre-deployment PowerShell script for the Cato app via Intune.
Related Content
- 2 months ago