Provides troubleshooting steps for Active Directory in Intel® AMT
When configuring Intel® AMT for Active Directory, no matter what, not able to log on.
For Active Integration, there are a few things that must be in place.
- In Internet Explorer*, go to settings/advanced and select Enable Integrated Windows Authentication:
It will say to restart the computer. There is no need to. Restart Internet Explorer* instead. - Add these keys to the registry:
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INCLUDE_PORT_IN_SPN_KB908209]
"iexplore.exe"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INCLUDE_PORT_IN_SPN_KB908209]
"iexplore.exe"=dword:00000001
-
Must connect to the target system remotely using the fully qualified domain name (fqdn) with appropriate port. As an example, ics-thinkpad2.vprodemo.com:16992 for non-TLS (Transport Layer Security), ics-thinkpad2.vprodemo.com:16993 for TLS.