All, did anyone implement multi factor authentication for sccm console or sms provider calls? I need info about it


I am looking for multi-factor authentication or 2 factor authentication for sccm console access

Answers ( 5 )


    Thanks Anoop for the answer. We can use jump boxes, but they are all virtual, do is it possible to achieve the 2FA on them?

    And we are still not using CMG or any could management for SCCM.

    Here is the gist of what I answered to my security team.

    SCCM does not have the option at console level. As it’s closely bound with a windows server or a windows machine which has the console installed and authentication is via Active Directory. And it has well defined role based access rectrictions.

    If the windows login has 2FA, it will suffice for sccm console as well.

    Only feasibility may be the above one , however it would require a smart card or a finger print scanner(not tested and not used in Sccm context in the industry even in large banks as far as I am aware). Since we only use remote desktop for connection , that may not be feasible as well in this case.


      I think this is very complex scenario. I don’t think we are going to get much help from this thread.

      My recommendation is to raise a support case with Microsoft and take it away from there .

      Best answer

Leave an answer

Sorry, you do not have permission to answer to this question .