Endpoint Services, MECM, Secure Client Start Before Login
Overview
For mobile Windows devices, the 'Secure Client Start Before Login' feature allows off-campus first-time users to log into a mobile device with their campus credentials.
Systems
Microsoft Endpoint Configuration Manager (MECM)
Intended Audience
University of Illinois IT Pros leveraging MECM, hosted by Technology Services' Endpoint Services team
Deploy and use the 'Secure Client Start Before Login'
Beginning with version 5.1.4.74 of the Secure Client AnyConnect VPN, the main application package in MECM includes the Start Before Login installer by default. If you are deploying Secure Client AnyConnect VPN 5.1.4.74 or later, including the - Latest, you do not need to deploy the Start Before Login module separately.
In the case of manual installers, the VPN client and SBL module are still two separate installers - this bundling is only done specifically with the MECM application found in \Software Library\Overview\Application Management\Applications\MANAGED APPLICATIONS\VPN.
- Once installed, refer to the steps below for a walk-through of the end-user's experience of the 'Start Before Login' feature
- In the bottom right of the login screen, select the icon that looks like two stacked monitors.:
- When prompted, enter vpn.illinois.edu/login and click ‘Connect’
- Once prompted, input your UofI credentials
- Once connected, return to the login window and select ‘Other user’. Login with your UofI credentials
- Future logins will have a fourth VPN profile named '4 Computer Login' that can be selected to simplify the VPN connection process at the Windows login screen.
- In the bottom right of the login screen, select the icon that looks like two stacked monitors.: