SSO Implementation for local network


We have successfully implemented Duo Access Gateway on a network and have it working.

When using the launcher from a domain joined workstation we would like it to not ask for credentials to login. How can this be accomplished.

Also when we access a SAML application on the domain directly we would also like it to pass through local credentials without a duo prompt.

I know you can bypass 2FA using a policy for allowed networks, but can you bypass the DAG authentication on local networks once the user has logged into an allowed domain.


Hi there @thehoodedgumboot!

The Duo Access Gateway doesn’t support Windows integrated auth right now. Please contact your Duo Customer Success or Sales Account Manager, or Duo Support to express your interest in a feature request for WIA support.

Thanks for trying Duo!