Skip to main content
This Help Center is no longer maintained. Visit docs.matrix42.com for the latest content.
Matrix42 Self-Service Help Center

Best Practice - DomainJoin - AES256 encrypted

General information

Starting with DomainJoin Package 1.14 (part of the WinPE_PreBoot_Support_1.9.13 package), an AES256 encrypted password can be used for domain join via the variable "DomainJoinCredentialsPasswordAesEncrypted".

Encrypt password

To do this, you must use the EmpCrypt.exe tool for encryption.
D:\Empirum\AddOns\Encrypter\EmpCrypt.exe /AES256 <Password>
DomainJoin_001_EmpCrypt.png
This AES256 encrypted password must then be entered and saved in EMC > Configuration > Variable Configurations > DomainJoin in DomainJoinCredentialsPasswordAesEncrypted.
DomainJoin_002_VarKonf.png
If an AES256 encrypted password is entered, the value "DomainJoinCredentialsPassword" is ignored.
The WinPE boot image must then be recreated.

Log

After installing the operating system, the log entries will look like this:
DomainJoin_003_Log.png
A note appears stating that the password is encrypted using AES256.
The number of characters is displayed so that you can check whether the AES256 encrypted password has been used.

 

  • Was this article helpful?