Enforcing User Authentication at the Device
Rationale
You can configure your device to require authentication by the user on each system start. This is possible both for the local user and for an Active Directory (AD) or SSO user.
Instructions
The following instructions describe the configuration for the local user. For Active Directory or an SSO Identity Provider, as well as other logon topics, see: Logon Settings in IGEL OS 12.
Do not activate Security > Logon > Guest, as this allows access to IGEL OS 12 without authentication. This is not suitable for secure environments.
Go to Security > Password and activate Use Password for the Local User. You are prompted to enter a password.
Go to System > Registry > auth > login > xlock and activate Login with Local User password.
(Optional) If you want a screen lock after a defined time of inactivity:
Go to User Interface > Screenlock / Screensaver > Options.
Activate Start automatically.
Set Timeout to the desired time of inactivity (in minutes).
Activate Require password to unlock (screenlock).
Click Save.