How to Enable Windows Authentication in Orchestrator

How to enable Windows authentication in Orchestrator after installation?

Windows authentication allows Orchestrator users to use Windows authentication to login into Orchestrator.

Additionally, once configured, it can also allow users to be imported from the active directory configuration.
The steps to enable Windows authentication are available at Windows Authentication  and a copy of the same are also given below. These steps are to be done post the installation of Orchestrator. If the installation is yet to be done, the Windows authentication can also be enabled via the Orchestrator MSI installer as explained here .

To enable Windows Authentication in Orchestrator post installation, perform the following actions:

  1. Open IIS (Internet Information Services Manager)
  2. In the Connections section, navigate to the UiPath Orchestrator site. The Features View panel is updated accordingly
  3. Double-click Authentication. The Features View section is updated accordingly![](upload://aDNegz3uK0cwEZJHyvCKzHLTEbf.png)
  4. Select the Windows Authentication option and, in the Actions section, click Enable. Windows authentication is now enabled for the UiPath Orchestrator site
  5. Make sure that the ASP.NET Impersonation option is Disabled
  6. In the Connections panel, navigate to the Orchestrator Server Node. The Features View is updated accordingly
  7. In the Management section, double-click Configuration Editor. The Features View is updated accordingly
  8. In the Section drop-down list, navigate to system.webServer/httpErrors. The Features View is updated accordingly![](upload://clAL3tkSTHvII9cfa6eUVHhp1oI.png)
  9. In the Actions panel, click Unlock Section. If the section is not locked, skip this step
  10. Select the defaultPath attribute and click Unlock Attribute in the Actions panel
  11. Close IIS
  12. Open the Web.config file![](upload://5dIykSeLRNM2mKHfADpy1ziJYkB.png)
  13. Set the WindowsAuth.Enabled parameter to true
  14. In the WindowsAuth.Domain parameter, enter the Windows domain that the AD group is in.
  15. Save the web.config file
  16. Import your AD users as explained here .