I can't activate my windows 10 digital license through a squid proxy server kerberos authentication

juan carlos salazar caballero 26 Reputation points
2023-02-25T09:30:21.3+00:00

Hello.

I'm triying to activate the windows 10 digital license through the squid proxy kerberos authentication server of my organization. the kerberos proxy doesn't ask for any credential to the user whow wants to acces to internet.

The question is that when I start the procces of the activation, I don't see any access error in my squid proxy server in the access.log, every thing appears to be ok, in spite of the fact that the user logged in the workstations has internet acces throught the proxy without any problem the license is not activated, the only way I have to activate the digital license to my work stations is by giving them an ip with a direct internet access not passing through the kerberos proxy.

on another hand I don't know where to see a .log error about the license activation in my windows 10 systems.

Is there any url access to put into my acl squid server in order to activate the license? , I have ".microsoft" in my acl by this point.

I suppose there must be a easy wiay to activate windows 10 digital license through a kerberos proxy.

thank you for your help

Windows for business | Windows Client for IT Pros | Directory services | Active Directory
Windows for business | Windows Client for IT Pros | Networking | Network connectivity and file sharing
Windows for business | Windows Client for IT Pros | User experience | Other
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Anthony Czarnik 6 Reputation points
    2023-02-27T01:09:55.8533333+00:00

    lots of questions... Are you using a KMS? do you have volume licensing? A digital copy is generally linked to a Microsoft account. If you have an Azure AD tenant, assign the license to the user and have them sign into the device to register it.

    A digital copy for a single use license needs to be assigned to a user, and then that user needs sign in via the windows settings app (not domain joined) or into the device at the logon screen (if an AAD user).

    There are too many unknowns to answer this question, but if you have port 443 open on your firewall, you should not be having these issues if you can log into *.microsoft.com


  2. Limitless Technology 44,776 Reputation points
    2023-02-27T12:46:44.29+00:00

    Hello there,

    Have you tried VAMT ?

    You can use the Volume Activation Management Tool (VAMT) to perform activation for client computers that don't have Internet access. The client products can be installed with any type of product key that is eligible for proxy activation: Multiple activation Key (MAK), KMS Host key (CSVLK), or retail key.

    The VAMT host computer sends the IIDs to Microsoft on behalf of the client computers and obtains the corresponding Confirmation IDs (CIDs). The VAMT host computer then installs the CIDs on the client computer to complete the activation. Using this activation method, only the VAMT host computer needs Internet access.

    Activate by Proxy an Active Directory Forest https://learn.microsoft.com/en-us/windows/deployment/volume-activation/activate-forest-by-proxy-vamt

    Hope this resolves your Query !!

    --If the reply is helpful, please Upvote and Accept it as an answer–


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.