Does Anyone know of a multifactor solution I can deploy to authenticate transient employees to a share computer. Not everyone will have a mobile phone so a phone authenticator wont work, and I would rather not have a box of RSA fobs laying around in a manager's office.
Windows Hello for Business is considered multi-factor if the computer has a TPM ("Are" your face; "Have" the computer since Hello only works at the console) . With that, you could buy one Infrared camera or one fingerprint reader to keep with the shared computer.
biometric keyboard?
Great idea thank you!
Hmm maybe something to think about.
FIDO2 Security Keys, support multiple authentication protocols.
Even though it is not your preference, I think RSA fobs are your best choice since they are easy to manage remotely to include activating, deactivating, assigning, etc.