Azure Virtual Desktop App (Mac IOS) Cannot access DoD Certs in Keychain.

Shackleford, Joshua [USA] 0 Reputation points
2025-01-25T21:36:56.07+00:00

I am running Azure Virtual Desktop using the Windows Remote Desktop Application (MAC OS), and whenever I enter my username, using my smart card for credentials, the Application seem to have trouble accessing my certificates in Keychain. How do I remedy this issue?

Azure Virtual Desktop
Azure Virtual Desktop
A Microsoft desktop and app virtualization service that runs on Azure. Previously known as Windows Virtual Desktop.
1,842 questions
Windows for business | Windows Client for IT Pros | User experience | Remote desktop services and terminal services
{count} votes

6 answers

Sort by: Most helpful
  1. Vahid Ghafarpour 23,385 Reputation points Volunteer Moderator
    2025-01-26T02:41:10.45+00:00
    1 person found this answer helpful.

  2. Mounika Reddy Anumandla 6,845 Reputation points Microsoft External Staff Moderator
    2025-01-29T07:26:39.1433333+00:00

    Hi Shackleford, Joshua [USA],

    Thank you for replying back to us. Based on your question, I understand that you are using Remote Desktop client (Mac OS) to connect to your AVD, and you get the error MSAL failed to acquire claims token.

    Since MSAL (Microsoft Authentication Library) handles authentication, it might be failing due to Keychain access issues. Open the Keychain Access app by searching for it in Spotlight. Press Command + Space to open Spotlight, then type Keychain Access and press Enter.

    1.Under Default Keychains, select the login keychain.

    2.In the search box, type com.microsoft.rdc.macos. Your saved passwords are listed.

    3.Right-click a saved password, then select Get Info.

    4.In the new pane that opens, select Access Control, which shows a list of apps that can access the password.

    5.Check access to Microsoft Remote Desktop

    Check if Conditional Access policies are blocking smart card authentication.

    In version 11.0.0 and above, the Remote Desktop client has a new name, Windows App. For more information on the Windows App update, see What is Windows App. If you're using macOS or iOS/iPadOS, you should reference Get started with Windows App to connect to desktops and apps moving forward.

    Here are the redirection setting for MAC OS.

    https://learn.microsoft.com/en-us/windows-app/device-audio-folder-redirection-teams?tabs=macos#redirection-settings

    Ref: https://learn.microsoft.com/en-us/azure/virtual-desktop/troubleshoot-client-macos?source=recommendations

    Here's how to collect logs from the Remote Desktop client for macOS:
    https://learn.microsoft.com/en-us/azure/virtual-desktop/troubleshoot-client-macos?source=recommendations#collect-logsCan you confirm if you have gone through the ref doc: https://learn.microsoft.com/en-us/answers/questions/2104123/smart-card-reader-not-recognized-in-avd-on-mac

    In case I misunderstood the scenario, please add more details/context to help me better understand.

    Hope this helps.

    0 comments No comments

  3. Deleted

    This answer has been deleted due to a violation of our Code of Conduct. The answer was manually reported or identified through automated detection before action was taken. Please refer to our Code of Conduct for more information.


    Comments have been turned off. Learn more

  4. Deleted

    This answer has been deleted due to a violation of our Code of Conduct. The answer was manually reported or identified through automated detection before action was taken. Please refer to our Code of Conduct for more information.


    Comments have been turned off. Learn more

  5. Deleted

    This answer has been deleted due to a violation of our Code of Conduct. The answer was manually reported or identified through automated detection before action was taken. Please refer to our Code of Conduct for more information.


    Comments have been turned off. Learn more

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.