Remote desktop macOS client cant connect to azuread joined virtual desktop

Jack Challis 5 Reputation points
2023-04-04T04:04:15.1366667+00:00

Using the macOS client for remote desktop to connect to an azuread joined virtual desktop. I can connect to the same virtual desktop using the user account on windows and web clients but not mac. Mac client can connect to admin account but not the user account as it states 'wrong logon' when it is indeed correct.

All devices are enrolled with Intune and registered in azure ad. MFA has been disabled. Only thing I can see that may be causing the issue is the flag on the RDP properties: enablerdsaadauth:1 (https://learn.microsoft.com/en-us/azure/virtual-desktop/configure-single-sign-on) but I get the same result if it is turned on or not.

Is it possible to connect to azure virtual desktop on the MacOS client using the assigned azure active directory user or not?

I would be grateful for any pointers.

Azure Virtual Desktop
Azure Virtual Desktop
A Microsoft desktop and app virtualization service that runs on Azure. Previously known as Windows Virtual Desktop.
1,844 questions
Windows for business | Windows Client for IT Pros | User experience | Remote desktop services and terminal services
{count} votes

2 answers

Sort by: Most helpful
  1. Prrudram-MSFT 28,286 Reputation points Microsoft Employee Moderator
    2023-04-04T09:04:45.74+00:00

    Hello @Jack Challis

    Thank you for reaching out to the Microsoft Q&A platform.

    Yes, it is possible to connect to Azure Virtual Desktop on the macOS client using the assigned Azure Active Directory user. Most importantly to connect from MacOS, you need to set the custom RDP property targetisaadjoined:i:1 https://learn.microsoft.com/en-us/azure/virtual-desktop/azure-ad-joined-session-hosts#connect-using-the-other-clients

    There could be a few more things that could be causing the issue you are experiencing. First, make sure that the user account you are trying to connect with has the necessary permissions to access the virtual desktop. You can check this by going to the Azure portal and navigating to the virtual desktop host pool. From there, select the "Users" tab and make sure that the user account is listed and has the appropriate permissions. Second, make sure that the macOS client is up to date and that you have installed the latest version of the Remote Desktop client for macOS. You can download the latest version from the Microsoft website. Finally, you mentioned that MFA has been disabled. It's worth noting that if you have configured a Conditional Access policy that requires MFA, you may need to use a strong authentication method such as Windows Hello to sign in to the virtual desktop. Regarding the RDP properties, the enablerdsaadauth flag is used to enable Azure AD authentication for the virtual desktop. If you are having issues with authentication, it's possible that this flag is not set correctly. You can try setting it to 1 using PowerShell to see if that resolves the issue. I hope this helps! Let me know if you have any further questions.
    Please accept answer and upvote if the above information is helpful for the benefit of the community.

    0 comments No comments

  2. Limitless Technology 44,766 Reputation points
    2023-04-04T15:58:22.3566667+00:00

    Hello Thank you for your question and reaching out. I can understand you are having query\issues related to Make sure you're using the correct credentials first if you keep getting an error message that states your credentials are invalid but you can't sign in. If you continue to receive error messages, confirm that you've met the following requirements: Have you given each user's virtual machine (VM) or resource group the role-based access control (RBAC) authorization for virtual machine user login? Do the multi-factor authentication requirements for the Azure Windows VM sign-in cloud application fall under your Conditional Access policy? Reference : https://learn.microsoft.com/en-us/azure/virtual-desktop/troubleshoot-client-macos --If the reply is helpful, please Upvote and Accept as answer--

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.