RDP to Azure AD from Workgroup

Handian Sudianto 6,461 Reputation points
2023-06-30T00:17:09.7133333+00:00

Hello,

I have an laptop using windows 10 and i login to this laptop using my Azure AD account. On this laptop i already enable the RDP with NLA disabled.

Now i want to remote this laptop using 2nd laptop, and 2nd laptop is standalone (not joined to the azure AD).

When i try to RDP from this laptop and use my credential using format AzureAD\myname or myname.domain.com the credentials is not working.

Trying using Remote Dekstop on my android phone, the credential also not working.

Anyone know how to RDP azureAD from standalone workstation?

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Alfredo Revilla - Upwork Top Talent | IAM SWE SWA 27,526 Reputation points Moderator
    2023-07-01T07:44:12.39+00:00

    Hello @Handian Sudianto , it's possible to connect trough Remote Desktop to an Azure AD joined device from a workgroup (non-joined) device using Azure AD Authentication and provided both the client and remote computer use any of the following OS:

    To connect to the remote computer:

    • To connect to the remote computer:
    • Launch Remote Desktop Connection from Windows Search, or by running mstsc.exe.
    • Select Use a web account to sign in to the remote computer option in the Advanced tab. This option is equivalent to the enablerdsaadauth RDP property. For more information, see Supported RDP properties with Remote Desktop Services.
    • Specify the name of the remote computer and select Connect. IP address cannot be used. The name must match the hostname of the remote device and be network addressable
    • When prompted for credentials, specify your user name in ******@domain.com format.

    Let us know if you need additional assistance. If the answer was helpful, please accept it and rate it so that others facing a similar issue can easily find a solution.

    1 person found this answer helpful.

  2. Satya Inampudi 0 Reputation points
    2024-07-06T09:17:46.6+00:00

    When trying with AzureAD user, I am getting the below error:

    Error: the connection was denied because the user account is not authorized for remote login.

    how to add AzureAD user for example: ******@domain.onmicrosoft.com to selected users for RDP on Win11 or WIn10

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.