Single sign on issue with random users

Nagendra R. Singh 5 Reputation points
2023-09-15T10:28:58.8466667+00:00

Hi All,

I am using azure remote desktop to login user in AVD, when i have enable single sign on setting from remote property getting error something went wrong and user is unable to login in AVD.

If i have select that setting not configure its working fine.

can someone help me what to do on this issue.

2nd image for not working setting

1st for working setting.error2

error1

semils

Azure Virtual Desktop
Azure Virtual Desktop
A Microsoft desktop and app virtualization service that runs on Azure. Previously known as Windows Virtual Desktop.
Microsoft Security | Microsoft Entra | Other
{count} votes

1 answer

Sort by: Most helpful
  1. Prrudram-MSFT 28,486 Reputation points Microsoft Employee Moderator
    2023-09-29T08:26:43.2266667+00:00

    Hi @Nagendra R. Singh

    Thank you for reaching out to the Microsoft Q&A platform.

    It seems like the error is related to the user or administrator not consenting to connecting to the target device. The error message suggests sending an interactive authorization request for this user and target machine.

    To resolve this issue, you can try the following steps:

    1. Go to the Azure portal and navigate to global filter and search for "Enterprise applications" under Microsoft Entra(Formerly Azure AD)
    2. Select "Enterprise applications" and search for the application that you are trying to use for remote desktop.
    3. Click on the application and go to the "Permissions" tab.
    4. Under "API permissions", make sure that the necessary permissions are granted for the application to access the target device.
    5. If the necessary permissions are not granted, click on "Add a permission" and select the appropriate permission.
    6. Once the permission is added, click on "Grant admin consent for [your organization name]" to grant consent for the application to access the target device.

    After completing these steps, try logging in again and see if the issue is resolved. If the issue persists, you can try contacting your system administrator for further assistance.

    For details, look at https://learn.microsoft.com/en-us/azure/active-directory/manage-apps/grant-admin-consent?pivots=portal#construct-the-url-for-granting-tenant-wide-admin-consent

    If this does answer your question, please accept it as the answer as a token of appreciation.

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.