Yubikey Code Signing over Remote Desktop Session

lupinlicious 136 Reputation points
2024-05-30T17:31:59.26+00:00

Hello,

I have a YubiKey connected to my server (Windows Server 2019), where I usually sign my applications. Everything works perfectly fine if I sit physically at the keyboard. However, if I use my workstation (Windows 11) with a remote desktop to the server, it doesn't find my YubiKey. Does anyone know how to deal with this issue? Is this possible?

Also, is there a way to cache or enter username/pin (from the YubiKey) to the registry (or something else) so it stops asking for my pin code (so I can automate the process)

Thanks!

Windows Server 2019
Windows Server 2019
A Microsoft server operating system that supports enterprise-level management updated to data storage.
3,548 questions
Windows 10
Windows 10
A Microsoft operating system that runs on personal computers and tablets.
10,987 questions
Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,455 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Karlie Weng 15,761 Reputation points Microsoft Vendor
    2024-05-31T02:33:14.33+00:00

    Hello,

    First ensure the Remote Desktop Client is set to share Smart Cards. User's image

    If this approach fails, I suspect that Yubikey may not be supported when using RDP with Server 2019, but it is supported in Server 2022, as indicated in the thread: Using Yubikey inside RDP Session (Terminal Server) - Microsoft Q&A

    We could also consider verifying this on Yubico forums:

    https://www.yubico.com/support-services/

    https://forum.yubico.com/

    yubikey and rds - Microsoft Q&A


    If the Answer is helpful, please click "Accept Answer" and upvote it.

    0 comments No comments

  2. lupinlicious 136 Reputation points
    2024-05-31T03:49:25.24+00:00

    thank you @Karlie Weng but how do you mean with "First ensure the Remote Desktop Client is set to share Smart Cards." The Yubikey is connected on the Windows server 2019, I'm using a Windows 11 computer.