11-19-2020 11:03 PM
Hi,
i could not find an article describing what im asked to do.
if there is a microsoft remote desktop server with the gateway service installed - is there a way to 2FA only connections using the gateway, but not ‘local rdp’ connections ?
11-20-2020 06:03 AM
Have you already read this?
11-23-2020 02:55 AM
Hello, thank you Kristina - no i have not, but now i did. (“protect an application” -> “rd gateway” ‘documentation’ redirects to Duo 2FA for Microsoft Remote Desktop Services | Duo Security )
So it is possible to use DUO for external (gateway) connections, but only regular logon for internal RDP sessions ?
11-24-2020 04:35 AM
There are separate apps for RD Gateway, RDWeb, and RDP. Note: if RDWeb is installed on you Gateway or otherwise publicly accessible you should install the RDWeb protection on that server too. The RDP app protection is for RDP logins to a specific server and optionally to protect console logins too.
If you only install the RD Gateway app protection on your RD Gateway then only the Gateway will prompt for MFA. The Session Hosts will not (unless you also install the RDP app protection)
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide