Login to Windows 11 VM with Bastion Gateway

Login to Windows 11 VM with Bastion Gateway

avatar

Hi All,

I am a Global Admin of our Azure Tenant and have configured a Bastion Gateway for connecting to our VM's on our Azure tenant.

BUT...

We are not able to connect to the VM's with an AzureAD account. There is no issue using a local machine account but as soon as we try to login with an AAD user the login fails.


I have checked that the machine is AAD Joined and has the AADLoginforWindows Extension installed and updated and all of this is fine. I can also see the device in Entra ID and it reports being AADJoined when I run dsregcmd /status

I have also tried disabling NTLM failover to see if this could be the issue but no luck here...

The user is also added to the Virtual Machine Administrator Login role and is a member of the local administrator and Remote Desktop user groups.

Any ideas why I can connect with a local account and not a AAD user account?

All Comments (2)

avatar

Hello,

Thank you for reaching out to us regarding this,

Could you please specify the version of RDM you are currently using?
What type of data source are you using?

I'm also wondering if you could provide us with a screenshot of the error you receive when attempting the connection? I'm assuming this is a new configuration in RDM is that correct?

Let me know,

Best regards,

Samuel Dery

avatar

Hello

Are you talking about Azure Bastion?

The first thing you should try is enabling the "Entra ID SSO" checkbox in the "Authentication" tab of the RDP session properties.

Let me know if it helps or not.

Thanks and kind regards,

Richard Markievicz