We are experiencing an issue with CredSSP and untrusted certificates enterprise wide affecting 100+ admins. First we had to run "defaults write com.microsoft.rdc.macos ClientSettings.EnforceCredSSPSupport 0" in terminal to resolve the NLA login issue. Which affected since it ignores the value of the parameter EnableCredSspSupport. then later we found our one of our RDS instances was using the self-signed cert to secure RDP traffic. Any windows client works just fine, but all the Macs broke that were on v10.2.x. We had to use Version 8 to allow RDP and remote apps. It may be a security hole of some sort but it would be nice to be able to choose if you trust the certificate being presented. We added the cert to test Macs to no avail but the v8 client will allow you to connect and choose to trust the endpoint. In v10.2.x it never prompts for the cert. Please help resolve the v10 issue before you get rid of the v8 client.