Forum Discussion
XerxesH
May 07, 2024Copper Contributor
AVD Adding users to Remote Desktop User Group
Hi all, From my understanding AVD uses port 443 (HTTPS) to connect users to their virtualized environment. However, I have noticed that AVD automatically adds users to the Remote Desktop Users Gr...
jlou65535
May 07, 2024MCT
XerxesH Just tested on an Azure Virtual Desktop host pool Entra ID join and you are right.
But my RDP direct access is also working without being part of Remote Desktop Users Group, as soon my Entra ID user is having the Virtual Machine User Login role on the AVD VMs
Why do you want to remove that automation mechanism ?
Security purpose ?
XerxesH
May 07, 2024Copper Contributor
Hi jlou65535
Yes correct! Thanks for verifying! When a user receives a session by opening remote app or virtual desktop, they are automatically added into that group, giving them RDP access. In my opinion they should not be added to the group as normal users should not have direct RDP to the session hosts as it does pose as a security risk.
Best Regards
Xerxes Hansen