Forum Discussion

britestonedev's avatar
britestonedev
Copper Contributor
Aug 08, 2025

Enable FIDO Token (RSA DS100) passthrough to W365 Machine via Windows App

Hi There,

Working with Enterprise license, trying to establish the approach to allow FIDO Token, specifically the RSA DS100, to redirect from the Host device. The users can only connect via the Windows application, not via the RDP client. 

I have the Device Class/Driver ID of the token. 

It is key that removable storage is not enabled as a result of this, for obvious reasons. Ideally the allowance would be scoped to only include the token.

Thanks in advance.

1 Reply

  • Bonilla's avatar
    Bonilla
    Iron Contributor

    Windows 365 currently supports USB/FIDO token redirection only through the Remote Desktop client, not the Windows 365 app. The Windows app doesn’t yet allow granular USB passthrough by device class/ID. To achieve scoped redirection (RSA DS100 only, without enabling generic removable storage), you’d need to configure Remote Desktop client with USB redirection rules (RDP GPO/USBDeviceRules) or wait for the Windows 365 app to add that feature. At present, the Windows 365 app can’t selectively pass through a FIDO token while blocking storage.

Resources