Forum Discussion
Steve Whitcher
Jul 24, 2018Bronze Contributor
Logging on to Remote Desktop using Windows Hello for Business & Biometrics
In the release notes for build 17713, support was announced for logging into remote desktop sessions using biometrics via windows hello. I have a few questions I'm hoping someone can answer: The...
- Oct 03, 2018
Although late, we have published information around WHfB with RDP :
Christoph Berthoud
Jun 04, 2019Copper Contributor
I have also deployed Key Trust model on the guidance and understanding from Microsoft that it was the simpler, more modern and reliable method to use in a cloud focused future. You can imagine my disappointment to learn of the limitations with this choice after deployment. Even worse, the limitations are not listed in the documentation when advising what solution to consider during deployment.
The two most significant limitations are:
- Up-to 30 minute delay window for key's to be sync'd via AAD Connect
- Can't be used as an RDP authentication method
The two most significant limitations are:
- Up-to 30 minute delay window for key's to be sync'd via AAD Connect
- Can't be used as an RDP authentication method
- Clint LechnerJun 04, 2019Iron ContributorThough an irritation, the 30 minute sync would be a blessing if RDP worked. I can't put into words how absolutely irrate I was when we saw that RDP would not work with key trust, especially given that it's the preferred model.
It just cripples us.- jurajtJun 12, 2019Brass Contributorhas this been resolved? is it possible to use WhfB PIN (not certs!) to RDP login into a windows server joined to Azure AD Domain Services?
- Clint LechnerJun 12, 2019Iron Contributor
jurajt Nope, not as far as I know. If it was resolved, and key-trust worked with RDP, I would be chugging margaritas and dancing on tables.