log into a VM in Azure using my Azure AD credentials via RDP

%3CLINGO-SUB%20id%3D%22lingo-sub-2742186%22%20slang%3D%22en-US%22%3Elog%20into%20a%20VM%20in%20Azure%20using%20my%20Azure%20AD%20credentials%20via%20RDP%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2742186%22%20slang%3D%22en-US%22%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EHello%2C%3CBR%20%2F%3EI%20would%20like%20to%20be%20able%20to%20log%20into%20a%20VM%20in%20Azure%20using%20my%20Azure%20AD%20credentials%20via%20RDP.%20The%20login%20should%20be%20done%20over%20the%20internet%20from%20MAC%20and%20Linux%20clients%20(clients%20are%20not%20members%20in%20Azure%20AD).%20For%20security%20I%20use%20Just%20in%20Time%20Access.%3CBR%20%2F%3EIs%20this%20possible%3F%20How%20can%20I%20implement%20the%20project%3F%3C%2FP%3E%3CP%3EThanks%20for%20the%20support%3C%2FP%3E%3CP%3EStefan%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EEdit%3A%20The%20client%2C%20from%20which%20I%20try%20to%20log%20in%20via%20RDP%2C%20is%20not%20Azure%20AD%20joined%20or%20connectet%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2742186%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3ECompute%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EVirtual%20Machine%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Regular Contributor

 

Hello,
I would like to be able to log into a VM in Azure using my Azure AD credentials via RDP. The login should be done over the internet from MAC and Linux clients (clients are not members in Azure AD). For security I use Just in Time Access.
Is this possible? How can I implement the project?

Thanks for the support

Stefan

 

Edit: The client, from which I try to log in via RDP, is not Azure AD joined or connectet 

 

Edit: I have no activate MFA. This is my problem

signin.png

1 Reply

Hi @Stefan Kießig ,

 

There are some specific requirements and limitations for using 'Sign in to Windows VM with Azure AD credentials' feature. Everything is described in this article: Sign in to Windows virtual machine in Azure using Azure Active Directory | Microsoft Docs

 

I tried to visualize the requirements in a diagram (I made for my customer). It might not be 100% accurate (it's been a few months), so I would refer to the article for up-to-date information. Please not that this feature is now Generally Available for Windows VMs (no longer in a Preview).

 

AAD-sign-in-Windows-VM.png