10-02-2019 12:41 PM
10-02-2019 12:41 PM
Is there currently any way of automating the subscription config in Remote Desktop, so that our users don't have to?
We want to silently install the client on the users device, automatically set up the subscription against WVD without requiring any user intervention, so when the users click an application, with SSO, they will automagically be able to start the application on WVD.
With the native "remoteapp and desktop connections" we were able to configure this with GPO, so users wouldn't have to input anything, but as I understand, this is not supported with WVD. (Even though it still works at the moment)
Anyone with experience around this? Or know about any roadmap plans?
10-04-2019 10:17 AM
10-04-2019 02:07 PM
01-13-2020 11:31 AM
Hi Soo Kuan, do you have any update on this one? We have multiple projects where WVD will be used for environments between 250 and 1000.
Thank you in advance!
01-29-2020 09:08 AM
On the other hand we have a similar, but opposite problem.
We would like to centrally remove the WVD Client subscription as some users inevitably will leave configured clients around potentially with saved credentials.
Additionally, is there a way to force Multi Factor Authentication *each time* a user logs into WVD?
It seems that due to financial sector auditors request we need to verify each and every WVD desktop login with more than one credential factor. At the moment the security side of WVD is a concern as once the user subscribed (and potentially saved credentials) anyone can click an unattended client device and be logged on WVD without further challenge... handy but scary.
Thank you very Much
02-27-2020 04:23 AM
Hi @nicoladv I know this is not exactly what you are asking but I would recommend checking out the solutions of our wvd partner DeviceTrust (devicetrust.com/wvd) : they add a lot of value to WVD in terms of contextual security.
03-24-2020 01:32 PM
I actually have the exact same need. We have been implementing a WVD solution, and I have been tasked with configuring Azure Intune Autopilot to deploy in such a way that all our helpdesk will have to do is give the user a laptop and the setup should be completely automated. The Windows Virtual Desktop app works great, but I can't find any way to automate the subscription process. Theoretically this should be do-able in Intune, but I'm unable to find any settings to govern it.
03-25-2020 11:08 AM
@JimCopeland63 Thanks for the feedback Jim. We've been looking at different ways to improve the initial subscription flow, at least for cases where the user's AAD token is already available for us to use (ex: AADJ or workplace joined devices).
One option is similar to RDS, where we'd add a policy/regkey like AutoSubscribeURL that when present would try to automatically subscribe the user using their existing AAD token. This workspace would not be removable by the user, contrary to manually added ones.
Thoughts on this?
03-25-2020 11:21 AM - edited 03-25-2020 11:22 AM
It sounds like that would solve our immediate problem for sure.
Together with the Remote Desktop client itself starting in the background, and SSO, the users startmenu would populate automatically with assigned applications from WVD, without the users even having to see the client!
05-14-2020 06:48 AM
Could you tell us where this policy \ reg key is located?
06-04-2020 07:09 AM
@Soo Kuan Teo I have this requirement too. I'm working with multiple UK public sector clients. The two I'm working with right now are 50K users and 140K users.
07-13-2020 12:22 PM
I also have kind of that opposite need that I want the Remote Desktop client to UNSUBSCRIBE ever time it is closed so that MFA is actually forced each time a user logs in. Any other way to force MFA ever time a user logs in to their Wvd?
07-13-2020 12:33 PM
That's an interesting idea, which regkey would need to be configured?
07-13-2020 11:41 PM
Maybe you can configure the Sign-in frequency for this and set it to 1 hour.
07-17-2020 02:36 PM
@David Belanger on the same boat, could you share that GPO\key that can help us with that?
07-23-2020 07:37 AM
@David Belanger Please do this. We have shared thin clients that we want to keep subscribed.