Can I Use Conditional Access to Enforce MFA for RDP Connections Based on IP Range?

0
16
Asked By TechieNinja42 On

I'm curious if there's a way to enforce Multi-Factor Authentication (MFA) for Remote Desktop Protocol (RDP) connections specifically based on a certain IP range for client-side PCs. Has anyone tackled this issue?

5 Answers

Answered By DuoMFApro On

I don't think there's a built-in method for this, but we've successfully implemented Duo for our server logins. Simply create a Duo tenant, set it up for RDP/Windows logins, and install the client on the devices you wish to secure.

Answered By SecureMFAWizard On

To get started, the Azure MFA extension can help you set this up. Just check out some guides online to walk you through the process! They can be a bit tricky, but they should get you most of the way there.

Answered By NetworkGuard99 On

It really depends on which MFA solution you use. Duo allows you to specify authorized networks in the RDP application settings, which might help with what you're trying to achieve.

Answered By MFAUser123 On

I've been using Duo for this purpose for about five years now, and it works well for RDP security.

Answered By CloudSecurityGal On

While Duo is great, don't forget that Entra GSA can also protect RDP connections without needing an agent on the server, if that's something you're interested in.

Related Questions

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.