Hey everyone! I'm working with a client who needs a central server environment for remote work. Currently, they have about 8 to 10 employees all working locally, but they want to transition to a remote setup. I'm considering a serverless solution with Entra, SharePoint, and Intune, but the client prefers a traditional server environment.
Here's what I'm thinking: a single RDS server with identity management through Entra and Azure Blob storage connected to it. They also want to ensure secure remote access and appropriate policies in place. They don't use any on-premise applications; everything is SaaS-based.
The main goals are a cost-effective solution that supports remote work while keeping data secure. Any thoughts on how I should approach this?
5 Answers
Honestly, I'm leaning towards using Intune here. If your employees need laptops, how will you ensure they don’t bring in malware if they’re on personal devices? It's all about managing risk. Even with company devices, you’ll need to implement good management practices. These days, managing devices with Intune is a modern and efficient way to do it!
An option could be AVD combined with FSLogix and Azure File shares. This approach balances manageability and efficiency—plus, it simplifies the user experience, especially on thin clients.
If your client is sticking with RDS and using thin clients, I'd suggest looking into Azure Virtual Desktop along with Entra and Azure Files. Just keep in mind that placing an RDS server directly on the public internet can lead to security issues unless properly secured. Keep an eye on the monthly VM costs too, as they can add up—I'd estimate around $3k a year at least for a decent experience during business hours. Better to run it only when needed!
Consider having two RDS servers on-premises for load balancing and redundancy. It really depends on the budget, but it's better to over-spec your setup now to avoid performance issues down the line.
You might also want to look into Windows 365. It offers a smooth desktop experience for thin clients without needing much infrastructure, and it can be managed via Intune. It’s a good option if you're looking for simplicity!

Related Questions
Can't Load PhpMyadmin On After Server Update
Redirect www to non-www in Apache Conf
How To Check If Your SSL Cert Is SHA 1
Windows TrackPad Gestures