Remote Desktop is a software that lets you view and control another computer’s desktop over a network as if you were sitting in front of it. It uses a client-server model.
The Remote Desktop client is a thick client that runs on the user’s machine. It talks to the RDP service on a Windows Server or remote PC, sending keyboard and mouse input to the server and receiving the graphical desktop back as compressed display updates.
In an enterprise environment, Remote Desktop Thick Client SSO means enabling users to open RDP sessions without repeatedly typing credentials, by reusing the identity they already used to sign in to Windows or to a central identity provider.
Let’s look at how to set up Remote Desktop thick client SSO.





| App Field | Description |
|---|---|
| Application Name | Enter your application name |
| App Type | For this Remote Desktop thick client setup, the application type does not affect the integration. Select SIMPLE_LOGIN (the simple login / default option in the dropdown) and continue. |
| Login Page URL | mo://rdc |

| App details | Description |
| Individual Login | If each user has a different username and password for the app, admin should choose an Individual Login Account option, so that users can save their username and password from the user portal themselves. |
| Shared Login | If multiple users are allowed to access the app via the same credentials assigned by admin, admin should choose share Login Account option. |
| Group Name | Select Group name as default.(This will allow all your added groups to access this service) |
| Policy Name | Select Policy Name the same as your application name. |
| Login Method | The authentication method for Users. |
| Enable 2-Factor Authentication (MFA) | Enable this option if you want to enable MFA on top of the user authentication. Note: Can be only used with Password as the login method. |
| Enable Adaptive Authentication | Enable this option if you want to enable Adaptive Authentication on top of the user authentication. The type of Adaptive Authentication and the Adaptive Authentication Policy has to be configured in this case. Note. Either MFA or Adaptive Authentication can be enabled in a policy and not both. |
Note: Extension: install the browser extension and miniOrange Agent MSI on user machines.
Note: Click here to proceed with the configuration steps. Select Individual Login for user-level credentials, or Shared Login for centrally managed credentials.




