Certificates needed for Microsoft Remote Desktop Services

Posted on 2012-09-06
Last Modified: 2013-10-15

I´m setting up a rather typical RDS 2008R2 farm; with two Connection Brokers and 10 Session Host servers. I´ve created the first Remote App and published it on the RDWeb website on the session host servers. It is signed with the company wildcard certificate which is also used all over the server farm.

Now everything works fine except for users being prompted twice for credentials, first when they access the RDWEB page, lets call it: and then again from the session host server they get directed to, ie. or

I´ve read a number of articles on how to configure this but I´m still to find the "one and only" way it should be done - maybe I´m missing something obvious.

Can someone shead a light on this for me - can I use my wildcard certificate at all or do I maybe need a SAN certificate that includes both the .com and the .local names and FQDN´s ?

Question by:ossurhf
    LVL 8

    Expert Comment


    Accepted Solution

    Thanks, but I´ve actually followed this article already and cant understand what I´m doing wrong.

    The symptoms might indicate Rdweb is running in Windows Intergrated Mode which it isn´t. I´m using a well known commercial certificate vendor for my wildcard certificate but I am thinking maybe a SAN certificate is required ?

    I dont get any errors logging into When I launch a remoteapp from the webpage I get prompted for credentials from server1.domain.local.

    Author Closing Comment

    Installing a SAN certificate did the trick.

    Featured Post

    Are your corporate email signatures appalling?

    Is it scary how unprofessional your email signatures look? Do users create their own terrible designs and give themselves stupid job titles? You can make this a lot easier for yourself by choosing an email signature management solution from Exclaimer today.

    Join & Write a Comment

    Suggested Solutions

    Normally after a failure of Domain Controller, when promoting new DC the DC is renamed, we will discuss the options in Dcpromo to re-create the DC with the same name. Scenario: You are a small IT shop with two Domain Controllers (Domain Contr…
    Sometimes drives fill up and we don't know why.  If you don't understand the best way to use the tools available, you may end up being stumped as to why your drive says it's not full when you have no space left!  Here's how you can find out...
    This tutorial will walk an individual through the steps necessary to enable the VMware\Hyper-V licensed feature of Backup Exec 2012. In addition, how to add a VMware server and configure a backup job. The first step is to acquire the necessary licen…
    To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…

    755 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    20 Experts available now in Live!

    Get 1:1 Help Now