Link to home
Start Free TrialLog in
Avatar of Zoldy2000
Zoldy2000Flag for Canada

asked on

MFA on RDP Gateway best option

MFA on RDP Gateway.     Currently we have office 365 plans that include Azure MFA for office 365.    We are synced with active directory and this works well for Office 365.     However we have identified that our RDP gateway server presents some risks as it is not using MFA.      In researching how to use MFA on RDP gateway its seems only paid options exists.    while I am not against paying for a solution everything I have found thus far is extremely expensive considering we only need it for RDP gateway MFA.       We have a paid solution for office 365 already included in our plans.    Azure plans that allow RDP MFA are around 6 dollars per user per month as are other third parties.    As an all around solution I suppose that is reasonable but just for RDP gateway it is alot.

My question is what are others doing?   Are there other options available to me I am not aware of?    What do you recommend?

Thanks in advance
Avatar of Philip Elder
Philip Elder
Flag of Canada image

You can integrate the O365/Azure MFA into your RD Gateway. This improves the user's Single Sign-On experience significantly.

It works quite well.
Avatar of Zoldy2000

ASKER

Okay the information I found was that the license required for this is NOT included with office 365 plans.     Are you saying it is?   just to clarify?
I'm pointing specifically to MFA being integrated into RD Gateway. No idea on the licensing side.
Thank you but I am already aware of this as mentioned in the post.    But what I found was this is not included in our plans and cost an additional 6 dollars per user per month.     So I am looking for alternatives to Azure.    Unless wrong about not included in the Azure for office 365 plans
The only other product we'd trust to get the job done would be DUO. Cost is in the same neighbourhood.
is it possible since everything we use in the company authenticates to Active Directory to just implement an on premise Multifactor solution on our Active Directory and then all logons of any kind from any app with use Multifactor.

The more I think this through this makes the most sense for total user account security.
O365 MFA would be the direction we'd go in since it's already there. It's seamless.
I looked into O365 MFA... its only for office 365 logon.    Unless you upgrade your package.     And the documentation is confusing about how to apply a cloud based solution like O365 MFA to local domain logons.
ASKER CERTIFIED SOLUTION
Avatar of Philip Elder
Philip Elder
Flag of Canada image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Okay I am on the right track I am looking at DUO and Azure AD MFA.      The only reason I might lean towards DUO is access to support is much easier.

Thanks
Got it.