How to enable Rublon MFA for RD Web Client on a server already using Rublon MFA for RD Web Access?

Modified on Tue, 6 Oct at 3:48 PM

If Rublon MFA already protects RD Web Access on your server, the same connector can also protect the HTML5 RD Web Client. You can use both interfaces on the same server without removing the existing RD Web Access integration.


Is Additional Rublon MFA Configuration Required?

No additional Rublon MFA configuration or connector reinstallation is necessary when you install RD Web Client on a server with a working Rublon MFA for RD Web integration.


During installation, the Rublon MFA for RD Web connector registers modules for both RD Web Access and RD Web Client, even if the HTML5 client is not yet installed.


How to Verify That MFA Works

After installing RD Web Client, test sign-in to both interfaces with a user account that requires MFA.


Use a fresh browser session for each test, for example by closing all private browsing windows and opening a new one. RD Web Access and RD Web Client share a Rublon MFA session, so signing in to one interface and then opening the other may not trigger another MFA request.


Verify that completing MFA allows the user to sign in. In a separate fresh session, verify that rejecting the MFA request prevents sign-in.


What If MFA Does Not Work in the Newly Installed RD Web Client?

A server restart is not normally required. However, IIS may need to reload the connector modules after RD Web Client is installed.


Try recycling the application pool:


1. Open Internet Information Services (IIS) Manager on the RD Web server.


2. Select Application Pools.


3. Select RDWebAccess and click Recycle.


4. Test sign-in to RD Web Client again in a fresh browser session.


Alternatively, open Command Prompt as administrator and run:


iisreset


Note: This command restarts IIS and affects all websites and applications hosted on it. Schedule it for an appropriate maintenance window.

What If the Issue Persists?

Check the connector log for an entry indicating that the Rublon RD Web Client module has initialized. Module initialization alone does not confirm that MFA completed successfully. Also review the entries for your test sign-in.


Contact Rublon Support and provide:

  • The Rublon MFA for RD Web connector version.

  • The RD Web Client version.

  • The Windows Server version.

  • The connector log and the approximate time of the test.

  • A description of the behavior in each interface, including whether MFA works in RD Web Access but fails in RD Web Client.



Helpful Links

Rublon MFA for RD Web Access: Documentation

Rublon MFA for RD Web Client: Documentation

How to check if I use Remote Desktop Web Access or RD Web Client?

How to check RD Web Client version?


Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article