Configuring Azure Virtual Desktop for Shared Kiosks

This topic details how to configure Microsoft Azure Virtual Desktop and Imprivata Virtual Desktop Access for shared kiosks.

The Shared Kiosk Workflow

A shared kiosk let multiple users automatically connect to their own full virtual desktop from a shared local Windows endpoint.

Before You Begin

Before you begin, be sure that you meet the following prerequisites:

Azure Virtual Desktop Configuration

In this section you:

  • Grant Entra ID tenant-wide consent to Enterprise Access Management.

  • Install the Imprivata agent on your virtual machines.

  • Configure several registry settings to enable the virtual desktops for the workflow.

Windows endpoint Configuration

In this section you:

  • Verify that your local endpoints can access the Imprivata web service.

  • Install the Microsoft Remote Desktop client on your local endpoints.

  • Configure generic workstation-based credentials to automatically log into the local endpoint.

  • Install the Imprivata agent on your local endpoints.

  • Optionally, configure the DesktopToAutoLaunch registry key to override the desktop chooser.

Imprivata Enterprise Access Management Configuration

In this section you:

  • Configure a computer policy and assign it to your local endpoints.

  • Configure a user policy and assign it to the users who require access to a virtual desktop.

  • Import and deploy the AVD single sign-on application profile.

  • Limit SSO to the Microsoft Remote Desktop client.