Enable two-factor authentication (2FA) on your Windows Server using Duo Security for enhanced protection via RDP login. This guide covers only the essential setup: Duo account creation, Duo App installation, and integration with your server’s RDP.
✅ Requirements
-
Windows Server (2012 R2 or newer recommended)
-
Administrator privileges
-
Internet access
-
Smartphone (iOS or Android)
Step 1: Create a Free Duo Security Account
-
Sign up with your email address and company name.
-
After verification, log in to the Duo Admin Panel at https://admin.duosecurity.com
Step 2: Install Duo Mobile App
-
On your smartphone, go to the App Store (iOS) or Play Store (Android).
-
Search for "Duo Mobile" and install it.
-
Do not open it just yet — you will scan a QR code later.
Step 3: Create a New Application in Duo
-
In the Duo Admin Panel, go to Applications.
-
Click Protect an Application.
-
Search for “RDP” and click Protect next to Microsoft RDP.
-
Copy these details:
-
Integration Key
-
Secret Key
-
API Hostname
-
Step 4: Install Duo Authentication for Windows Logon
-
Download Duo's installer:
-
Run the installer as Administrator.
-
During installation:
-
Enter the Integration Key, Secret Key, and API Hostname. (You can get those details from Microsoft RDP application's details page in the Duo Admin Panel Application Menu.)
-
Check the box to enable Duo for RDP logins only (leave console logins unchecked). (Recommended)
-
Optionally enable fail mode to allow login if Duo service is unreachable.
- Visit https://duo.com/docs/rdp for more details.
-
Step 5: Test Login with Duo
-
Log off and reconnect using Remote Desktop (RDP).
-
You’ll now see a Duo prompt on login.
-
Approve the login from your Duo Mobile app.
-
Done — your RDP access is now protected by Duo 2FA.
⚠️ Tips
-
Add multiple admins to your Duo account for backup access.
-
Save your Duo Mobile recovery options in case you lose your phone.
-
You can enforce 2FA only for specific users/groups via GPO if needed.
Useful Links
-
Duo Admin Panel: https://admin.duosecurity.com
-
Duo App Downloads: https://duo.com/mobile
-
Full Documentation (Advanced Use): https://duo.com/docs/rdp