Allowing Non-2FA Users
The module can be configured to either allow or prohibit users who do not have 2FA enabled from logging in to remote computers with Remote Desktop Protocol. This scenario occurs if the user is not configured for any authentication method or the Mobile Application. The Remote Desktop configuration option to allow non-2FA users to log in is enabled. The configuration option to allow non-2FA users defaults to being enabled after installation.
In this configuration, a user can log into the remote computer with their Active Directory password.
If the configuration option to allow non-2FA users is disabled, then the user cannot log into remote computers with Remote Desktop Protocol.
To change the module configuration, navigate to Components in the ESA Web Console, click RDP, and the Computer list window will appear, listing all computers where Remote Desktop Protection of ESET Secure Authentication is installed.