Policy overview

Key metadata and intent for this policy.

ClassComputer
CategoryWindows Components > Remote Desktop Services > Remote Desktop Session Host > Device and Resource Redirection
Supported onAt least Windows Server 2019, Windows 10 Version 2004

Supported OS tags: Windows10, Windows10RT, Windows11, WindowsServer2016

This policy setting lets you control the redirection of web authentication (WebAuthn) requests from a Remote Desktop session to the local device. This redirection enables users to authenticate to resources inside the Remote Desktop session using their local authenticator (e.g., Windows Hello for Business, security key, or other). By default, Remote Desktop allows redirection of WebAuthn requests. If you enable this policy setting, users can't use their local authenticator inside the Remote Desktop session. If you disable or do not configure this policy setting, users can use local authenticators inside the Remote Desktop session.

Internal name
TS_WEBAUTHN
Policy ID
406738e0b86a
Elements
0

Registry values

How enabled and disabled states update the registry.

Registry locationTypeEnabled valueDisabled value
HKLM\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services\fDisableWebAuthnREG_DWORD
1
0

Policy elements

Inputs and configuration options exposed by this policy.

This policy has no additional user input fields.

Other policies in this category

Explore related policies at the same level.

View all policies in this category