{"id":70253,"date":"2026-07-14T09:00:15","date_gmt":"2026-07-14T07:00:15","guid":{"rendered":"https:\/\/nolabnoparty.com\/?p=70253"},"modified":"2026-07-13T16:37:08","modified_gmt":"2026-07-13T14:37:08","slug":"secure-omnissa-horizon-with-microsoft-entra-id-2fa","status":"publish","type":"post","link":"https:\/\/nolabnoparty.com\/en\/secure-omnissa-horizon-with-microsoft-entra-id-2fa\/","title":{"rendered":"Secure Omnissa Horizon with Microsoft Entra ID 2FA"},"content":{"rendered":"<p><img decoding=\"async\" class=\"aligncenter wp-image-70254 size-full\" title=\"secure-omnissa-horizon-microsoft-entra-id-2fa-01\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-01.jpg\" alt=\"secure-omnissa-horizon-microsoft-entra-id-2fa-01\" width=\"602\" height=\"202\" \/><\/p>\n<p>To add an extra layer of security on top of standard multi-factor authentication (MFA), you can secure <a href=\"https:\/\/nolabnoparty.com\/en\/scaling-omnissa-app-volumes-manager-kemp-load-balancer\/\">Omnissa Horizon<\/a> using Microsoft Entra ID 2FA.<\/p>\n<p>This allows you to enforce an <strong>additional authentication factor<\/strong> when users log in to the Omnissa Horizon VDI infrastructure.<\/p>\n<p><!--more--><\/p>\n<p>&nbsp;<\/p>\n<h2>Prerequisites<\/h2>\n<p>Before proceeding with the configuration of Microsoft Entra ID 2FA, ensure the following <strong>prerequisites are already implemented<\/strong> for the solution to work correctly.<\/p>\n<ul>\n<li><a href=\"https:\/\/nolabnoparty.com\/en\/vmware-uag-configure-azure-mfa-saml\/\">Azure MFA<\/a> - Azure MFA must be configured to leverage the SAML-based authentication feature.<\/li>\n<li><strong>UAGs<\/strong> - configured to allow SAML authentication.<\/li>\n<li><a href=\"https:\/\/nolabnoparty.com\/en\/vmware-horizon-true-sso-configuration-pt-3\/\">Connection Servers<\/a> - configured for SAML authentication.<\/li>\n<li><a href=\"https:\/\/nolabnoparty.com\/en\/vmware-horizon-true-sso-configuration-pt-1\/\">True SSO<\/a> - implemented to prevent users from having to enter their credentials twice.<\/li>\n<li><strong>Active Entra ID license<\/strong> - At least the <strong>Microsoft Entra ID P1<\/strong> is required to enable and customize the 2FA feature.<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<h2>Microsoft Entra ID 2FA configuration<\/h2>\n<p>Login to your <a href=\"https:\/\/portal.azure.com\/\" target=\"_blank\" rel=\"noopener\">Azure portal<\/a> and and navigate to the <b data-path-to-node=\"11\" data-index-in-node=\"48\">Entra ID<\/b> admin area.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70255\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-02-600x473.jpg\" alt=\"\" width=\"600\" height=\"473\" title=\"\"><\/p>\n<p>&nbsp;<\/p>\n<h4>Add users in Entra ID to allow external access<\/h4>\n<p>Before implementing Microsoft Entra ID 2FA, you must grant <strong>external access to the Horizon infrastructure<\/strong> for the users entitled to use the VDIs. Expand <strong>Manage<\/strong> and select <strong>All applications<\/strong>. Select or create the application used for the <strong>SAML authentication<\/strong>. In the example an existing <em>VMware Horizon - UAG<\/em> application is used.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70256\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-03-600x378.jpg\" alt=\"\" width=\"600\" height=\"378\" title=\"\"><\/p>\n<p>In the application properties, click the <strong>Assign users and groups<\/strong> link to grant the access to the required users.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70257\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-04-600x334.jpg\" alt=\"\" width=\"600\" height=\"334\" title=\"\"><\/p>\n<p>Go to <strong>Manage &gt; <\/strong><strong>Users and groups<\/strong> and click\u00a0 <strong>Add user\/group<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70258\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-05-600x406.jpg\" alt=\"\" width=\"600\" height=\"406\" title=\"\"><\/p>\n<p>Click <strong>None Selected<\/strong> to choose the users <a href=\"https:\/\/nolabnoparty.com\/en\/office-365-install-azure-ad-connect\/\">synchronized from Active Directory<\/a>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70259\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-06.jpg\" alt=\"\" width=\"600\" height=\"259\" title=\"\"><\/p>\n<p>Select the users you want to grant access to and click <strong>Select<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70260\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-07-600x423.jpg\" alt=\"\" width=\"600\" height=\"423\" title=\"\"><\/p>\n<p>Click <strong>Assign<\/strong> to add the select users to the application.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70261\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-08.jpg\" alt=\"\" width=\"600\" height=\"464\" title=\"\"><\/p>\n<p>Verify that the selected users have been successfully added.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70262\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-09-600x389.jpg\" alt=\"\" width=\"600\" height=\"389\" title=\"\"><\/p>\n<p>&nbsp;<\/p>\n<h4>Create a new Entra ID group<\/h4>\n<p>To simplify management, it is recommended to use a group rather than managing a list of individual users when configuring Microsoft Entra ID 2FA. From Entra ID, select <strong>Manage &gt; Groups<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70263\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-10-600x344.jpg\" alt=\"\" width=\"600\" height=\"344\" title=\"\"><\/p>\n<p>Click <strong>New group<\/strong> to create a new group.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70264\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-11-600x352.jpg\" alt=\"\" width=\"600\" height=\"352\" title=\"\"><\/p>\n<p>Leave the default <strong>Security<\/strong> as <strong>Group type<\/strong>, then specify a <strong>Group name<\/strong> and a <strong>Group description<\/strong>. Click <strong>No members selected<\/strong> to add members to this group.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70265\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-12-600x517.jpg\" alt=\"\" width=\"600\" height=\"517\" title=\"\"><\/p>\n<p>Select the users to add, then click <strong>Select<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70266\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-13-600x360.jpg\" alt=\"\" width=\"600\" height=\"360\" title=\"\"><\/p>\n<p>Click <strong>Create<\/strong> to create the new group.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70267\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-14-600x598.jpg\" alt=\"\" width=\"600\" height=\"598\" title=\"\"><\/p>\n<p>Verify that the newly created group appears in the list.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70268\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-15-600x424.jpg\" alt=\"\" width=\"600\" height=\"424\" title=\"\"><\/p>\n<p>&nbsp;<\/p>\n<h4>Configure the Authentication Method<\/h4>\n<p>From the Entra ID Organization page, click <strong>Security<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70269\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-16-600x491.jpg\" alt=\"\" width=\"600\" height=\"491\" title=\"\"><\/p>\n<p>Select <strong>Manage &gt; Authentication methods<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70270\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-17-600x477.jpg\" alt=\"\" width=\"600\" height=\"477\" title=\"\"><\/p>\n<p>Select <strong>Manage &gt; Policies<\/strong> and click <strong>Microsoft Authenticator<\/strong>. Microsoft Authenticator will be the tool used for the 2FA verification process.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70271\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-18-600x411.jpg\" alt=\"\" width=\"600\" height=\"411\" title=\"\"><\/p>\n<p>Toggle the <strong>Enable<\/strong> switch to enable this capability. Check the <strong>Select groups<\/strong> option to specify the group that will use the Microsoft Authenticator. Click <strong>Add groups<\/strong> to select the desired group.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70272\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-19.jpg\" alt=\"\" width=\"600\" height=\"449\" title=\"\"><\/p>\n<p>Select the group created earlier (<em>Horizon 2FA<\/em>) and click <strong>Select<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70273\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-20-600x360.jpg\" alt=\"\" width=\"600\" height=\"360\" title=\"\"><\/p>\n<p>Ensure <strong>Authentication mode<\/strong> is set to <strong>Any<\/strong>, then click <strong>Save<\/strong> to apply the configuration.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70274\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-21-600x347.jpg\" alt=\"\" width=\"600\" height=\"347\" title=\"\"><\/p>\n<p>&nbsp;<\/p>\n<h2>Configure the Conditional Access policy<\/h2>\n<p>To force users to use 2FA when accessing the <a href=\"https:\/\/nolabnoparty.com\/en\/omnissa-horizon-enable-copy-and-paste-from-published-apps\/\">Omnissa Horizon infrastructure<\/a>, you must configure a <strong>dedicated Conditional Access policy<\/strong> in Entra ID.<\/p>\n<p>From the main Entra ID Organization dashboard, click <strong>Security<\/strong>. On the new page, go to <strong>Protect &gt; Conditional Access<\/strong> to create the required policy.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70275\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-22.jpg\" alt=\"\" width=\"600\" height=\"334\" title=\"\"><\/p>\n<p>Click <strong>Create new policy<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70276\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-23-600x403.jpg\" alt=\"\" width=\"600\" height=\"403\" title=\"\"><\/p>\n<p>&nbsp;<\/p>\n<h4>Add Users or Group to the policy<\/h4>\n<p>Type a policy <strong>Name<\/strong> and click <strong>0 users or agents selected<\/strong> to assign the policy to the required users or groups.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70277\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-24-600x498.jpg\" alt=\"\" width=\"600\" height=\"498\" title=\"\"><\/p>\n<p>Select <strong>Users and groups<\/strong> value from the drop-down menu, then check <strong>Select users and groups<\/strong>\u00a0to <strong>Include<\/strong>. Check <strong>Users and group<\/strong> to specify who will be affected by the policy.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70278\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-25-600x469.jpg\" alt=\"\" width=\"600\" height=\"469\" title=\"\"><\/p>\n<p>Select the group created earlier (<em>Horizon 2FA<\/em>) and click <strong>Select<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70279\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-26-600x318.jpg\" alt=\"\" width=\"600\" height=\"318\" title=\"\"><\/p>\n<p>&nbsp;<\/p>\n<h4>Configure the Target Resources<\/h4>\n<p>Specify which resource the Conditional Access policy will apply to. Click <strong>No target resources selected<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70280\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-27-600x528.jpg\" alt=\"\" width=\"600\" height=\"528\" title=\"\"><\/p>\n<p>Select <strong>Resources (formely cloud apps)<\/strong> from the drop-down menu, then check <strong>Select resource<\/strong> to <strong>Include<\/strong>. Click <strong>None<\/strong> to specify the resources.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70281\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-28-600x506.jpg\" alt=\"\" width=\"600\" height=\"506\" title=\"\"><\/p>\n<p>Select the application created in Azure for SAML authentication, then click <strong>Select<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70282\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-29-600x366.jpg\" alt=\"\" width=\"600\" height=\"366\" title=\"\"><\/p>\n<p>&nbsp;<\/p>\n<h4>Grant Access<\/h4>\n<p>Click <strong>0 controls selected<\/strong> under <strong>Access control<\/strong> section to specify enforcement.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70283\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-30-600x611.jpg\" alt=\"\" width=\"600\" height=\"611\" title=\"\"><\/p>\n<p>Select <strong>Grant access<\/strong>, check <strong>Require multifactor authentication<\/strong> checkbox and click <strong>Select<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70284\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-31.jpg\" alt=\"\" width=\"317\" height=\"688\" title=\"\"><\/p>\n<p>Select <strong>On<\/strong> in the <strong>Enable policy<\/strong> field, then click <strong>Create<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70285\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-32-600x692.jpg\" alt=\"\" width=\"600\" height=\"692\" title=\"\"><\/p>\n<p>Click <strong>Policies<\/strong> from the left menu to display and confirm your newly configured policy.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70286\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-33-600x353.jpg\" alt=\"\" width=\"600\" height=\"353\" title=\"\"><\/p>\n<p>&nbsp;<\/p>\n<h2>Configure 2FA for the account<\/h2>\n<p>To test if the configuration works as expected, the end-user <strong>account must be set up<\/strong> to use 2FA for authentication.<\/p>\n<p>Using your preferred browser, access the Omnissa Horizon infrastructure. Type the <strong>Username<\/strong> when requested, then click <strong>Next<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70287\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-34.jpg\" alt=\"\" width=\"552\" height=\"519\" title=\"\">Specify the <strong>Password<\/strong> and click <strong>Sign in<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70288\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-35.jpg\" alt=\"\" width=\"552\" height=\"435\" title=\"\"><\/p>\n<p>Because the Conditional Access policy is active, the system will prompt the user to configure an additional identity verification method (2FA). Click <b data-path-to-node=\"33,3,0\" data-index-in-node=\"150\">Next<\/b>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70289\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-36.jpg\" alt=\"\" width=\"552\" height=\"477\" title=\"\"><\/p>\n<p>You will be prompted to install the <strong>Microsoft Authenticator<\/strong> app on your mobile device to configure 2FA. Click <strong>Next<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70290\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-37.jpg\" alt=\"\" width=\"552\" height=\"771\" title=\"\"><\/p>\n<p>Open the app on your mobile phone and select <strong>Work or school<\/strong> as the account type. Click <strong>Next<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70291\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-38.jpg\" alt=\"\" width=\"552\" height=\"657\" title=\"\"><\/p>\n<p>Scan the provided <strong>QR code<\/strong> on the screen to link the app to the account.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70292\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-39.jpg\" alt=\"\" width=\"552\" height=\"735\" title=\"\"><\/p>\n<p>Follow the on-screen prompts within Microsoft Authenticator to complete the configuration.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70293\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-40.jpg\" alt=\"\" width=\"354\" height=\"525\" title=\"\"><\/p>\n<p>Once the QR code is scanned, click <b data-path-to-node=\"33,8,0\" data-index-in-node=\"35\">Next<\/b> to display the number required to approve the sign-in request.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70294\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-41.jpg\" alt=\"\" width=\"552\" height=\"685\" title=\"\"><\/p>\n<p>The configuration is now successfully complete. Click <strong>Done<\/strong> to close the wizard.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70295\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-42.jpg\" alt=\"\" width=\"552\" height=\"637\" title=\"\"><\/p>\n<p>&nbsp;<\/p>\n<h2>Test 2FA access in Omnissa Horizon<\/h2>\n<p>Now it's time to verify if that Microsoft Entra ID 2FA works properly.<\/p>\n<p>Open your Horizon Client and enter Username and Password. Because 2FA is enforced, <strong>credentials alone are no longer enough<\/strong> to grant access to the VDI. The system will display a number.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70296\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-43.jpg\" alt=\"\" width=\"552\" height=\"679\" title=\"\"><\/p>\n<p>Open the Microsoft Authenticator app on your mobile device, enter the provided number, and tap <strong>Yes<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-70297\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-44.jpg\" alt=\"\" width=\"321\" height=\"706\" title=\"\"><\/p>\n<p>Once the second authentication factor succeeds, you will gain access to the VDI infrastructure. <strong>Select the appropriate Desktop Pool<\/strong> to launch your desired VDI.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70298\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-45-600x343.jpg\" alt=\"\" width=\"600\" height=\"343\" title=\"\"><\/p>\n<p>Because <a href=\"https:\/\/nolabnoparty.com\/en\/vmware-horizon-true-sso-configuration-pt-1\/\">True SSO is configured<\/a>\u00a0in this infrastructure, the user can access the VDI seamlessly without entering their Windows username and password a second time. Implementing True SSO for your Omnissa Horizon infrastructure is highly recommended to <strong>avoid redundant login prompts<\/strong>.<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-large wp-image-70299\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2026\/07\/secure-omnissa-horizon-microsoft-entra-id-2fa-46-600x378.jpg\" alt=\"\" width=\"600\" height=\"378\" title=\"\"><\/p>\n<p>The configuration to secure Omnissa Horizon with Microsoft Entra ID 2FA is now complete, providing an <strong>extra layer of security<\/strong> for your environment.<\/p>\n<p><img decoding=\"async\" title=\"signature\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/images\/firma.jpg\" alt=\"signature\" \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>To add an extra layer of security on top of standard multi-factor authentication (MFA), you can secure Omnissa Horizon using Microsoft Entra ID 2FA. This allows you to enforce an additional authentication factor when users log in to the Omnissa Horizon VDI infrastructure.<\/p>\n","protected":false},"author":3,"featured_media":70254,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"rop_custom_images_group":[],"rop_custom_messages_group":[],"rop_publish_now":"no","rop_publish_now_accounts":{"facebook_2879994398731222_17841400390232720":"","mastodon_115463926174894442_115463926174894442":"","linkedin_93tdZWzMZc_93tdZWzMZc":"","bluesky_did:plc:tkabz5kl2rukzdwtuongv3kz_did:plc:tkabz5kl2rukzdwtuongv3kz":""},"rop_publish_now_history":[{"account":"facebook_2879994398731222_17841400390232720","service":"facebook","timestamp":1784012425,"status":"queued"},{"account":"linkedin_93tdZWzMZc_93tdZWzMZc","service":"linkedin","timestamp":1787317971,"status":"success"},{"account":"mastodon_115463926174894442_115463926174894442","service":"mastodon","timestamp":1787318000,"status":"success"},{"account":"twitter_113568041_113568041","service":"twitter","timestamp":1787317988,"status":"error"}],"rop_publish_now_status":"queued","footnotes":""},"categories":[1025,2905,2801],"tags":[2782,668,3054,1711],"class_list":["post-70253","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-horizon-en","category-omnissa-en","category-virtualization-en","tag-2fa-en","tag-authentication-en","tag-entra-id","tag-horizon","has_thumb"],"_links":{"self":[{"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/posts\/70253","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/comments?post=70253"}],"version-history":[{"count":0,"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/posts\/70253\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/media\/70254"}],"wp:attachment":[{"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/media?parent=70253"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/categories?post=70253"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/tags?post=70253"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}