Authenticate

Entra ID single sign on support for VDA with Azure AD credentials

Previously, users were prompted for credentials when launching HDX sessions with Microsoft Entra ID joined VDAs because there was no SSO support for VDA with Entra ID credentials. This creates challenges for users who migrate from traditional Active Directory to Azure AD as their primary identity provider.

Starting with version 2511, Citrix Workspace app for HTML5 now provides seamless single sign-on (SSO) experience for VDAs with Entra ID credentials. This feature eliminates the need for users to enter credentials when launching HDX sessions with Microsoft Entra ID joined VDAs, providing a streamlined authentication experience.

With this feature, users who have adopted Entra ID joined VDAs can now enjoy seamless authentication without manual credential entry for each VDA launch.

Applicability

This feature applies to app and desktop session launches with pure and hybrid Entra ID joined VDAs of version 2507 and above with the specified OS versions.

System requirements

Virtual Delivery Agent (VDA):

  • Version: 2507
  • Type: Single session or multi session

VDA machine identity:

  • Microsoft Entra ID joined
  • Microsoft Entra ID hybrid joined

Session host OS:

  • Windows 11 24H2 with the 2025-08 Cumulative Update Preview for Windows 11 Version 24H2 - KB5068221 (OS Build 26100.6588 and above)
  • Server OS - Preview Build 27924 and above

For more information on Entra ID SSO, see Microsoft Entra ID single sign-on in Citrix DaaS documentation.

Known limitations in the feature

A pop-up window opens during session launch. The pop-up behavior varies depending on your browser and browsing mode (normal or incognito).

Authenticate