On a Windows box with mstsc, when you connect to a non domain joined machine you routinely set the domain to .\ which means "my local machine name".
Try setting domain to the remote box's name. There is always a domain, or strictly speaking, a realm. If the remote name fails, try the local box's name ie the name of the Guacamole box - that will be what .\ does. Make sure DNS is fixed up. Cheers Jon On Wed, 2025-06-11 at 21:53 +0300, D A wrote: Hi, I have a requirement to connect via RDP to various windows endpoints that have NLA enabled. In guacamole I'm providing a username and password, and have the ignore certificate option select. I'm setting the connection security type to nla. However, the connection to each endpoint fails. I've attempted this with multiple guacamole deployments and windows endpoints. The endpoints are not domain joined, so I'm not providing a domain. Are there any settings that are required for RDP connections via NLA to function? Are there any specific logs that I can investigate? Any suggestions would be awesome to hear. Thanks
