UKPN
RDS Login and Mobile Device Configuration Guide
Author / Eliott Mitchelmore
Date / 21 March 2018
Document Reference / PM-62316-SDD
Version / 4.0

1Accessing UKPN AppsusingRDS

1.1Introduction

UKPN has previously created a service which provided external access to UKPN applications such as Primavera and SAP for Alliance Partners. The applications were delivered using Azure RemoteApp.

Microsoft hasdiscontinued the Azure RemoteApp (ARA) service, so an alternative service is now provided, using Remote Desktops Services (RDS).

Thenew service has two components:

  • The Multi-Factor Authentication (MFA) service, which provides authentication protection to ensure that only authorised users can access the service
  • The RDS system which delivers the applications to your desktop.

1.2Document Purpose

This document focuses on the installation, configuration and use of RDSand MFA on the Windows platform.

1.3Support

If you experience any issues when using the UKPN RDSservice, please contact the UKPN Service Desk on 020 3660 2010 (Option 1) or 777 if at a UKPN location.

IMPORTANT:

If you are an Alliance partner staff member, you must state in the call that you are from an Alliance partner company.

If you are an Independent Connection Provider (ICP) staff member, you must state in the call that you are from an ICP company.

2Setting Up

2.1Configuring Multi-Factor Authentication for RDS

MFA needs to be configured before you can launch applications in RDS.

The MFA service for RDS is separate to that used for Azure RemoteApp, so new details will need to be configured for your user account, as follows:

  1. Browse to or click the link in the app launcher screen.

Figure 1 - Link to the MFA user portal

  1. Login to the MFA portal using your UKPN credentials. Your username should be in the format ukpn\username OR .

Figure 2 - MFA portal login screen

  1. You will be asked to choose the authentication method you would like to use for MFA. The options are as follows:

Method / Action / Requires
Phone Call / You will receive a phone call asking you to confirm your login by pressing the # button. / Landline or mobile phone connection.
Text Message / You will receive a code via text message. You will need to reply with the same code. / Mobile connection
Mobile App / Press the ‘Approve’ button in Microsoft Authenticator to confirm login. / Internet connection

If Phone Call or Text Message is chosen you should ensure the country code is changed to United Kingdom.

Figure 3 - MFA setup - Phone Call option

Figure 4 - MFA setup - Text Message option

You will need to copy and pastethe code as a reply text message (on your mobile). Please note: thisis dependent on your network provider. If delayed due to network coverage please select an alternative method, i.e. phone or mobile app.

If you want to use the Mobile App option, you will first need to install the Microsoft Authenticator application onto your mobile device. This application will be available through your device’s authorised store e.g. App Store, Google Play etc.

Figure 5 - MFA setup - Mobile App option

Once the Microsoft Authenticator app is installed on your device, click the Generate Activation Code button in the MFA user portal.

Figure 6 - MFA setup - Generate Mobile App Activation Code

On the Microsoft Authenticator app, click the Add Account button, or the + at the top right of the screen.

Figure 7 - Configuring Microsoft Authenticator

Choose Work or school account and then either scan the QR code presented or enter the code manually.

Once the account is added, you can approve sign-ins by pressing the Approve button as shown below.

Figure 8 - Mobile App authentication request

  1. In addition to your primary authentication method, you will need to setup security questions that can be used in the event you are unable to use your primary method e.g. if you lose your mobile phone.

Figure 9 - MFA setup - Security Questions

You need to answer 4 security questions. There is a choice of questions in the drop-down lists. Click Save once you have finished.

You are now ready to launch RDS applications. If you need to change any of your MFA details, you can log back into the MFA portal at any time.

Figure 10 - MFA portal main screen

2.2Configuring the RD client on a mobile device

The RDS applications can be accessed via mobile devices, e.g. mobile phone or tablet, using the Microsoft Remote Desktop application (RD client). The RD client can be installed from your device’s authorised store. The following screenshots are specifically for an Android phone, but the process is similar for other device types.

  1. Search for Microsoft Remote Desktop in your device’s store and click to Install, Open and accept the terms.

Figure 11 - Installing the RD client

  1. Add a connection to the RDS feed by selecting Remote Resource Feed.

Figure 12 - Add connection to RDS to the RD client

The Feed URL should be set to

Select Add user account and enter your UKPN credentials. The username will need to be in the format ukpn\username.

  1. You will then be shown the App launcher screen. Applications can be launched by clicking on the relevant icon. The MFA authentication process will be the same as described in Section 2 Using RDS.

Figure 13 - Mobile RD client App launcher screen

3Using RDS

3.1Using the Service

To access the service:

  1. Using Internet Explorer,browse to

Figure 14 - RDS login page

It is possible to use other browsers (e.g. Google Chrome), but there will be a less seamless experience with additional popups. This document only specifically covers using Internet Explorer.

  1. Enter your username and password and click Sign In. Your username should be in the format ukpn\username OR .

Figure 15: RemoteApp app launcher

When you have signed in you will see the apps that have been assigned to you and you can launch any of them.

If you have not already done so, you should setup MFA for your account as you will not be able to launch any applications without it. See Section 2.1 below.

To launch an application

  1. Click on an application icon to launch. You will receive a warning asking you ensure you trust the publisher before proceeding, as shown in Figure 4. You should check the Publisher is shown as *.ukpowernetworks.co.uk.

Figure 16 – Warning when launching an application

In order to avoid this popup, you may tick the box Don’t ask me for remote connections from this publisher againbefore clicking Connect.

  1. Complete MFA authentication. You will receive an MFA prompt based on your chosen authentication method. During this your screen just show the connection dialog as below

4Printing & Scanning

4.1Printing

RDS will automatically connect to any printer already setup on your PC or laptop.

If you need to setup a new printer, please follow these steps:

  1. Open any office application such as MS Word
  2. Click ‘’File’’
  3. Clink ‘’Print’’
  4. Under “Printer” select the down arrow
  5. Click ‘’Add Printer’’
  6. In Name: type “FYP-“
  7. Click ‘’Find Now’’
  8. Select the FYP- object closest to your office location (i.e. FYP-Newington)
  9. Click ‘’OK’’

Please note that the following policies apply to the RDS print solution:

UKPN laptop printing to UKPN Multi-FunctionalDevice (MFD) via Follow-You-Printing using ID card / Available
UKPN laptop printing to standalone printer / Not available due to UKPN MFD policy
3rd party laptop printing to UKP MFD / Not permitted due to UKPN security policy
3rd party laptop printing to MFD on 3rd party network / Available if 3rd party policy permits
3rd party laptop printing to standalone printer / Available if 3rd party policy permits

4.2Scanning

Scanning is available to 3rd party staff who have been issued with a UKPN login and a UKPN ID card which permits use of MFDs in UKPN offices.

To scan a document, use your UKPN ID card to log onto the MFD and select the scan function.

Scan the document and logout from the MFD.

The scanned document will be sent to your home company email address.

Please note, if you don’t have your home company email address associated with your UKPN login ID, please contact your UKPN representative who will be able to request this action to be completed.