How do I connect to my WorkSpace using RDP?

Last updated: 2020-08-17

I can’t connect to my WorkSpace using the Amazon WorkSpaces client. How do I connect to my WorkSpace using a Remote Desktop Protocol (RDP) client for troubleshooting?

Short description

Typically you connect to your WorkSpace using the Amazon WorkSpaces client. But, you might need to connect to a WorkSpace using an RDP client for troubleshooting. To do so, you must update the Amazon WorkSpaces security group settings to allow connections from the IP address of your RDP client machine.


To RDP outside of the network, you must provide internet access from your WorkSpace by assigning an Elastic IP address to each WorkSpace. If you use a network address translation (NAT) gateway, you can RDP from within the network. For more information, see NAT gateways.

To allow the client machine to connect to the WorkSpace using RDP, follow these steps:

  1. Open the Amazon WorkSpaces console.
  2. Select the WorkSpace, and then expand the details pane using the arrow. Note the IP address under WorkSpace IP.
    Note: The WorkSpace must be in a running state for the private IP address to appear. If the WorkSpace is stopped, choose Actions, Start WorkSpaces.
  3. Open the Amazon Elastic Compute Cloud (Amazon EC2) console.
  4. In the navigation pane, under Network & Security, choose Network Interfaces.
  5. In the search box, enter the IP address from step 2. Select the network interface associated with the IP address, and then note the IP address in the IPv4 Public IP column (if any).
  6. Choose the hyperlink in the Security groups column.
  7. Choose the Inbound rules tab, and then choose Edit inbound rules.
  8. Choose Add Rule, and create a rule with the following attributes:
    Type: RDP
    Protocol: TCP
    Port Range: 3389
    Source: Enter the IP addresses that you use to connect to the WorkSpace. The IP addresses can include the public IP address of a remote machine, the private IP address of another EC2 instance in the same Amazon Virtual Private Cloud (Amazon VPC), or the public IP that your router is using for NAT.
    Important: Be as granular as possible. Don't enter or allow IP addresses that don't need access.
  9. Choose Save rules.

You can now connect to the WorkSpace using RDP from the IP addresses that you specified. Follow these steps:

  1. Open Remote Desktop Connection.
  2. For Computer, enter the WorkSpace IP addresses, and then choose Connect.
  3. For Enter your credentials, enter the user credentials, and then choose Ok.

Did this article help?

Do you need billing or technical support?