Our goal is to allow AD's users to access Win11 PVM from outside of our network
Hi
@ShawnZ ,
It seems the confusion stems from referring to "users" in plural while mentioning only a single "workstation."
As previously noted, the Windows Workstation line is designed for a single interactive user. If you need multiple users to have independent sessions, you’ll require a Terminal Server product/license.
Guacamole acts as a proxy/aggregator for various remote access protocols, providing a web-based interface for users. However, it does not modify the underlying OS to support multiple simultaneous user sessions.
In theory, you could configure Guacamole to spin up a dedicated VM for each user connection, using a template as the base image for these temporary VMs.
I’m not aware of any ready-to-use PVE integration for this specific use case, but there may be solutions on GitHub. Alternatively, you could develop one and share it with the community.
P.S. if your process does NOT involve any VM modifications (create, clone, etc.) then PVE is not part of your solution. There is nothing that you need to configure or do in PVE to allow remote-access. It does not matter whether your VM runs in PVE, ESXi or AWS.
Blockbridge : Ultra low latency all-NVME shared storage for Proxmox - https://www.blockbridge.com/proxmox