Hello MichaelB,
Error 0x3000008 in the Windows App indicates a client‑side connection or session establishment failure, but it is not considered as a specific known service incident or platform bug. The fact that users can sign in and connect successfully through the web client suggests that core Azure Virtual Desktop resources are reachable and that authentication itself is generally working as expected.
A few important clarifications and supported troubleshooting areas to consider:
- Conditional Access and sign‑in evaluation: Conditional Access is evaluated differently depending on the client type. While the Windows App and web client both authenticate through Microsoft Entra ID, they may present different client signals during policy evaluation.
- If Entra ID sign‑in logs show Conditional Access being evaluated or applied during Windows App sign‑in attempts, those results should be reviewed carefully. Any policy changes should be based solely on observed sign‑in evaluation results rather than assumed causes.
- Windows App behavior and client health: Outdated or corrupted Windows App installations can lead to intermittent connectivity or feed-related issues. Ensuring the Windows App is fully up to date, resetting app data, and re‑adding the AVD workspace are all supported remediation steps. Uninstalling older Remote Desktop clients before reinstalling the Windows App is also consistent with Microsoft guidance.
- Network and endpoint validation: Microsoft explicitly requires that all Azure Virtual Desktop endpoints and FQDNs are reachable from client networks. Differences between browsers and the Windows App can expose network, proxy, or SSL inspection issues that may not appear when testing via the web client. These checks are particularly relevant when behavior is intermittent or user‑specific.
- Transient reconnection behavior: Users may occasionally be able to reconnect successfully without changes due to transient connectivity or service routing conditions. This behavior alone does not indicate a confirmed service incident. However, repeated or persistent failures for the same user warrant deeper client‑side and network review.
Next steps if the issue persists
- If the problem continues for a specific user
- Verify Windows App version consistency across affected and unaffected users.
- Review Entra ID sign‑in logs for Conditional Access evaluation differences specific to the Windows App.
- Confirm required Azure Virtual Desktop endpoints are reachable without modification or inspection.
References: