This solved my issue as originally asked.
Edit the registry on the VDI target desktop or deploy as GPO to your desktop pool.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp]
"SecurityLayer"=dword:00000001
"UserAuthentication"=dword:00000000