Solved

RDP, XP to XP while preventing a Man in the Middle attack

Posted on 2009-05-11
8
1,313 Views
Last Modified: 2013-11-21
XP to XP RDP while preventing the possibility Man in the middle attack.

 I am working inside a network and can get RDP to work just fine. We only use RDP inside our network or when connecting with a VPN.  What I am trying to do secure the connections using certificates ? if that is the way to do it ?.  I have upgraded my RDP to 6.0.6001 on my client machines and I have been able to get the certificates to be passed to me from Server2003 and Vista.  The issue is getting the XP computers to pass certificates or authenticate to the server when connecting to another XP machine.  

If anyone has set this up or knows how to do it please let me know.

This is what I have tried:
http://support.microsoft.com/kb/895433

Created a CA certificate
Made sure that the computers have the certificate as trusted.
Modified the client registry on the XP computers that I am testing.
Tried to connect using authentication but have not had any luck.  
I can get the XP cleints to connect to each other without using server authentication.
0
Comment
Question by:PJC777
  • 5
  • 2
8 Comments
 

Author Comment

by:PJC777
ID: 24359736
Here is the error that I am getting.
0
 
LVL 30

Accepted Solution

by:
IanTh earned 250 total points
ID: 24373582
0
 

Author Comment

by:PJC777
ID: 24417338
How do you get the XP computer to authenticate with your certificate server when connecting to another XP computer? Is that how it should work?
0
Optimizing Cloud Backup for Low Bandwidth

With cloud storage prices going down a growing number of SMBs start to use it for backup storage. Unfortunately, business data volume rarely fits the average Internet speed. This article provides an overview of main Internet speed challenges and reveals backup best practices.

 
LVL 30

Expert Comment

by:IanTh
ID: 24423694
you did not attach your error btw
0
 

Author Comment

by:PJC777
ID: 24423836
Take two on the error...
0
 

Author Comment

by:PJC777
ID: 24423892
My screen print isnt working so here is the error:

Remote desktop connection.

Your remote desktop connection failed because the remote computer cannot be authenticated.

Your computer's setting do not allow connection to this remote computer because it cannot be identified. Either it is running a version of windows earlier then Windows Vista, or is not configured to support server authentication.

For a assistance contact your network administrator or the owner of the remote computer.
0
 
LVL 63

Assisted Solution

by:SysExpert
SysExpert earned 250 total points
ID: 24426548
It sounds like certificates are not supported on XP. Need Vista or newer

Use VNC instead....

0
 

Author Closing Comment

by:PJC777
ID: 31580350
Still unsure if it is posible to use certificates while connecting an XP computer to an XP computer using RDP.  VNC works but then it's an application that needs to be installed and configured per computer. This has been a requirement pushed to us through an IS audit. Thanks for your help.
0

Featured Post

Best Practices: Disaster Recovery Testing

Besides backup, any IT division should have a disaster recovery plan. You will find a few tips below relating to the development of such a plan and to what issues one should pay special attention in the course of backup planning.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

You cannot be 100% sure that you can protect your organization against crypto ransomware but you can lower down the risk and impact of the infection.
Envision that you are chipping away at another e-business site with a team of pundit developers and designers. Everything seems, by all accounts, to be going easily.
Two types of users will appreciate AOMEI Backupper Pro: 1 - Those with PCIe drives (and haven't found cloning software that works on them). 2 - Those who want a fast clone of their boot drive (no re-boots needed) and it can clone your drive wh…
A short tutorial showing how to set up an email signature in Outlook on the Web (previously known as OWA). For free email signatures designs, visit https://www.mail-signatures.com/articles/signature-templates/?sts=6651 If you want to manage em…

770 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question