Link to home
Start Free TrialLog in
Avatar of cnptechnologies
cnptechnologies

asked on

Terminal Server RemoteApp RDWEB single sign on

I am trying to enable single sign-on and also make it so the warning about trusing the remote app does not appear.

Once the user logs into the rdweb site, they click on the pbulished app. Once this happens, they receive a message asking if they trust the publisher. I want to get rid of this prompt. I have seen here: http://blogs.msdn.com/rds/archive/2009/08/11/introducing-web-single-sign-on-for-remoteapp-and-desktop-connections.aspx
that the app must be signed with this type of certificate: RemoteApp programs must be digitally signed using a Server Authentication certificate [Secure Sockets Layer (SSL) certificate]. The certificate Enhanced Key Usage section must contain ‘Server Authentication (1.3.6.1.5.5.7.3.1)’.

My question is, what type of cert is this?? Is it a code signing cert? They are expensive so I do not wish to purchse one if it will not work.
ASKER CERTIFIED SOLUTION
Avatar of PowerIT
PowerIT
Flag of Belgium image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of cnptechnologies
cnptechnologies

ASKER

Some of the remote clients will not be on the domain.

I have tried the cheapest SSL from godaddy and it didn't work. Any idea which Godaddy cert will work?
SOLUTION
Avatar of Cláudio Rodrigues
Cláudio Rodrigues
Flag of Canada image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
In my case, I purchased a cert from godaddy. www.my-site.com

I am using said certificate on:
The SSL site for IIS
The RDP connections
The signing of the RemoteApps

Are you saying I must use a self signed cert for the RDP connections and the signing of the RemoteApp?
No, it should not be self-signed.
BTW, are you using RD Session Broker to publish the Remote Apps? If yes then it must also use the same cert.

Can you post a link to the type of GoDaddy cert you purchased?

kr, J.
Why a delete with full refund, for a question which has been answered? Only the final part has not been closed because the asker has not responded anymore. kr, J.
I recommend #3.
Because there is no feedback from the asker, any of the answers could have helped, but I recommend accepting:
- http:#31372214 :  this answers the initial question 'what type of cert is this?'
- http:#31765367 : this answers the additional questions by the asker

kr, J.