Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 429
  • Last Modified:

Remote Desktop TS

Hi all

I'm fairly new to Terminal Server/Remote Desktop so need some assistance.
Our company is thinking of moving over to Terminal Services for most of our users. We would use a Thin Client to connect our users to the Server.
Is there a way I could configure a base desktop that could be used by the users? Then also configure this desktop to only allow certain menu options be available in the terminal session?
0
DJMohr
Asked:
DJMohr
  • 4
  • 4
  • 2
2 Solutions
 
MichaelVHCommented:
Hi there!

What you try to do is perfectly possible.

Depending on what you are looking for, you could for instance use "thin clients" (Wyse does offer some good ones) to directly "boot" into a Terminal Server session.
You can control what these users can do in their session by using GPO's. These GPO's are often used to "lock down" a terminal server.

The latter is certainly something you SHOULD do.

Grts,

Michael
0
 
DJMohrAuthor Commented:
Great!

We have a test Thin Client; it's a HP t5565; that should be fine as well right?

So; I would control everything via GPO then; no need to do weird configs?
0
 
MichaelVHCommented:
No,

no "weird" configs. GPO's really allow you to control quite a lot of things. Take a look here for more information:
http://www.brianmadden.com/blogs/brianmadden/archive/2008/07/11/how-do-you-lock-down-a-terminal-server.aspx

a HP's thin client should be fine, indeed.
0
Creating Active Directory Users from a Text File

If your organization has a need to mass-create AD user accounts, watch this video to see how its done without the need for scripting or other unnecessary complexities.

 
DJMohrAuthor Commented:
Cool will have a look at the link.
I take I'd have to create a new GPO solely for Terminal services?
0
 
MichaelVHCommented:
That's what I'd suggest. Create a lockdown GPO and assign that GPO to the OU of your Terminal Servers
0
 
upalakshithaCommented:
0
 
DJMohrAuthor Commented:
Ok, all is going smoothly so far. Thanks for the links upalakshitha, some stuff there that I have been looking for.

Ok, so create a GPO for my terminal users and put some restrictive settings in place which is all good.

One other thing I'm having some trouble with is the user profiles. The default location is as you know C:\Users but i would like to move these profiles to another drive. I have configured the user profile in ADUC to point to \\servername\Share\%username%, this was done under terminal services profile and Profile but it keeps creating a temp profile when I log in. How can I get past this? Or is it a setting in the GPO i need to configure?
0
 
MichaelVHCommented:
0
 
upalakshithaCommented:
will not  it effect for performance if you move profile to \\servername  ?

 you can do it with GPO
 http://technet.microsoft.com/en-us/library/cc770884(WS.10).aspx
 http://technet.microsoft.com/en-us/library/cc753697(WS.10).aspx
0
 
DJMohrAuthor Commented:
Thanks guys, our first test ran quite well, so now we are moving into a full test phase with mulitple users.
0

Featured Post

NFR key for Veeam Agent for Linux

Veeam is happy to provide a free NFR license for one year.  It allows for the non‑production use and valid for five workstations and two servers. Veeam Agent for Linux is a simple backup tool for your Linux installations, both on‑premises and in the public cloud.

  • 4
  • 4
  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now