Link to home
Start Free TrialLog in
Avatar of iteched1
iteched1Flag for United States of America

asked on

Simple Remote Desktop Services Installation

Hi Experts,

I need to setup a simple remote desktop services system.  There is one piece of hardware that the RDS software will reside.  The OS is Windows 2008 R2 Standard Edition.

Basically I have one application that I need to make available via "Web Access".   Users will not be using the "Remote Desktop Connection" or running any virtual desktops.  One published app via web access only.

From what I can tell the only "roles" I need are the "Session Host" and "Desktop Web Access".  I should be able to use a public IP pointed to the internal site for use outside our firewall.

I did get the Gateway working but that just connects me to a terminal session.   Again, users will not be using terminal sessions - only a published app (via web access).  Can I remove the gateway - is it needed for my requirements?

I do have the application published and it works (inside the firewall) - am I on the right track?

Thanks!  Ed
Avatar of kevinhsieh
kevinhsieh
Flag of United States of America image

You need the RD Gateway for external clients to be able to access the RD Session host over TCP 443. If you do not use RD Gateway, you need to open up the RD Session host to the Internet on TCP 3389, which is considered a security risk, especially given the current RDS exploit that Microsoft just patched in March.

I know that you only need RemoteApp access, but I don't believe that you can prevent someone from connecting to a full desktop on the session host if they manually connect.
ASKER CERTIFIED SOLUTION
Avatar of iteched1
iteched1
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Sounds good.
Avatar of iteched1

ASKER

I've requested that this question be closed as follows:

Accepted answer: 0 points for iteched1's comment #37776974

for the following reason:

I figured out what I needed after posting the question.
Hi,

Please set this to multiple solutions with 300 to me (as I figured it out myself) and 200 for Kevin for taking the time to help me out.

As a side  comment I'm not sure I like the new face of experts exchange...I find it more clumsy to navigate.

Thanks!

Ed