Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Restrict RDP clients

Posted on 2012-03-28
3
Medium Priority
?
804 Views
Last Modified: 2012-04-01
I know that remote desktop services supports SSL and allows clients to authenticate the server identity using SSL certificates.  Is it also possible to restrict what clients can connect to the server through the use of certificates?  That is can I require the client to also provide a certificate to authenticate (in addition to the username and password)?
0
Comment
Question by:scotru
3 Comments
 
LVL 37

Accepted Solution

by:
Jian An Lim earned 600 total points
ID: 37785566
http://www.petri.co.il/securing_rdp_communications.htm
http://social.technet.microsoft.com/Forums/en-US/winserverGP/thread/50363d8a-ced2-46e9-9459-8a8aaf9ccd5f/


this is not 2 way certificate.

you might want to look at Remote Desktop Gateway can do for you as well to control tighter on your security.
0
 
LVL 42

Assisted Solution

by:kevinhsieh
kevinhsieh earned 600 total points
ID: 37789060
You can do two factor authentication. PhoneFactor works with RD Gateway, and you can use it for free for up to 25 users. phonefactor.com .

You might be able to use certificates with RD Gateway, just like you would use with IIS, since RD Gateway is build on IIS. That said, I have never used client certificates. I do use PhoneFactor.
0
 

Author Comment

by:scotru
ID: 37794136
Doesn't look like it's possible with just RDP client--maybe through web interface :-(  PhoneFactor looks interesting though.  Thanks for the tip!
0

Featured Post

Industry Leaders: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This is a guide to the following problem (not exclusive but here) on Windows: Users need our support and we supporters often use global administrative accounts to do this. Using these accounts safely is a real challenge. Any admin who takes se…
Our Group Policy work started with Small Business Server in 2000. Microsoft gave us an excellent OU and GPO model in subsequent SBS editions that utilized WMI filters, OU linking, and VBS scripts. These are some of experiences plus our spending a lo…
This video shows how to quickly and easily deploy an email signature for all users in Office 365 and prevent it from being added to replies and forwards. (the resulting signature is applied on the server level in Exchange Online) The email signat…
Are you ready to place your question in front of subject-matter experts for more timely responses? With the release of Priority Question, Premium Members, Team Accounts and Qualified Experts can now identify the emergent level of their issue, signal…

927 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question