Setting up RDP on window 2012 server and relaying application through this server

Posted on 2014-01-19
Medium Priority
Last Modified: 2014-02-06

We have windows 2012 servers on our network. We are in a process of setting up a RDP for our organisation users. We will have 30 concurrent connections, so that staff can have our organisation desktop experience from home. I have designated a new windows 2102 server to host the RDP (Host name - RDP Server). I have created a CSR on this server and have submitted to procure a SSL certificate.
I have been assigned a public IP for this RDP external access.
And the external link will be https:\\rdp.domain.co.uk

In the future we are going to have another application server (App Server) and I may have to give access to this application for the users through RDP connection.
This link will be https:\\apps.domain.co.uk
I was told by my friend that to access this applications through RDP , the application can be relayed from the RDP server  for the remote access users and to achieve this I will need another SSL certificate.
Is this a good idea and will this be achievable?
Question by:lianne143
LVL 43

Assisted Solution

kevinhsieh earned 1000 total points
ID: 39794435
You are missing a couple of roles. If you want to give users access via web browser,  you need to add the Remote Desktop Web Access role. You also need to add the Remote Desktop Gateway role. The gateway allows clients from the internet to connect via https and then get that translated internally to RDP over port 3389. The web access server presents you with a nice listing of servers and applications to connect to. You can put the web access and gateway roles on the same server, and you only need one of each, no matter how many session hosts you have.I believe you can also put the roles on one of your session hosts, though that isn't really the recommended deployment.

Are you running physical or virtual machines? If you are running virtual my recommendation is to have two machines running with the RD gateway and RD Web roles and put them into a Windows network load balancing cluster for high availability. Give them the rdp.domain.co.uk certificate. You can then have as many RD session hosts as you want and they will all be accessible from the same URL.

Accepted Solution

Johan Ohlsson earned 1000 total points
ID: 39796545
It's like kevinhsieh saying and the parts and roles that are missing, you should add in your environment, then have your users the ability to reach your applications.

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

If you are a web developer, you would be aware of the <iframe> tag in HTML. The <iframe> stands for inline frame and is used to embed another document within the current HTML document. The embedded document could be even another website.
Resolving an irritating Remote Desktop connection that stops your saved credentials from being used.
This tutorial will walk an individual through the steps necessary to configure their installation of BackupExec 2012 to use network shared disk space. Verify that the path to the shared storage is valid and that data can be written to that location:…
This tutorial will show how to configure a new Backup Exec 2012 server and move an existing database to that server with the use of the BEUtility. Install Backup Exec 2012 on the new server and apply all of the latest hotfixes and service packs. The…

624 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question