Why would Windows OS RDP thumbprint change?

First, I am a Linux admin, so bare with me if I am using the wrong terminology.

We have a Windows 2008R2 server that I routinely have to remote into for some tasks.  I use freerdp from a Linux system to remote to the system.

Recently I received an error when trying to remote to the system that said the fingerprint has changed.  I had an admin log in and confirm that the thumbprint has indeed changed.  

My question is, what would make the thumbprint change?  We have had no reinstalls, no cert updates, etc...
LVL 23
savoneAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Svet PaperovIT ManagerCommented:
RDP uses SSL to secure its connection. A self-signed RDP SSL certificate expires each 6 months. Windows remote users receive a warning each time a new self-signed RDP SSL certificate is generated and they can chose to accept it or to disconnect.

If you know a little bit about SSL certificates, you know that the fingerprint corresponds to the public key of such certificate.
0
savoneAuthor Commented:
Thanks,
Is there a way to extend the expiration date beyond 6 months?  And can we use a cert from a CA (verisign?) for RDP SSL connections?
0
Svet PaperovIT ManagerCommented:
Yes, if you purchase a SSL certificate from a public CA you won’t get any warnings about the fingerprint because the certificate chain will be trusted by your computer.

I found Verisign a little bit more expensive than DigiCert (my preferred), Comodo or GoDaddy. But it depends on your requirements.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
savoneAuthor Commented:
Thanks!
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Windows Server 2008

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.