How to encrypt or use ssl with RDP connections

I have my setup (2003) of the home server so that I can make the connections Office XP and other clients remotely.  I configured RDP on the server to use a non-standard port.  For example, I log from the client with something like mydomain.com:1234.

It is working very well, but I wonder if there is a way I can encrypt or use ssl to connect.  If so, do I need to do something on the server, clients, or both?  I am a novice when it comes to network configurations so I need step by step instructions.

Thanks for your help, Dave.

Hello

Make sure you use the version 6 and above of the RTD.

V6 and above all have its own encryption of channels.

http://en.Wikipedia.org/wiki/Remote_Desktop_Protocol

Jack-MVP Windows Networking. WWW.EZLAN.NET

Tags: Windows

Similar Questions

  • Use iCloud with BMW connected drive... How to get the device recognized by the connected player.

    Using iCloud email with BMW connected drive... How do I get my Apple ID and PW recognized by the BMW connected drive online?

    See here - How do I add iCloud email to the connected reader

  • Extraction of SSL with initial Connect-VIServer

    Sorry if this has already been asked before, but I was not able to find it by searching online or in the forums.

    When you start a connection to another host of VC/ESXi, there is some information about x 509 certificate as shown below.

    * The X 509 chain could not be achieved with the root certificate.

    Certificate: [subject]

    C = US, CN = vcenter60 - 4.primp - industries.com

    [Issuer]

    O = vcenter60 - 4.primp - industries.com, C = US, DC = local, DC = vghetto, CN = CA

    [Number]

    00D9B9AE28CFD6CF4D

    [Not before]

    02/08/2015-09:19:14

    [Not After]

    02/02/2025 09:19:13

    [Imprint]

    B846B9F36C1D978CEDA0199294E61B4515656396

    I would like to enter the thumbprint SSL "B846B9F36C1D978CEDA0199294E61B4515656396"? I looked online and even asked some people but never able to retrieve this property by using PowerShell/PowerCLI. I can do it easily on one other system Windows with openssl (http://www.virtuallyghetto.com/2012/04/extracting-ssl-thumbprint-from-esxi.html), but wanted to see if there is a way without going through relays on the external packaging and since it is available as part of the connect-VIServer, I thought it must be possible but my PowerCLI-Fu isn't quite at the height as the others , figure so I ask. If it is indeed removable, which I guess it is then a bonus would be to format and so I have a variable that looks like: B8:46:B9:F3:6 C: 1 d: 97:8 C: ED: A0:19:92:94:E6:1 B: 45:15:65:63:96


    Luc Merci in advance

    Function Test-WebServerSSL {
    # Function original location: http://en-us.sysadmins.lv/Lists/Posts/Post.aspx?List=332991f0-bfed-4143-9eea-f521167d287c&ID=60
    [CmdletBinding()]
        param(
            [Parameter(Mandatory = $true, ValueFromPipeline = $true, Position = 0)]
            [string]$URL,
            [Parameter(Position = 1)]
            [ValidateRange(1,65535)]
            [int]$Port = 443,
            [Parameter(Position = 2)]
            [Net.WebProxy]$Proxy,
            [Parameter(Position = 3)]
            [int]$Timeout = 15000,
            [switch]$UseUserContext
        )
    Add-Type @"
    using System;
    using System.Net;
    using System.Security.Cryptography.X509Certificates;
    namespace PKI {
        namespace Web {
            public class WebSSL {
                public Uri OriginalURi;
                public Uri ReturnedURi;
                public X509Certificate2 Certificate;
                //public X500DistinguishedName Issuer;
                //public X500DistinguishedName Subject;
                public string Issuer;
                public string Subject;
                public string[] SubjectAlternativeNames;
                public bool CertificateIsValid;
                //public X509ChainStatus[] ErrorInformation;
                public string[] ErrorInformation;
                public HttpWebResponse Response;
            }
        }
    }
    "@
        $ConnectString = "https://$url`:$port"
        $WebRequest = [Net.WebRequest]::Create($ConnectString)
        $WebRequest.Proxy = $Proxy
        $WebRequest.Credentials = $null
        $WebRequest.Timeout = $Timeout
        $WebRequest.AllowAutoRedirect = $true
        [Net.ServicePointManager]::ServerCertificateValidationCallback = {$true}
        try {$Response = $WebRequest.GetResponse()}
        catch {}
        if ($WebRequest.ServicePoint.Certificate -ne $null) {
            $Cert = [Security.Cryptography.X509Certificates.X509Certificate2]$WebRequest.ServicePoint.Certificate.Handle
            try {$SAN = ($Cert.Extensions | Where-Object {$_.Oid.Value -eq "2.5.29.17"}).Format(0) -split ", "}
            catch {$SAN = $null}
            $chain = New-Object Security.Cryptography.X509Certificates.X509Chain -ArgumentList (!$UseUserContext)
            [void]$chain.ChainPolicy.ApplicationPolicy.Add("1.3.6.1.5.5.7.3.1")
            $Status = $chain.Build($Cert)
            New-Object PKI.Web.WebSSL -Property @{
                OriginalUri = $ConnectString;
                ReturnedUri = $Response.ResponseUri;
                Certificate = $WebRequest.ServicePoint.Certificate;
                Issuer = $WebRequest.ServicePoint.Certificate.Issuer;
                Subject = $WebRequest.ServicePoint.Certificate.Subject;
                SubjectAlternativeNames = $SAN;
                CertificateIsValid = $Status;
                Response = $Response;
                ErrorInformation = $chain.ChainStatus | ForEach-Object {$_.Status}
            }
            $chain.Reset()
            [Net.ServicePointManager]::ServerCertificateValidationCallback = $null
        } else {
            Write-Error $Error[0]
        }
    }
    
    $cert = Test-WebServerSSL MYVC
    $cert.Certificate.Thumbprint
    
  • Using Uberconference with Adobe Connect

    Hello world

    I've beaten my head against the ball trying to implement Uberconference to work with Adobe connector.

    I tried to set up as an Audio provider - but I can't just understand how to properly set up the remote access measures.

    Has anyone out there used Uberconference - or 3 any other provider of audio conference of the party - successfully.

    Help is very appreciated!

    Greg

    THIS DID SOLVE THE PROBLEM!

    Thank you very much for your help Jorma.

    Greg

  • How to upgrade Firefox using a dial-up connection

    My connection does not allow me to download the update for Firefox - connection is disconnected after several minutes. How can I get an update?

    You will need to download and install the full version of Firefox as you ignored updates, you cannot use a small minor update.

    It is not a good idea to ignore updates when you are on dial-up.

    You can see that only these version have a smaller update (about 14-17 MB) and that the full update is more than the full version of Firefox 28 (29 against 24 MB):

  • Developer SQL 4.0 ai2 - cannot use OpenLDAP with LDAP connect option

    Hello


    I have OpenLDAP installation to work with my Oracle customers to use the TNS connection, instead of having scattered files tnsnames.ora strings about hundreds of servers.


    It works very well with 10g / 11g, customers complete and instantaneous, no problem.


    Now, I am trying configure SQL Developer 4.0 ai2 working with her, as well.


    When I try to do, I am able to select the 'LDAP' option in 'Connection Type', and the drop-down list "LDAP server" is correctly filled with my LDAP server of ldap.ora.


    However, when I select it, I get the following error:

    Status: Failed-[LDAP: error 32 - No Such Object code]


    Now, I did some research and I followed the slapd.log file, which shows me the following:

    Sep 18 02:43:35 slapd einstein [2779]: conn = ACCEPT 1034 fd = 16 = 192.168.125.1:63781 (IP = 0.0.0.0:389) IP address

    Sep 18 02:43:35 slapd einstein [2779]: conn = 1034 op = 0 BIND dn = "" method = 128 "

    Sep 18 02:43:35 slapd einstein [2779]: conn = 1034 op = 0 RESULT tag = 97 err = 0 text =

    "Sep 18 02:43:35 slapd einstein [2779]: conn = 1034 op = base SRCH = 1" "scope = 2 deref = 0"(objectClass=orclContext) = filter. "

    Sep 18 02:43:35 slapd einstein [2779]: conn = 1034 op = 1 tag = 101 err = 32 nentries SEARCH RESULTS = 0 text =

    Sep 18 02:43:35 slapd einstein [2779]: conn = 1034 op = 2 UNBIND

    Sep 18 02:43:35 slapd einstein [2779]: conn = 1034 fd = 16 closed

    That is a lot more detail, but reflects the corresponding error code (32 - No Such Object).

    After doing some tests with ldapsearch, I was able to reproduce this only developer SQL is done and get the same exact error.

    The ldapsearch command is:

    ldapsearch einstein Pei 389 - c - x d h "" b "" "(objectClass=orclContext)" "

    Research in the slapd.log file, I find a mistake similar to what is produced from SQL Developer.

    In addition, the query SQL Developer wants can be done successfully with the following ldapsearch:

    ldapsearch h einstein Pei 389 - c - x d ' "b"dc = proquest, dc = com""(objectClass=orclContext) ""

    Thus, it seems that the problem is the fact that the SQL Developer does not provide a research base.

    I'm not expert LDAP, and I really don't know where to turn next.

    Is there a SQL Developer option that allows me to put this basic research?  Is there a setting I'm missing on the LDAP server configuration?

    Thank you

    -Mark

    Well, that didn't take long.  I managed to find a solution to the problem.

    It boils down to the fact that the SQL Developer does not provide a research base, and my LDAP server had a defined default search base.

    When I edited slapd.conf (OpenLDAP configuration file) and add a parameter "defaultsearchbase" and bounced the LDAP, everything started working.

    I now have a working with OpenLDAP and Developer SQL configuration.

    I'll mark this discussion as closed.

    -Mark

  • How to check a person is already RDP connected to a machine until I connect.

    We got a virtual machine running Windows 7 Professional.
    When I connect to the machine with Remote Desktop Protocol, one probably connected the other user is forced offline.
    Is there a way to check if there is another one connected until I connect to the machine?
    So that I can decide on the stop/wait for the other user connects to the wide or go ahead.
    An option to send the other user a message would be also fine but secondary.

    Hello

    The question you have posted better suits us for TechNet forums.

    Please report the issue in the following link:

    I hope that helps!
    If you have any questions on windows, feel free to post us.

  • How to import metadata using the Oracle olap connection type

    Hi all

    I'm trying to import metadata from MN,

    I tried selecting the type of connection as oracle olap
    DSN as host: port: sid
    username
    password
    but in URL url field I need to give

    Use OBIEE 11.1.1.7

    in OBIEE 11.1.1.5

    There is no url, after the username and pwd that allows us to give the name of the target, but I don't under stan have to give into the url field.


    Can someone help me on this... :(

    Hi Laszlo,

    Finally fixed it by using the following URL

    http://OBIEESERVERADDRESS:port/biadminservlet/services

  • RDP connection client for Cisco VPN Windows machine

    Hello

    I am a linux user and because the cisco client is not available for Linux (Kernel 2.6.34 >) my company has installed a machine VMWare Windows7 so I can install the VPN client of our client of my company. For sure, I don't want to use the Windows machine via the vmware client, so I use through a RDP connection.

    Unfortunately, if I set up the VPN, the RDP connection degrades. This seems to be quite common for VPN clients however, it seems to be configurable somehow. I already tried to change the routing table, but it doesn't seem to be a problem with routing. The customer puts a firewall or something like that?

    Thank you

    Kim Neunert

    It really depends on how the VPN server is configured? If it's the tunnel to the VPN server, or it has split the configured tunnel.

    If it is indeed tunnel all to the VPN server, it will certainly break the local RDP session.

  • How can I use the button "Insert" with RDP (German keyboard)

    Hello

    I would like to know what I have to press to simulate the Windows button "insert" (einfg in German) on my MacBook Pro 15 "mid 2015 (German keyboard) keyboard.

    I use remote desktop to connect to a Windows Terminal Server and have the Insert button in a tool of emulation that I need for my work, but I can't find a way to use this button.

    Can someone help me out here?

    ask on the forums Microsoft DRC since it is their software with which you experience problems.  c https://social.technet.Microsoft.com/forums/windowsserver/en-US/Home?Forum=winRD

  • The use of SSL with IE via httpService

    Hello

    I read the Wired article http://weblogs.macromedia.com/lin/archives/flex/security/index.cfm on the use of SSL with THE de Lin Lin, however I am confused as how to implement the changes that she mentions. Basically, she mentioned a couple of the reasons why the httpServices would not be able to load data in the event of connection via SSL. I've read about the Adobe TechNote at http://www.adobe.com/cfusion/knowledgebase/index.cfm?id=fdc7b5c & SSP = rss_flashplayer_fdc7b5 c , but it was not clear either.

    1. How can I change the settings of the server have the correct header information?
    2. can I change something in the compiler Flex for SSL and IE?

    It works perfectly in FireFox and Safari, and retrieves the data without any problem. All ideas, information would be appreciated.

    Re 2) in my opinion, there is nothing that you can do on the side of Flex, there seems to be a problem with IE passing data to the FlashPlayer.

    (topic 1), depends on how you generate data on the server. We use Java servlets and the solution is to _not_ set non-cache on the answer when
    dealing with IE.

    R.

  • Time Capsule used as EHD: how to encrypt data?

    I have a TC of spare... is no longer used as peripheral regular backup... but I gave stored on it - actually I use it as a DHM.

    (I should sell the TC and get a DHM, perhaps!)

    Access to the TC requires a password of course.

    However. I don't think that my data on the TC is encrypted. While I do not use it as a time Machine (TC is off)... Anyway, I don't see how to encrypt the data.

    Is it possible to encrypt these data? Otherwise, the content of the data is not really secure?

    Any clarification welcome.

    As you probably know, you can encrypt the backups Time Machine, but to encrypt internal hard drive on a Time Capsule, you have essentially two choices:

    1. Remove the hard drive; Install it in a disk enclosure or a caddy and then plug it directly into your Mac. Then use OS X to encrypt the drive.
    2. Without having to remove the disc, create a disc image encrypted on the internal drive of the time Capsule, and then move any content in this image.
  • I can't use Roboform with 4.0 beta 10, so I can't use Firefox. How to get back to the beta version 9?

    I can't use Roboform with 4.0 beta 10, so I can't use Firefox. How to get back to the beta version 9?

    I think that there is a little more for it, but here's a solution that seems to work. After the installation of Roboform 7.1.7, go to: http://www.roboform.com/platforms/browsers/firefox and scroll down to a table listing the three browsers identifying the XPI file to load if it was not loaded automatically. Click the http://www.roboform.com/dist/roboform-firefox-3-4-frozen.xpilink. Firefox will ask you if you want to allow this should be installed. Let him. Finish installation, restart Firefox 4.0b10, and you'll see a Roboform 7.1.7 toolbar works. I did it on two computers, and everything seems to work.

  • How can I use iwatch with lpad2

    How can I use iwatch with lpad2?

    You can not. Apple Watch is only compatible with the iPhone.

    Read the first paragraph here:

    https://en.Wikipedia.org/wiki/Apple_Watch

  • How to use I2C with ELVIS

    I try to connect the sensor ultrasonic NXT to ELVIS, for this I need to use I2C. I was wondering how I can use I2C with ELVIS?

    The Council of ELVIS doesn't I2C communication. Our scanners high speed and the NOR-8451 are the only materials that support the I2C Protocol.

    Scott M.

Maybe you are looking for