Jump to content

Recommended Posts

Posted

Hi all, I have setup remote desktop services and published some apps which are working well. I would like some members of staff to be able to remote straight into their workstations. How could i set this up ?

 

Thanks

Posted

I've just given their domain users terminal rights on their desktops, they remote into an app dashboard and their user group gives them MSTSC.exe as a published app and they type their workstation in and away they go.

 

This has been done like this mainly so the BM can use his finance package from home.

Posted

Single central server - you just build a Remote Desktop Services session-based host, with the usual needed software on it, you can then publish that via your gateway.

 

To work across two domains, you'll need a trust in place - that what we have and it works fine.

Posted
Yup I think it will need to be. Just because the trust is two way, doesn't mean that permissions will suddenly be granted to users/admins across the trust. Our trust enables Exchange, Lync, ACLs, logons to PCs etc etc to work properly between domains.
  • 2 weeks later...
Posted

Before we brought in RDS - I came up with a daft idea.

 

I have a TMG server setup

 

Set up a NAT for different external port numbers. They were then transated to 3386 pointing to a particular PC.

 

For example, the user entered into the Remote Desktop Connection our external IP followed by the published port number:

 

xxx.xxx.xxx.xxx:1001

xxx.xxx.xxx.xxx:1002 etc.

 

A bit messy but it worked.

Posted
Before we brought in RDS - I came up with a daft idea.

 

I have a TMG server setup

 

Set up a NAT for different external port numbers. They were then transated to 3386 pointing to a particular PC.

 

For example, the user entered into the Remote Desktop Connection our external IP followed by the published port number:

 

xxx.xxx.xxx.xxx:1001

xxx.xxx.xxx.xxx:1002 etc.

 

A bit messy but it worked.

 

I use exactly this for RDP to a number of servers, works well enough for our needs. Only difference from your example is that I used non-sequential port numbers (which you may have used for clarity) that were way above any 'standard' ports - 51213, 53497, 61442 type of thing.

 

If you are implementing something similar please ensure all users have strong passwords - no password1 or 12345 type of thing! Our password policy insists on a minimum of 10 characters with uppercaes, lowercase, numbers and special characters all represented.

Posted
I use exactly this for RDP to a number of servers, works well enough for our needs. Only difference from your example is that I used non-sequential port numbers (which you may have used for clarity) that were way above any 'standard' ports - 51213, 53497, 61442 type of thing.

 

If you are implementing something similar please ensure all users have strong passwords - no password1 or 12345 type of thing! Our password policy insists on a minimum of 10 characters with uppercaes, lowercase, numbers and special characters all represented.

 

Basically how you say. We used ports in the 7,000 range, but did sequentially. Our password policy requires at least 8 characters and a number too.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...