Jump to content

Recommended Posts

Posted

I've started setting up Remote Desktop Services for staff to use from home. To begin with I am quite happy for staff to connect via VPN and then connect to the service. Everything is working OK except for getting certificate errors when connecting as I have set it up with self signed certs as proof of concept.

 

Our internal domain is a .local and as I understand I can't buy a trusted certificate for a .local domain any longer.

 

Can anyone explain:

Is there a secure way to get clients to trust these self signed certs?

Is there a way to get a trusted root signed cert to cover connections to a .local domain?

I've seen some info on resolving an external domain name such as rds.schoolname.sheffield.sch.uk to an internal address rds.schoolname.local and applying a purchased cert to it? Can anyone provide a step by step on this?

 

Many thanks in advance.

Posted

There is an option where it asks you for the hostname in the RDS setup (and for the certificate), if you put in an external name here it will use this - while we don't have a .local we're on the end of the trust's .org.uk which isn't resolveable from outside, so we have remote.school.com on our RDS and the SSL cert.

 

(Can't remember where the setting lives off the top of my head)

Guest Guest
Posted
You could create an internal CA and issue certificates using that. However you’d have to install the CA certificate on any devices which require access if you want to eliminate that warning.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...