ehartley7 Posted April 11, 2018 Posted April 11, 2018 I've started setting up Remote Desktop Services for staff to use from home. To begin with I am quite happy for staff to connect via VPN and then connect to the service. Everything is working OK except for getting certificate errors when connecting as I have set it up with self signed certs as proof of concept. Our internal domain is a .local and as I understand I can't buy a trusted certificate for a .local domain any longer. Can anyone explain: Is there a secure way to get clients to trust these self signed certs? Is there a way to get a trusted root signed cert to cover connections to a .local domain? I've seen some info on resolving an external domain name such as rds.schoolname.sheffield.sch.uk to an internal address rds.schoolname.local and applying a purchased cert to it? Can anyone provide a step by step on this? Many thanks in advance.
Katy Posted April 11, 2018 Posted April 11, 2018 There is an option where it asks you for the hostname in the RDS setup (and for the certificate), if you put in an external name here it will use this - while we don't have a .local we're on the end of the trust's .org.uk which isn't resolveable from outside, so we have remote.school.com on our RDS and the SSL cert. (Can't remember where the setting lives off the top of my head)
Guest Guest Posted April 11, 2018 Posted April 11, 2018 You could create an internal CA and issue certificates using that. However you’d have to install the CA certificate on any devices which require access if you want to eliminate that warning.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now