|
Posted by Jiaqi Li on June 2, 2009, 7:56 am
Please log in for more thread options
Dear all,
I just finished a new install of a windows server 2003 ent with sp2,
and followed the kb895433 to configure my win2k3 server to use TLS for
remote desktop access. But when I finished the configure I found I can
still access the win2k3 server via remote desktop and no CA
certificate is needed.
so what's wrong with my server or myself?
-Jiaqi
|
|
Posted by Anthony [MVP] on June 2, 2009, 4:32 pm
Please log in for more thread options
Jiaqi,
What do you see, and what were you expecting to see, when you connect to the
server?
Anthony
http://www.airdesk.com
show/hide quoted text
> Dear all,
> I just finished a new install of a windows server 2003 ent with sp2,
> and followed the kb895433 to configure my win2k3 server to use TLS for
> remote desktop access. But when I finished the configure I found I can
> still access the win2k3 server via remote desktop and no CA
> certificate is needed.
> so what's wrong with my server or myself?
> -Jiaqi
|
|
Posted by Jiaqi Li on June 2, 2009, 8:11 pm
Please log in for more thread options Anthony,
I want to protect my windows 2003 remote desktop access via SSL so
configure all thins followed kb895433 and the windows server 2003 ent
with sp2 is a new installation. When I finished everything, I use
remote desktop client to visit the windows 2003 server from a windows
xp pro sp3 without install the server's certificate, and I found
everything is not change, I still can visit the remote desktop and
nothing is different. As I know, if SSL is enable, the remote desktop
float bar will show a SSL lock icon but i found nothing except a float
icon.
show/hide quoted text
> Jiaqi,
> What do you see, and what were you expecting to see, when you connect to =
the
show/hide quoted text
> server?
> Anthonyhttp://www.airdesk.com
> > Dear all,
> > I just finished a new install of a windows server 2003 ent with sp2,
> > and followed the kb895433 to configure my win2k3 server to use TLS for
> > remote desktop access. But when I finished the configure I found I can
> > still access the win2k3 server via remote desktop and no CA
> > certificate is needed.
> > so what's wrong with my server or myself?
> > -Jiaqi
|
|
Posted by Anthony [MVP] on June 3, 2009, 3:52 am
Please log in for more thread options Jiaqi,
Just assuming for a moment that everything is set up correctly, what happens
if you change the Advanced option in the client to "Do not connect if
authentication fails"?
Anthony
http://www.airdesk.com
show/hide quoted text
> Anthony,
> I want to protect my windows 2003 remote desktop access via SSL so
> configure all thins followed kb895433 and the windows server 2003 ent
> with sp2 is a new installation. When I finished everything, I use
> remote desktop client to visit the windows 2003 server from a windows
> xp pro sp3 without install the server's certificate, and I found
> everything is not change, I still can visit the remote desktop and
> nothing is different. As I know, if SSL is enable, the remote desktop
> float bar will show a SSL lock icon but i found nothing except a float
> icon.
>> Jiaqi,
>> What do you see, and what were you expecting to see, when you connect to
>> the
>> server?
>> Anthonyhttp://www.airdesk.com
>> > Dear all,
>> > I just finished a new install of a windows server 2003 ent with sp2,
>> > and followed the kb895433 to configure my win2k3 server to use TLS for
>> > remote desktop access. But when I finished the configure I found I can
>> > still access the win2k3 server via remote desktop and no CA
>> > certificate is needed.
>> > so what's wrong with my server or myself?
>> > -Jiaqi
>
|
|
Posted by Jiaqi Li on June 3, 2009, 5:48 am
Please log in for more thread options when I changed the security option to "no authentication" in the
remote desktop client, the remote desktop client said "the remote
computer requires authentication for you to connect. verify the
authentication settings and try again"
And when I changed it to "attempt authentication" and " require
authentication", it's both show a security alert for my win2k3's
certificate information.
Now I sure my remote desktop access is enabled SSL, and everything is
ok.
and if I can control the server's SSL certificate and just install it
on the desktop pc which I allow to visit my server via remote
desktop ?
show/hide quoted text
> Jiaqi,
> Just assuming for a moment that everything is set up correctly, what happ=
ens
show/hide quoted text
> if you change the Advanced option in the client to "Do not connect if
> authentication fails"?
> Anthonyhttp://www.airdesk.com
> > Anthony,
> > I want to protect my windows 2003 remote desktop access via SSL so
> > configure all thins followed kb895433 and the windows server 2003 ent
> > with sp2 is a new installation. When I finished everything, I use
> > remote desktop client to visit the windows 2003 server from a windows
> > xp pro sp3 without install the server's certificate, =A0and I found
> > everything is not change, I still can visit the remote desktop and
> > nothing is different. =A0As I know, if SSL is enable, the remote deskto=
p
show/hide quoted text
> > float bar will show a SSL lock icon but i found nothing except a float
> > icon.
> >> Jiaqi,
> >> What do you see, and what were you expecting to see, when you connect =
to
show/hide quoted text
> >> the
> >> server?
> >> Anthonyhttp://www.airdesk.com
..
show/hide quoted text
> >> > Dear all,
> >> > I just finished a new install of a windows server 2003 ent with sp2,
> >> > and followed the kb895433 to configure my win2k3 server to use TLS f=
or
show/hide quoted text
> >> > remote desktop access. But when I finished the configure I found I c=
an
show/hide quoted text
> >> > still access the win2k3 server via remote desktop and no CA
> >> > certificate is needed.
> >> > so what's wrong with my server or myself?
> >> > -Jiaqi
|
| Similar Threads | Posted | | How do I configure Terminal Services for 443 access only | February 12, 2006, 10:37 am |
| Re: IE 8 broke "Configure IE ESC" tool in Server Manager on 2008 Term | July 22, 2009, 1:42 am |
| WIN2K3 SP1 for a web server I am deploying | October 3, 2005, 7:10 am |
| Win95 SR1 logon to win2K3 Server AD | August 29, 2005, 1:48 pm |
| win2k3 server - set advanced permissions CLI | December 11, 2005, 1:28 am |
| Cached credentials win2k3 server | April 16, 2008, 6:22 am |
| Windows Media Player vulnerability in Win2K3 Server with SP2 | October 25, 2007, 2:06 pm |
| USER AND TERMINAL SERVER | July 3, 2007, 7:12 am |
| Locking down Terminal Server | May 5, 2009, 1:54 pm |
| terminal server client question | September 9, 2005, 5:52 pm |
|
> I just finished a new install of a windows server 2003 ent with sp2,
> and followed the kb895433 to configure my win2k3 server to use TLS for
> remote desktop access. But when I finished the configure I found I can
> still access the win2k3 server via remote desktop and no CA
> certificate is needed.
> so what's wrong with my server or myself?
> -Jiaqi