Re: breakout of citrix

From: Martin Mewes (mm_at_mewes.tv)
Date: 10/21/04

  • Next message: stilist: "Re: Group policy help"
    Date: Thu, 21 Oct 2004 18:40:35 +0200
    To: security-basics@securityfocus.com
    
    

    Hi,

    Kenzo wrote:

    > I discovered that if you insert a link into the work document such as "c:\"
    > and click on it.
    > Citrix freaks out, then gives you the desktop of the citrix server.
    >>From there you can do access what ever programs you want.

    Be verbose, please ...

    I added a link within Word2000 using STRG+K pointing to C:\

    What I get on screen is ...

    \\Client\C$\

    When I click on this it connects me properly to my client.

    I remember that during or after installing Citrix Metaframe XP1 with
    Service Release 2 the program offered me to run a (huh, long ago)
    program which changes the Server-Drive C:\ and D:\ to L:\ and M:\ in
    order to avoid some stuff.

    Most of the clients which connect have their client drives at C:\ and/or
    D:\.

    Citrix says, if you do not have this program run, the local harddrives
    of a client could not be connected to a Citrix-Session, if the client is
    a Windows-Machine.

    hth

    bis dahin - kind regards

    Martin Mewes

    -- 
    ######################################################################
    http://www.webmin.com/	| Webbased Administration Tool for
    http://webmin.mamemu.de/| Unixoid Systems :-)
    Official Webmin/Usermin Translation Co-Ordinator 2003/2004
    ######################################################################
    

  • Next message: stilist: "Re: Group policy help"

    Relevant Pages

    • Kikkert Security Advisory: Potentially serious security flaw in Citrix Client
      ... consideration and after advising 'Citrix' first. ... affected as I have no longer access to a Citrix server to do this myself... ... Serious security flaw in Citrix Client ...
      (Bugtraq)
    • Re: SMS over port 80
      ... Somehow your managers were told by Microsoft that something was possible, ... Citrix proprietary protocol instead of RDP. ... Citrix client isn't really in the picture. ... > for SP1 for workgroup support and use VPN). ...
      (microsoft.public.sms.admin)
    • Re: Secure Access - [WP]
      ... How can I confiugre/make sure they only logon to the Citrix Server. ... users are in a different company and I don't know what client OS they are ...
      (microsoft.public.windows.server.active_directory)
    • Citrix Metaframe Presentation Server bypassing policies
      ... Vulnerability in Presentation Server allow to user bypass citrix policy ... Citrix Presentation Server policy is used for admins to restrict the user ... IP client, servers, Users, o Client Name. ...
      (Pen-Test)
    • Re: SMS over port 80
      ... We did discover that using Citrix or Terminal server client will not work ... I feel that this would be a great feauture to have in SMS 2003 and I bet others ... > Somehow your managers were told by Microsoft that something was possible, ...
      (microsoft.public.sms.admin)