Re: Remote Desktop Web Connection

From: Al Kazan (
Date: 10/06/04

    Date: Tue, 5 Oct 2004 15:09:08 -0700

    Thanks Mike, I thought this was the case but the
    documentation I found was vague. I am using Windows XP
    Pro. As you note risk is reducible but not eliminatable.
    >-----Original Message-----
    >RDP sessions are by default encrypted. How strong this
    encryption is depends
    >on OS and RDP client (Windows 2003 and latest client
    will by default use 128
    >bit encryption), Windows 2000 will use lower encryption.
    >Note, you will have to open TCP port 3389 to access your
    server using RDP
    >What is risk here:
    >* anyone in the world can access logon site of your
    server (unless you
    >restrict this to specific IP, but then you can't logon
    to your server from
    >anywhere in the world)
    >* if you use cybercafé or something similar someone
    could sniff information
    >that you pass from computer in cybercafé to your server
    >* ...
    >I hope this helps,
    >"Al Kazan" <> wrote
    in message
    >> If you implement Remote Desktop Web Connection as part
    >> IIS and you set up a web address via a Dynamic Hosting
    >> service you can use it to go through your local router
    >> your computer and sign on your computer from any where
    >> the world. How secure is this? When you reach your
    >> computer you must type in your password. Is this
    >> protected in any way if you choose anonymous access or
    >> can it be easily sniffed for passwords?

