RDP: remote desktop issues
- From: "Al Dunbar" <AlanDrub@xxxxxxxxxxxxxxxxxxx>
- Date: Sun, 23 Sep 2007 13:13:42 -0600
I have been having some difficulty in getting a request to modify our group
policy to enable RDP on our XPSP2 workstations past IT security. In
researching potential issues, the only ones I have found are some DoS
vulnerabilies for which patches have been available for some time. In any
case, our internal network is heavily firewalled against access from the
outside.
We are already using SMS remote control, but it is configured to require the
remote user's acceptance of our request to remote control their workstation,
so not of much use when nobody is there. Also, if we log the user out and
logon to an account with administrator access, the user could potentially
close the remote control session and remain logged on with privileges.
I would see RDP as a useful addition to our arsenal of tools, with SMS
remote control for user support, and RDP for workstation support.
I believe that one of the concerns we are seeming to work against is privacy
of the user's session, including any files they mave have created locally,
such as on the desktop. Of course, we can already browse remotely to the
local hard drive, seeminly with even less accountability than if we were to
logon remotely. And we have the authority to take a workstation out of
service and examine it directly - without having to inform the dozens of
users that have profiles there.
Basically, I am looking for comments, either for or against. Does anyone out
there have information (or better yet, actual experience) to indicate that
the benefits of using RDP for workstation management are either outweighed,
or not outweighed, by any other factors that we have perhaps not considered?
If there are security, privacy, or other issues, has anyone found ways to
mitigate them?
Any and all comments will be greatly appreciated.
/Al
.
- Follow-Ups:
- Re: remote desktop issues
- From: Al Dunbar
- Re: remote desktop issues
- Prev by Date: Re: users reaching server from computer not in domain
- Next by Date: Re: remote desktop issues
- Previous by thread: There is no encryption recovery policy configured for this system
- Next by thread: Re: remote desktop issues
- Index(es):
Relevant Pages
|