How Secure is Remote Desktop

G

Guest

Just how secure is Remote Desktop? I know I can change the listening ports
for added security. Is there anything else that can be done outside a VPN
type connection?
 
V

Vagabond Software

Tom said:
Just how secure is Remote Desktop? I know I can change the listening
ports
for added security. Is there anything else that can be done outside a VPN
type connection?

Remote Desktop is as secure as the least secure password on any active
account on your system.

carl
 
C

Charlie Tame

I would certainly make sure that any users set up on the target machine have
sensibly strong passwords but no doubt you already addressed that risk.

You can stop the last user name being displayed at logon which further
reduces any clues, and of course rename the administrator. You can probably
restrict things further using file permissions with a purpose designed
"User" if you like but this would be useless if an admin ID and password
could be gained. Course if the whole point is for you personally to remote
administer that is a dead end. Another possibility is to apply a limit to
the number of failed logons, imposing say a 10 minute lockdown if logon
fails (say) 3 times. Can't claim to be an expert on the subject but I think
it's more likely you would be caught out a by a silly error than a
determined bit of hacking unless there is some reason to suspect being
targeted.

You could also try asking in one of the security or networking groups - you
can install the client and it's .dll on any Windows from 95 up but only XP
and W2003 have the "Server" so try the 2003 groups if you like as I'm sure
many server operators will have asked this very same question. W2000 no use
as it has no server component.

Charlie
 
L

Leythos

Just how secure is Remote Desktop? I know I can change the listening ports
for added security. Is there anything else that can be done outside a VPN
type connection?

If they can determine a password or find an exploit, they can get in and
do just about anything they want.

It's best to have users VPN into the network firewall appliance and then
allow RD access over a VPN, and the firewall appliance should not use
the same user/password as the RD client - this means two layers they
have to get through.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top