RE: Passthrough Authentication (RDP ActiveX Control)
- From: Patrick Rouse <PatrickRouse@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Sun, 7 May 2006 12:19:01 -0700
I believe that smartcard redirection works with RDWC (aka TSWEB), but I don't
personally know anyone using this out of the box. I have found plenty of
public tsweb connections with this option exposed as a selection, but don't
know how difficult it would be to implement, i.e. would you have to install
software on each client computer to support the smart card? Here's an
example:
http://www.lakecomm.com/tsweb/
The other problem that still exists is communicating over port 3389, which
you can NOT ensure will be open for remote users, which is why we usually
recommend an SSL VPN Appliance, or Secure Terminal Server Gateway.
--
Patrick Rouse
Microsoft MVP - Terminal Server
http://www.sessioncomputing.com
"DP" wrote:
Thank you for your response. If there is no other "standard" option, I'll.
investigate the use of third part solution. However, after my post, I
continued searching and came up with the following additions to the 5.2 RDP
API. Could this assist in our scenario? Are these API's even available on
the new RDP ActiveX control?
RedirectSmartCards (in RdpClientAdvancedSettings)
AuthenticationLevel
"Patrick Rouse" wrote:
I just found another product that does this, the Array Networks SPX line of
SSL VPN Access Gateways.
http://www.sessioncomputing.com/pdf/ArrayVsCitrixSolutionBrief021006.pdf
http://www.sessioncomputing.com/add-on.htm#security
--
Patrick Rouse
Microsoft MVP - Terminal Server
http://www.sessioncomputing.com
"Patrick Rouse" wrote:
There are several alternatives to Citrix that offer this capability over RDP,
i.e. AEP Networks NSP (formerly Netilla), Provision Networks Management
Framwork Enterprise Edition, Ericom PowerTerm WebConnect...
http://www.sessioncomputing.com/add-on.htm#suites
If this is your only requirement, I'd have AEP send you one of their devices
to demo.
http://www.sessioncomputing.com/pdf/AepSecuringCitrixAndWTS_wp.pdf
http://www.sessioncomputing.com/pdf/AepCitrixWatchguard.pdf
http://www.sessioncomputing.com/pdf/AepDataSheetNSP.PDF
--
Patrick Rouse
Microsoft MVP - Terminal Server
http://www.sessioncomputing.com
"DP" wrote:
With Windows Server 2003 Terminal Services and the RDP Web Control (ACTIVE
X), is it possible to perform either of the following (without utilizing
citrix metaframe)?
1. Utilize Smart Cards? I know that the "thick" RDP client will allow for
this, but will the activeX control work as well?
2. Utilize (AD) Passthrough authentication to the terminal services server.
And, if so, how?
We have a deployment scenario in which all end-users are utilizing smart
cards on their client PC's. As such, they will not know their passwords, and
cannot key in their credentials on the server machines. Utilizing the
"thick" RDP client is not an option.
- References:
- Prev by Date: Re: Reboot Script
- Next by Date: Re: TS Remote Printing in Windows Server X64
- Previous by thread: RE: Passthrough Authentication (RDP ActiveX Control)
- Next by thread: Different languages on TS
- Index(es):