Force to use only one application after logon via RDP



Hi,

1st problem: I want to force a user working via RDP to use only one
application. No problem setting the startup application in the property
of the RDP connection, but the user can connet without using this
option, having "full" access on the server.

2nd problem: this application need administrative access to work (yes,
it sucks!) so, looking at the point n.1, it's very important to
limitate what the user can do.

My domain is based on Windows 2003 STD, the clients are Windows XP
machines.

I think that those points can be accomplished by using Policy; but
which?

Those policy are useful when applied to user who have administrator
privileges?


Many many thanks
Matteo

Sorry for the (maybe) bad english, but it's not my native language and
i'm still learning it :)

.



Relevant Pages

  • [NT] Cryptographic Flaw in RDP Protocol Can Lead to Information Disclosure
    ... The Remote Data Protocol (RDP) provides the means by which Windows systems ... The first involves how session encryption is implemented in certain ... An attacker who was able to eavesdrop on and record ...
    (Securiteam)
  • RE: Remote Desktop vs VPN on Windows 2003
    ... I didn't invite the world to hack me...just to find a port. ... Remote Desktop vs VPN on Windows 2003 ... "Come hack at my mail server." ... RDP does not have a known vulnerability against it...you mention ...
    (Security-Basics)
  • RE: Remote Desktop vs VPN on Windows 2003
    ... "Come hack at my mail server." ... Remote Desktop vs VPN on Windows 2003 ... RDP does not have a known vulnerability against it...you mention ... The "patch" for SSH was to completely remove RC4 support. ...
    (Security-Basics)
  • Re: RCP and RDP intermittant connection problems
    ... > failure of RDP and RCP traffic interimittanty. ... > client/server over the affected WAN link, ... > WAN is a windows 2000 VPN server. ... > Default gateway of the DC is the VPN server. ...
    (microsoft.public.windows.server.networking)
  • network problem terminal server?
    ... 2003 sp1 terminal servers (rdp) ... Windows cannot log you on because your profile cannot be loaded. ... - instead of using a router all rdp servers are equiped with double network ...
    (microsoft.public.win2000.networking)