Re: Is Remote Desktop vulnerable to brute force attacks?

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



Your normal account security settings for the domain should handle
this. Configure the maximum number of failed logon attempts before an
account is locked, as well as the duration of the lockout and whether
it needs to be unlocked manually by an Administrator or not.

I believe that there is a specific security event which in it's
description has a warning that your TS might be under attack, but the
only reports I have seen about this event is that it is mainly
triggered by some general network problems, and thus is a false
alarm.
_________________________________________________________
Vera Noest
MCSE, CCEA, Microsoft MVP - Terminal Server
TS troubleshooting: http://ts.veranoest.net
___ please respond in newsgroup, NOT by private email ___

PSiegmann@xxxxxxx wrote on 04 jan 2008 in
microsoft.public.windows.terminal_services:

Something I thought about some time now: Is RDP completely
secure against brute force attacks?

I mean, does it stops someone, who throws 10000 password
combinations per minute? Can it sense such attacks?
.



Relevant Pages

  • Re: DoS "Probing" on one of our hosts
    ... > bandwidth. ... > through one of the attacks without picking any signatures up. ... They probably wont be interesting in helping backtrack ... world's premier technical IT security event! ...
    (Incidents)
  • Re: DoS "Probing" on one of our hosts
    ... we now assume that the attacks we encountered ... during the weekend were tests for something bigger, ... We backtraced the traffic to two of our game server machines and saw ... world's premier technical IT security event! ...
    (Incidents)
  • Re: Recent Gartner IDS/IPS report
    ... But still, an IDP is prone to false positives, in the same was as an IDS ... To my opinion it makes sense to block attacks which can be reliably ... world's premier technical IT security event! ...
    (Focus-IDS)
  • DoS "Probing" on one of our hosts
    ... we have been encountering three short DoS attacks during the weekend - ... world's premier technical IT security event! ...
    (Incidents)