How is dangerous connect to server over internet with remote deskt

How is dangerous connect to server over internet with remote deskt

Secure Home | Search | About
 Microsoft Applications Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
How is dangerous connect to server over internet with remote deskt Massimo 07-21-2006
Posted by =?Utf-8?B?TWFzc2ltbw==?= on July 21, 2006, 8:05 am
If you were  Registered and logged in, you could reply and use other advanced thread options
I have installed windows server 2003 enterprise edition. I have to manage my
server from remote site. A solution with remote desktop only is very
dangerous? Terminal service of windows server 2003 with encryption is not
secure?

Thank's

Posted by Miha Pihler [MVP] on July 21, 2006, 9:11 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Hi,

There are few things you can do to make these connections (more) secure:
- On the server set the encryption to high
- On Windows Server 2003 with SP1 installed on it you can use certificates
to prevent MITM (Man In The Middle) attacks.

Now the only thing that I usually worry about when considering RDP are key
loggers that might be installed on a computer from which you are trying to
connect to your server (e.g. if you are trying to connect to your server
from cyber café). Still this is not only the problem with RDP connection but
with any remote connection using static username and password.

So if you decide for this option pay attention to username and password (use
strong username and password and change passwords frequently). Don't use
domain administrator account for connection - use ordinary user account.
Whenever possible this user account should not even be local administrator
on the server. Once you are connected to the server you can raise your
permissions using another RDP to the server or options such as "run as" etc.

Another thing to consider is to limit IP address from which you can connect
to your server over RDP (e.g. limit it to your home IP address only).

--
Mike
Microsoft MVP - Windows Security

>I have installed windows server 2003 enterprise edition. I have to manage
>my
> server from remote site. A solution with remote desktop only is very
> dangerous? Terminal service of windows server 2003 with encryption is not
> secure?
>
> Thank's



Similar ThreadsPosted
A comparison among six VSS remote tools including SourceOffSite , SourceAnyWhere, VSS Connect, SourceXT, VSS Remoting, VSS.NET August 24, 2005, 3:03 am
how to configure Remote access server to log data to a SQL server May 31, 2006, 7:26 pm
Can IPSec connect 2 VPN Clients or is ALWAYS an IPSec server needed ? July 25, 2005, 3:40 pm
Certsrv on a remote server February 11, 2008, 5:26 pm
Remote Server auto login April 16, 2007, 3:32 am
Join Remote Server to My Domain September 24, 2008, 5:16 pm
Stop Remote Manipulation When Server Needs Access August 13, 2005, 9:40 am
Win Server 2003 - Remote Desktop for Administration May 1, 2006, 9:09 pm
Remote Desktop for Windows Server 2003 June 29, 2006, 3:29 pm
Seeking advice - Securing Server Traffic tio The Internet January 6, 2007, 7:28 pm

The site map in XML format XML site map

Contact Us | Privacy Policy