SmartCard Login+certificate to to AD & admins using Remote Control

SmartCard Login+certificate to to AD & admins using Remote Control

Secure Home | Search | About
 Microsoft Applications Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
SmartCard Login+certificate to to AD & admins using Remote Control JY 12-15-2005
Posted by =?Utf-8?B?Slk=?= on December 15, 2005, 10:40 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
I have smart card login+ certificate to AD working, including W2K admins. The
solution that I have allows me to use MS Terminal Service Client, Citrix and
XP Remote Desktop with my smart card login+certificate to login to AD on a
remote W2K server since these all virtualize the remote desktop sessions with
the remote server (eg located at HK) while the admin resides at another
location (SF).

However, we also use Remote Control products such as RemotelyAnywhere,
PCAnywhere, HP/Compaq RILO, WinVNC, MS SMS Remote Control and IP KVMs where
it provides physical console access (as if you at are the actual console and
many cases outside of the W2K OS itself) even though you are thousands of
miles away. With the fact that smart card login to AD requires you to posess
and insert the smart card at the server console but you are using a tool
which gives you that conolse access/view from a remote distance creates a
situation where you can't physically insert the smart card (my arm is not
long enough to reach thousands of miles away :)). Again, we are talking about
products that gives you actual console access remotely, NOT virtualized
desktop sessions where you don't actually have physical console access so the
issues are different.

What are companies who have implemented this MS solution, including MS doing
for this situation? Does anyone have a solution for this? Is there no
solution?

Similar ThreadsPosted
Giving admins Local Admin to DC's not Domain Admins August 15, 2008, 4:48 pm
Remote User "Quarantine" and access control May 18, 2006, 11:24 am
Limit Remote Control "shadowing" to Managers June 20, 2007, 5:19 pm
users and local Admins November 5, 2006, 5:27 am
Admins with limited rights July 2, 2007, 8:04 am
Only domain admins can install? November 11, 2008, 3:10 pm
Security: Network Admins vs. SQL Programmers May 23, 2006, 3:47 pm
What is the best way to restrict access to Domain Admins on certain folders? March 19, 2008, 10:31 am
Need security advice from Admins at Software Development companies October 18, 2005, 11:29 am
Forcing Workstations to DHCP or Allowing Non-Admins Access to Alternate TCP/IP Config? October 24, 2007, 6:48 am

The site map in XML format XML site map

Contact Us | Privacy Policy