Important Notice: Our web hosting provider recently started charging us for additional visits, which was unexpected. In response, we're seeking donations. Depending on the situation, we may explore different monetization options for our Community and Expert Contributors. It's crucial to provide more returns for their expertise and offer more Expert Validated Answers or AI Validated Answers. Learn more about our hosting issue here.

Is Microsoft Remote Desktop secure enough for the Internet?

0
Posted

Is Microsoft Remote Desktop secure enough for the Internet?

0

As with every other Microsoft product, there have been numerous weaknesses found via authenication, timestamping and DoS vulnerabilities. I would recommend you do many things, including restricting access to port 3389 to IP, changing the default port on which RDP runs from 3389 to something else, as well as tunneling the protocol through a VPN, SSH or stunnel.

0

I second Mr. Six’s advice. Beware, though, that if you change the port from 3389 to something else, you will have to have the full Remote Desktop Connection client installed on a computer in order to connect. This is only really an issue if you’re using the web-based ActiveX version of Remote Desktop. I personally do not “wrap” my RDP sessions, because I don’t have anything of value, and to my knowledge, there are no “rdp sniffers” anywhere out there. There’s some good information about the security of RDP on Experts Exchange regarding this topic. The second “Accepted Answer” pretty well sums it up, IMHO.

Related Questions

What is your question?

*Sadly, we had to bring back ads too. Hopefully more targeted.

Experts123