Hi, is there a way to control de access of a user who opens a terminal service through the Juniper Terminal Services, and once connected, opens a nested Terminal Service directly with the Microsoft Windows Remote Desktop application? is it possible to allow the first session but deny the second one?
Thanks!
Solved! Go to Solution.
If I understand correctly, you are asking if the SA can prevent a RDP session being initiated on the terminal server session that the SA is allowing you access to.
That second RDP session will not be seen by the SA as it won't transit the device so it won't be able to control it.
You can secure the application on the terminal server by applying windows ntfs security to the folder or application on the server itself. Just use your rdp security group and apply the deny execute or remove the default read/execute from rdp in accessories.
If I understand correctly, you are asking if the SA can prevent a RDP session being initiated on the terminal server session that the SA is allowing you access to.
That second RDP session will not be seen by the SA as it won't transit the device so it won't be able to control it.
You can secure the application on the terminal server by applying windows ntfs security to the folder or application on the server itself. Just use your rdp security group and apply the deny execute or remove the default read/execute from rdp in accessories.
Your understanding of my question is correct and thanks for the info, that will do it!