RDP
Overview
RDP (Remote Desktop Protocol) resources allow users to connect to Windows servers or VDI sessions. RDP sessions can be accessed through the web portal.
Remote desktop sessions have 3 possible authenticaltion modes
| Authentication Mode | Authentication Flow | Login Recorded |
|---|---|---|
| OS Authenticated | User is multi-factored User is challenged with the standard Windows login. | Yes |
| Mamori Prompt | User is challenged with a web RDP login prompt User is multi-factored. | No |
| No Prompt | User is multi-factored User is automatically logged in with a pre-configured credential. | No |
Recorded RDP sessions are only available from the Mamori web portal.
Connecting via a native RDP client using the ZTNA solution will 2FA and record the TCP access, but it will not record the RDP session.
Connecting via a native RDP client using the ZTNA solution will 2FA and record the TCP access, but it will not record the RDP session.
Create Remote Desktop
Click Remote Desktops
Click
Click the GENERAL tab
Set the properties
Field Description Connection Name Your reference for the remote desktop session Hostname Target server Port Target server port.
Defaults to 3389Remote Username OS login name Remote Password OS login password Remote Domain OS login domain Security Server session authentication mode.
Defaults to AnyIgnore TSL certificate validation errors Defaults to true Connect to system console Defaults to false Click the FILE SHARING tab
Set the properties
Field Description Enable file sharing CTRL-SHIFT-ALT will diplay the file sharing menu
Defaults to falseDisable download Disable download buton
Defaults falseDisable upload Disable upload buton
Defaults falseDrive name Name of the mappped temporary drive
Defaults SharedClick the ADVANCED tab
Set the properties
Field Description Fill browser window Scales the RDP session to the browser windows Width Defaults to 1024 Height Defaults to 768 DPI Defaults to 96 Clipboard Mode mode for copy/paste from clipboard Disable Clipboard Copy Defaults false Disable Clipboard Paste Defaults false Server Keyboard Layout Session keyboard layout Server Keyboard Layout Session keyboard layout Remote Application Settings Selection option for VDI application
RDP Application Service Must be enabled on the serverVisuals Font Smoothing, Theming, Fill Window Drag & Lossles compression Click OK
Grant Access
Manual Grant
- Click Remote Desktops
- Find the desired desktop definition in the grid and click
- Click Manager Assigned Users or Manager Assigned Roles
- For time grants toggled advanced options
- Click on the grantee to add or remove the grant
Setup On-Demand
- Click Remote Desktops
- Find the desired desktop definition in the grid and click
- Click Manage Request Grants
- Click Add Grant
- Enter the grant information
- Click Save
Connecting
To connect to a remote desktop
- Login to the Mamori portal
- Click Remote Desktops
- Find the remote desktop you want to access
- Click the Connect button on the target desktop