Can you tell me how secured it's the connection this way. or what are the
risks?

thank you.

Re: SB Server-Terminal Services by Javier

Javier
Fri Nov 12 08:44:19 CST 2004

You mean what kind of encryption does a terminal server uses (RDP protocol)?
In Win2k by default is 54-bit RC4 bidirectional encryption. However, you can
increase it to 128-bit (although, there are restrictions if you are not on
the US). In Win2k3 the default is 128-bits and there is an additional
encryption level called FIPS.

What are the risks is a much more complicated question (if Susan reads this
thread I'm sure she can give a lot more info than me and some very useful
links). From my perspective, you need to assess how are you going to do this
and what are your threat vectors. I most cases I wouldn't be worried so much
about somebody trying to sniff my encrypted session, but I'm very worried
about a hacker executing a password attack to an internet-exposed TS. It all
comes down to have strong passwords and/or 2-factor authentication, etc.
Also, hardening your server is important (i.e. disabling the user account
after 3 invalid passwords, etc.).

Does this answer your question?

--
Javier [SBS MVP]
www.msmvps.com/javier
<< SBS ROCKS!!! >>

"NL" <NL@discussions.microsoft.com> wrote in message
news:C5180B18-F0FC-430D-838F-265B1C82C3F8@microsoft.com...
> Can you tell me how secured it's the connection this way. or what are the
> risks?
>
> thank you.