Terminal server

22
Remote Desktop Host Configuration Report XIA Configuration Server Report WARNING: Company Confidential This document is for authorised use by the intended recipient(s) only. It may contain proprietary material, confidential information and, or be subject to legal privilege. It should not be copied, disclosed to, retained or used by, any other party. Microsoft, Windows and Active Directory are either registered trademarks or trademarks of Microsoft Corporation in the United States and/or other countries. Document Properties Document Remote Desktop Host Configuration Report Creation date 04 January 2012, 12:38:26 Author CENTREL Solutions XIA Configuration User CENTREL-WS02\dhomer Document Version 1.13 XIA Configuration Version 3.4.5.0 Page 1 of 22 XIA Configuration Server Trial Version

Transcript of Terminal server

Page 1: Terminal server

Remote Desktop Host Configuration ReportXIA Configuration Server Report

WARNING: Company Confidential

This document is for authorised use by the intended recipient(s) only. It may contain proprietary material, confidential information and, or be subject to legal privilege. It should not be copied, disclosed to, retained or used by, any other party.

Microsoft, Windows and Active Directory are either registered trademarks or trademarks of Microsoft Corporation in the United States and/or other countries.

Document Properties

Document Remote Desktop Host Configuration Report

Creation date 04 January 2012, 12:38:26

Author CENTREL Solutions

XIA Configuration User CENTREL-WS02\dhomer

Document Version 1.13

XIA Configuration Version 3.4.5.0

Page 1 of 22 XIA Configuration Server

Trial Version

Page 2: Terminal server

Table of Contents

Terminal Server Information

General Information 3Relationships 3Server Information 5

Connection (Session) Broker

Connections (Terminals)

Low speed connection 8RDPTest 10

Remote App

Calculator 13Disk Defragmenter 14Connect to a Projector 15Internet Information Services (IIS) Manager 16iSCSI Initiator 17Storage Explorer 18System Configuration 19System Information 20Paint 21WordPad 22

Trial Version

Page 3: Terminal server

Terminal Server InformationThis is an example Windows 2008 R2 Server running several sample RemoteApp applications.

General Information

Description Microsoft Windows Server 2008 R2 Enterprise

Item Name DEMO-TS02

Item ID 1392

Primary Owner Name Infrastructure Support

Primary Owner Contact [email protected]

Scanned on Date 04 January 2012

Client Version 3.4.5

Relationships

Item ID Name Type Relationship Type System Managed

1390 DEMO-TS02 WindowsServer Is Hosted On True

1000 CENTREL Solutions Container Is Contained Within True

Internal Calculator RemoteAppApplication Hosts RemoteApp Application

True

Internal Disk Defragmenter RemoteAppApplication Hosts RemoteApp Application

True

Internal Connect to a Projector RemoteAppApplication Hosts RemoteApp Application

True

Internal Internet Information Services (IIS) Manager

RemoteAppApplication Hosts RemoteApp Application

True

Internal iSCSI Initiator RemoteAppApplication Hosts RemoteApp Application

True

Internal Storage Explorer RemoteAppApplication Hosts RemoteApp Application

True

Internal System Configuration RemoteAppApplication Hosts RemoteApp Application

True

Internal System Information RemoteAppApplication Hosts RemoteApp Application

True

Internal Paint RemoteAppApplication Hosts RemoteApp Application

True

Internal WordPad RemoteAppApplication Hosts RemoteApp Application

True

Page 3 of 22 XIA Configuration Server

Trial Version

Page 4: Terminal server

Page 4 of 22 XIA Configuration Server

Trial Version

Page 5: Terminal server

Server InformationA Terminal Server (known as Remote Desktop Session Host (RD Session Host) server on Windows 2008 and above) is a server that hosts Windows-based programs or the full Windows desktop for Remote Desktop Services clients.

Users can connect to a Terminal Server to run programs, to save files, and to use network resources on that server.

Users can access an RD Session Host server by using Remote Desktop Connection or on Windows 2008 and above by using RemoteApp.

General Settings

Delete temporary folders on exit True

Active Desktop False

Licensing Name Per Device

Licensing Description This policy requires a license to be issued to each client computer (device) that connects to the Remote Desktop Session Host server.

License Servers DEMO-TS02

Operating System Name Microsoft Windows Server 2008 R2 Enterprise

Permission Compatibility False

Remote Desktop Users DEMO-TS02\AdministratorDEMO-TS02\dhomerNT AUTHORITY\LOCAL SERVICENT AUTHORITY\NETWORKNT AUTHORITY\REMOTE INTERACTIVE LOGONTSDOMAIN\administratorTSDOMAIN\dhomerWinNT:\CONSOLE LOGONWinNT:\OWNER RIGHTSWinNT:\S-1-5-21-88327077-99461550-3288787501-501WinNT:\S-1-5-21-88327077-99461550-3288787501-516WinNT:\S-1-5-21-88327077-99461550-3288787501-518

Restrict each user to a single session True

Use temporary folders per session True

Page 5 of 22 XIA Configuration Server

Trial Version

Page 6: Terminal server

Connection (Session) BrokerRemote Desktop Connection Broker known as Terminal Services Session Broker in versions of Windows prior to Windows 2008 R2 provides several functions:

Allows users to reconnect to their existing sessions in a load-balanced Remote Desktop or Terminal Services Session Host server farm. This prevents a user with a disconnected session from being connected to a different server in the farm and starting a new session.

Enables you to evenly distribute the session load among Remote Desktop Session Host servers.

In Windows 2008 and above provides users access to virtual desktops hosted on Remote Desktop Virtualization Host servers and to RemoteApp programs.

General Settings

Enabled True

Connection Broker DEMO-TS02.tsdomain.int

Cluster Name SAMPLEFARM

Load Balancing Participate

Load Balancing Weight SAMPLEFARM

Page 6 of 22 XIA Configuration Server

Trial Version

Page 7: Terminal server

Connections (Terminals)Provides an overview of the connections configured on this Terminal Server.

Name Protocol Enabled

Low speed connection Microsoft RDP 6.1 True

RDPTest Microsoft RDP 6.1 True

Page 7 of 22 XIA Configuration Server

Trial Version

Page 8: Terminal server

Low speed connection

General Settings

Name Low speed connection

Enabled True

Comment Sample connection to demonstrate XIA Configuration Serve

Transport tcp

Terminal Protocol Microsoft RDP 6.1

Minimum Encryption Level ClientCompatible

Certificate Name

Security Layer Negotiate

Transport tcp

User Authentication Required True

Windows Authentication False

Logon Settings

Logon Policy ClientProvided

Always prompt for password False

Session Settings

Override user settings ActiveDirectory

End a disconnected session Never

Active session limit Never

Idle session limit Never

Override user settings for broken connections

ActiveDirectory

When a session limited is reached or a connection is broken

DisconnectSession

Environment Settings

On connection Run initial program specified by user profile and remote desktop connection or client.

Program path and file name

Start in

Remote Control

Remote Control Setting Do not allow remote control

Client Settings

Limit maximum colour depth False

Limit maximum number of monitors per session

16

Page 8 of 22 XIA Configuration Server

Trial Version

Page 9: Terminal server

Client Settings - Disable the following

Audio recording True

Audio mapping True

Clipboard False

COM Port False

Drive False

LPT Port False

Supported Plug and Play Devices False

Default to main client printer True

Windows Printer False

Network Adapter

Network Adapter Microsoft Loopback Adapter

Maximum Connections 20

Permissions

Account Name Type Rights

NT AUTHORITY\INTERACTIVE Allowed Query Information

NT AUTHORITY\SYSTEM Allowed Full Control

NT AUTHORITY\LOCAL SERVICE Allowed Query InformationMessageVirtual Channels

NT AUTHORITY\NETWORK SERVICE Allowed Query InformationMessage

BUILTIN\Administrators Allowed Full Control

BUILTIN\Remote Desktop Users (Secure) Allowed User

Page 9 of 22 XIA Configuration Server

Trial Version

Page 10: Terminal server

RDPTest

General Settings

Name RDPTest

Enabled True

Comment Sample connection to demonstrate XIA Configuration Serve

Transport tcp

Terminal Protocol Microsoft RDP 6.1

Minimum Encryption Level ClientCompatible

Certificate Name

Security Layer SSL

Transport tcp

User Authentication Required False

Windows Authentication False

Logon Settings

Logon Policy ClientProvided

Always prompt for password False

Session Settings

Override user settings ServerOverride

End a disconnected session 60000

Active session limit Never

Idle session limit Never

Override user settings for broken connections

ActiveDirectory

When a session limited is reached or a connection is broken

DisconnectSession

Environment Settings

On connection Run initial program specified by user profile and remote desktop connection or client.

Program path and file name

Start in

Remote Control

Remote Control Setting Do not allow remote control

Client Settings

Limit maximum colour depth False

Limit maximum number of monitors per session

16

Page 10 of 22 XIA Configuration Server

Trial Version

Page 11: Terminal server

Client Settings - Disable the following

Audio recording True

Audio mapping True

Clipboard False

COM Port False

Drive False

LPT Port False

Supported Plug and Play Devices False

Default to main client printer True

Windows Printer False

Network Adapter

Network Adapter Intel(R) PRO/1000 MT Network Connection

Maximum Connections Unlimited

Permissions

Account Name Type Rights

NT AUTHORITY\SYSTEM Allowed Full Control

NT AUTHORITY\LOCAL SERVICE Allowed Query InformationMessageVirtual Channels

NT AUTHORITY\NETWORK SERVICE Allowed Query InformationMessage

NT AUTHORITY\BATCH Allowed User

BUILTIN\Administrators Allowed Full Control

BUILTIN\Remote Desktop Users (Secure) Allowed User

NT AUTHORITY\INTERACTIVE Allowed Logon

NT AUTHORITY\SChannel Authentication Allowed Query Information

Page 11 of 22 XIA Configuration Server

Trial Version

Page 12: Terminal server

Remote AppRemoteApp is a technology available from Windows 2008 that enables you to make programs that are accessed remotely through Remote Desktop Services appear as if they are running on the end user's local computer.

Instead of being presented to the user in the desktop of the Remote Desktop Session Host server, the RemoteApp program is integrated with the client's desktop. The RemoteApp program runs in its own window, can be dragged between multiple monitors, and has its own entry in the taskbar.

Page 12 of 22 XIA Configuration Server

Trial Version

Page 13: Terminal server

Calculator

RemoteApp Application

Alias calc

Command-line arguments Do not allow command-line arguments

Icon File %windir%\system32\calc.exe

Name Calculator

Path C:\Windows\system32\calc.exe

Vitrual Path %SYSTEMDRIVE%\Windows\system32\calc.exe

Path Exists True

RDP File Contents redirectclipboard:i:1redirectposdevices:i:0redirectprinters:i:1redirectcomports:i:1redirectsmartcards:i:1devicestoredirect:s:*drivestoredirect:s:*redirectdrives:i:1session bpp:i:32prompt for credentials on client:i:1span monitors:i:1use multimon:i:1remoteapplicationmode:i:1server port:i:3389allow font smoothing:i:1promptcredentialonce:i:1authentication level:i:2gatewayusagemethod:i:2gatewayprofileusagemethod:i:0gatewaycredentialssource:i:0full address:s:DEMO-TS02alternate shell:s:||calcremoteapplicationprogram:s:||calcgatewayhostname:s:remoteapplicationname:s:Calculatorremoteapplicationcmdline:s:

RemoteApp program is available through Web Access

True

Restrict to specified domain users and domain groups

False

Page 13 of 22 XIA Configuration Server

Trial Version

Page 14: Terminal server

Disk Defragmenter

RemoteApp Application

Alias dfrgui

Command-line arguments Do not allow command-line arguments

Icon File %systemroot%\system32\dfrgui.exe

Name Disk Defragmenter

Path C:\Windows\system32\dfrgui.exe

Vitrual Path %SYSTEMDRIVE%\Windows\system32\dfrgui.exe

Path Exists True

RDP File Contents redirectclipboard:i:1redirectposdevices:i:0redirectprinters:i:1redirectcomports:i:1redirectsmartcards:i:1devicestoredirect:s:*drivestoredirect:s:*redirectdrives:i:1session bpp:i:32prompt for credentials on client:i:1span monitors:i:1use multimon:i:1remoteapplicationmode:i:1server port:i:3389allow font smoothing:i:1promptcredentialonce:i:1authentication level:i:2gatewayusagemethod:i:2gatewayprofileusagemethod:i:0gatewaycredentialssource:i:0full address:s:DEMO-TS02alternate shell:s:||dfrguiremoteapplicationprogram:s:||dfrguigatewayhostname:s:remoteapplicationname:s:Disk Defragmenterremoteapplicationcmdline:s:

RemoteApp program is available through Web Access

True

Restrict to specified domain users and domain groups

False

Page 14 of 22 XIA Configuration Server

Trial Version

Page 15: Terminal server

Connect to a Projector

RemoteApp Application

Alias displayswitch

Command-line arguments Do not allow command-line arguments

Icon File %windir%\system32\displayswitch.exe,-101

Name Connect to a Projector

Path C:\Windows\system32\displayswitch.exe

Vitrual Path %SYSTEMDRIVE%\Windows\system32\displayswitch.exe

Path Exists True

RDP File Contents redirectclipboard:i:1redirectposdevices:i:0redirectprinters:i:1redirectcomports:i:1redirectsmartcards:i:1devicestoredirect:s:*drivestoredirect:s:*redirectdrives:i:1session bpp:i:32prompt for credentials on client:i:1span monitors:i:1use multimon:i:1remoteapplicationmode:i:1server port:i:3389allow font smoothing:i:1promptcredentialonce:i:1authentication level:i:2gatewayusagemethod:i:2gatewayprofileusagemethod:i:0gatewaycredentialssource:i:0full address:s:DEMO-TS02alternate shell:s:||displayswitchremoteapplicationprogram:s:||displayswitchgatewayhostname:s:remoteapplicationname:s:Connect to a Projectorremoteapplicationcmdline:s:

RemoteApp program is available through Web Access

True

Restrict to specified domain users and domain groups

False

Page 15 of 22 XIA Configuration Server

Trial Version

Page 16: Terminal server

Internet Information Services (IIS) Manager

RemoteApp Application

Alias InetMgr

Command-line arguments Do not allow command-line arguments

Icon File %windir%\system32\inetsrv\InetMgr.exe

Name Internet Information Services (IIS) Manager

Path C:\Windows\system32\inetsrv\InetMgr.exe

Vitrual Path %SYSTEMDRIVE%\Windows\system32\inetsrv\InetMgr.exe

Path Exists True

RDP File Contents redirectclipboard:i:1redirectposdevices:i:0redirectprinters:i:1redirectcomports:i:1redirectsmartcards:i:1devicestoredirect:s:*drivestoredirect:s:*redirectdrives:i:1session bpp:i:32prompt for credentials on client:i:1span monitors:i:1use multimon:i:1remoteapplicationmode:i:1server port:i:3389allow font smoothing:i:1promptcredentialonce:i:1authentication level:i:2gatewayusagemethod:i:2gatewayprofileusagemethod:i:0gatewaycredentialssource:i:0full address:s:DEMO-TS02alternate shell:s:||InetMgrremoteapplicationprogram:s:||InetMgrgatewayhostname:s:remoteapplicationname:s:Internet Information Services (IIS) Managerremoteapplicationcmdline:s:

RemoteApp program is available through Web Access

True

Restrict to specified domain users and domain groups

False

Page 16 of 22 XIA Configuration Server

Trial Version

Page 17: Terminal server

iSCSI Initiator

RemoteApp Application

Alias iscsicpl

Command-line arguments Do not allow command-line arguments

Icon File %windir%\system32\iscsicpl.dll,-1

Name iSCSI Initiator

Path C:\Windows\system32\iscsicpl.exe

Vitrual Path %SYSTEMDRIVE%\Windows\system32\iscsicpl.exe

Path Exists True

RDP File Contents redirectclipboard:i:1redirectposdevices:i:0redirectprinters:i:1redirectcomports:i:1redirectsmartcards:i:1devicestoredirect:s:*drivestoredirect:s:*redirectdrives:i:1session bpp:i:32prompt for credentials on client:i:1span monitors:i:1use multimon:i:1remoteapplicationmode:i:1server port:i:3389allow font smoothing:i:1promptcredentialonce:i:1authentication level:i:2gatewayusagemethod:i:2gatewayprofileusagemethod:i:0gatewaycredentialssource:i:0full address:s:DEMO-TS02alternate shell:s:||iscsicplremoteapplicationprogram:s:||iscsicplgatewayhostname:s:remoteapplicationname:s:iSCSI Initiatorremoteapplicationcmdline:s:

RemoteApp program is available through Web Access

True

Restrict to specified domain users and domain groups

False

Page 17 of 22 XIA Configuration Server

Trial Version

Page 18: Terminal server

Storage Explorer

RemoteApp Application

Alias mmc

Command-line arguments Always use the required command-line arguments

RDP File Contents %windir%\system32\storexpl.msc

Icon File %systemroot%\system32\storexpl.dll,-5050

Name Storage Explorer

Path C:\Windows\system32\mmc.exe

Vitrual Path %SYSTEMDRIVE%\Windows\system32\mmc.exe

Path Exists True

RDP File Contents redirectclipboard:i:1redirectposdevices:i:0redirectprinters:i:1redirectcomports:i:1redirectsmartcards:i:1devicestoredirect:s:*drivestoredirect:s:*redirectdrives:i:1session bpp:i:32prompt for credentials on client:i:1span monitors:i:1use multimon:i:1remoteapplicationmode:i:1server port:i:3389allow font smoothing:i:1promptcredentialonce:i:1authentication level:i:2gatewayusagemethod:i:2gatewayprofileusagemethod:i:0gatewaycredentialssource:i:0full address:s:DEMO-TS02alternate shell:s:||mmcremoteapplicationprogram:s:||mmcgatewayhostname:s:remoteapplicationname:s:Storage Explorerremoteapplicationcmdline:s:%windir%\system32\storexpl.msc

RemoteApp program is available through Web Access

True

Restrict to specified domain users and domain groups

False

Page 18 of 22 XIA Configuration Server

Trial Version

Page 19: Terminal server

System Configuration

RemoteApp Application

Alias msconfig

Command-line arguments Do not allow command-line arguments

Icon File %windir%\system32\msconfig.exe,-128

Name System Configuration

Path C:\Windows\system32\msconfig.exe

Vitrual Path %SYSTEMDRIVE%\Windows\system32\msconfig.exe

Path Exists True

RDP File Contents redirectclipboard:i:1redirectposdevices:i:0redirectprinters:i:1redirectcomports:i:1redirectsmartcards:i:1devicestoredirect:s:*drivestoredirect:s:*redirectdrives:i:1session bpp:i:32prompt for credentials on client:i:1span monitors:i:1use multimon:i:1remoteapplicationmode:i:1server port:i:3389allow font smoothing:i:1promptcredentialonce:i:1authentication level:i:2gatewayusagemethod:i:2gatewayprofileusagemethod:i:0gatewaycredentialssource:i:0full address:s:DEMO-TS02alternate shell:s:||msconfigremoteapplicationprogram:s:||msconfiggatewayhostname:s:remoteapplicationname:s:System Configurationremoteapplicationcmdline:s:

RemoteApp program is available through Web Access

True

Restrict to specified domain users and domain groups

False

Page 19 of 22 XIA Configuration Server

Trial Version

Page 20: Terminal server

System Information

RemoteApp Application

Alias msinfo32

Command-line arguments Do not allow command-line arguments

Icon File %windir%\system32\msinfo32.exe,-399

Name System Information

Path C:\Windows\system32\msinfo32.exe

Vitrual Path %SYSTEMDRIVE%\Windows\system32\msinfo32.exe

Path Exists True

RDP File Contents redirectclipboard:i:1redirectposdevices:i:0redirectprinters:i:1redirectcomports:i:1redirectsmartcards:i:1devicestoredirect:s:*drivestoredirect:s:*redirectdrives:i:1session bpp:i:32prompt for credentials on client:i:1span monitors:i:1use multimon:i:1remoteapplicationmode:i:1server port:i:3389allow font smoothing:i:1promptcredentialonce:i:1authentication level:i:2gatewayusagemethod:i:2gatewayprofileusagemethod:i:0gatewaycredentialssource:i:0full address:s:DEMO-TS02alternate shell:s:||msinfo32remoteapplicationprogram:s:||msinfo32gatewayhostname:s:remoteapplicationname:s:System Informationremoteapplicationcmdline:s:

RemoteApp program is available through Web Access

True

Restrict to specified domain users and domain groups

False

Page 20 of 22 XIA Configuration Server

Trial Version

Page 21: Terminal server

Paint

RemoteApp Application

Alias mspaint

Command-line arguments Do not allow command-line arguments

Icon File %windir%\system32\mspaint.exe

Name Paint

Path C:\Windows\system32\mspaint.exe

Vitrual Path %SYSTEMDRIVE%\Windows\system32\mspaint.exe

Path Exists True

RDP File Contents redirectclipboard:i:1redirectposdevices:i:0redirectprinters:i:1redirectcomports:i:1redirectsmartcards:i:1devicestoredirect:s:*drivestoredirect:s:*redirectdrives:i:1session bpp:i:32prompt for credentials on client:i:1span monitors:i:1use multimon:i:1remoteapplicationmode:i:1server port:i:3389allow font smoothing:i:1promptcredentialonce:i:1authentication level:i:2gatewayusagemethod:i:2gatewayprofileusagemethod:i:0gatewaycredentialssource:i:0full address:s:DEMO-TS02alternate shell:s:||mspaintremoteapplicationprogram:s:||mspaintgatewayhostname:s:remoteapplicationname:s:Paintremoteapplicationcmdline:s:

RemoteApp program is available through Web Access

True

Restrict to specified domain users and domain groups

False

Page 21 of 22 XIA Configuration Server

Trial Version

Page 22: Terminal server

WordPad

RemoteApp Application

Alias wordpad

Command-line arguments Do not allow command-line arguments

Icon File %ProgramFiles%\Windows NT\Accessories\wordpad.exe

Name WordPad

Path C:\Program Files\Windows NT\Accessories\wordpad.exe

Vitrual Path %SYSTEMDRIVE%\Program Files\Windows NT\Accessories\wordpad.exe

Path Exists True

RDP File Contents redirectclipboard:i:1redirectposdevices:i:0redirectprinters:i:1redirectcomports:i:1redirectsmartcards:i:1devicestoredirect:s:*drivestoredirect:s:*redirectdrives:i:1session bpp:i:32prompt for credentials on client:i:1span monitors:i:1use multimon:i:1remoteapplicationmode:i:1server port:i:3389allow font smoothing:i:1promptcredentialonce:i:1authentication level:i:2gatewayusagemethod:i:2gatewayprofileusagemethod:i:0gatewaycredentialssource:i:0full address:s:DEMO-TS02alternate shell:s:||wordpadremoteapplicationprogram:s:||wordpadgatewayhostname:s:remoteapplicationname:s:WordPadremoteapplicationcmdline:s:

RemoteApp program is available through Web Access

True

Restrict to specified domain users and domain groups

False

Page 22 of 22 XIA Configuration Server

Trial Version