Server PCI: RDP Network Level Authentication / Encryption
ENFORCING NETWORK LEVEL AUTHENTICATION & HIGH ENCRYPTION LEVEL / WINDOWS
Requirements for connections after enabling:
Client must have RDP version greater than 6.0 and Windows Vista+
Server Windows 2008+
Note: MS don''t recommend using FIPS - See
https://blogs.technet.microsoft.com/sec ... e-anymore/
Instructions
1. Go To Control Panel/System and Security/Administrative Tools/Remote Desktop Serverice
2. Open ''remote Desktop Session Host Configuration''
3. Under ''connections'' right click and go to properties.
4. Check ''allow connections only from computers running Remote Desktop with NLA'' (under General)
5. Now change encryption level to ''High'' (https://blogs.technet.microsoft.com/sec ... e-anymore/)
6. If server has SSL certificate - select it and use that instead of the self signed (auto generated) cert.
7. Hit OK to save
CE
