Installing a SSL certificate for RDP access to a Windows 2008 R2 & Windows 2012 R2 server


we have several servers (windows 2008 r2 & windows 2012 r2) ran pci vulnerability scans against. failed "ssl certificate - signature verification failed vulnerability" test , recommended solution install server certificate trusted third party ca (certificate authority). 

i'm having problems finding documentation on how generate certificate request file on windows 2012 r2 , how implement certificate ca.

can either provide me instructions or link walks through process? have installed certificates sorts of systems appliances, exchange owa systems, , iis/apache systems have not been able find how windows server rdp sessions.

thanks in advance info,

dan


hi,

yeah if using rd web access , other rds roles it’s have certificate trusted authority either 3rd party ca. 
basic requirements remote desktop certificates:
1. certificate installed computer’s “personal” certificate store. 
2. certificate has corresponding private key. 
3. "enhanced key usage" extension has value of either "server authentication" or "remote desktop authentication" (1.3.6.1.4.1.311.54.1.2). certificates no "enhanced key usage" extension can used well. 

more information.
certificate requirements windows 2008 r2 , windows 2012 remote desktop services
http://blogs.technet.com/b/askperf/archive/2014/01/24/certificate-requirements-for-windows-2008-r2-and-windows-2012-remote-desktop-services.aspx

hope helps!

thanks.

dharmesh solanki

please remember mark replies answers if , unmark them if provide no help. if have feedback technet support, contact tnmff@microsoft.com.



Windows Server  >  Remote Desktop Services (Terminal Services)



Comments

Popular posts from this blog

CRL Revocation always failed

Failed to query the results of bpa xpath

RDS 2012 r2 collections show black screen and then close