Remote Desktop, encryption?

  • Thread starter Thread starter Yura Goncharuk
  • Start date Start date
Y

Yura Goncharuk

When I connect via Remote Desktop to a Windows XP machine, what kind of
encryption is used and where can I find documentation on this?

128 bit RC4 - it is enough safe
 
When I connect via Remote Desktop to a Windows XP machine, what kind of
encryption is used and where can I find documentation on this?

Olav
 
The reference below states:

"Beginning with Windows 2000, administrators can choose to encrypt data
using a 56- or 128-bit key."

I can't find any administrative GUI to control encryption when connecting TO
a Windows XP machine. I know how to do this on a Windows Server 2003
machine, but not for connections to the Windows XP desktop.

Can anyone clarify?

Olav
 
Hey Olav,

Thanks for your posting here.

By default, Windows XP Remote Desktop use high (128-bit) encryption to
encrypt most data transmissions in both the client-to-server direction and
the server-to-client direction.

For more information, you may take a look at the following article:

275727 High Encryption on a Remote Desktop or Terminal Services Session Does
http://support.microsoft.com/?id=275727

Hope this helps! If anything is unclear or you need further help, just post
back to let me know. Have a nice day!

Thanks & Regards
Alan Sun
Microsoft Online Partner Support

Get Secure! - www.microsoft.com/security
=====================================================
When responding to posts, please "Reply to Group" via your newsreader so
that others may learn and benefit from your issue.
=====================================================

This posting is provided "AS IS" with no warranties, and confers no rights.



--------------------
---- From: "Olav Tollefsen" <[email protected]>
---- References: <[email protected]>
<[email protected]>
---- Subject: Re: Remote Desktop, encryption?
---- Date: Tue, 28 Sep 2004 07:40:42 +0200
---- Lines: 33
---- X-Priority: 3
---- X-MSMail-Priority: Normal
---- X-Newsreader: Microsoft Outlook Express 6.00.2900.2180
---- X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2900.2180
---- X-RFC2646: Format=Flowed; Response
---- Message-ID: <[email protected]>
---- Newsgroups: microsoft.public.windowsxp.work_remotely
---- NNTP-Posting-Host: 162.80-203-241.nextgentel.com 80.203.241.162
---- Path: cpmsftngxa06.phx.gbl!TK2MSFTNGP08.phx.gbl!TK2MSFTNGP12.phx.gbl
---- Xref: cpmsftngxa06.phx.gbl
microsoft.public.windowsxp.work_remotely:43154
---- X-Tomcat-NG: microsoft.public.windowsxp.work_remotely
----
---- The reference below states:
----
---- "Beginning with Windows 2000, administrators can choose to encrypt
data
---- using a 56- or 128-bit key."
----
---- I can't find any administrative GUI to control encryption when
connecting TO
---- a Windows XP machine. I know how to do this on a Windows Server 2003
---- machine, but not for connections to the Windows XP desktop.
----
---- Can anyone clarify?
----
---- Olav
----
---- ---- > RC4, 128 bit keystrength.
---- >
---- >
http://msdn.microsoft.com/library/default.asp?url=/library/en-us/termserv/te
rmserv/remote_desktop_protocol.asp
---- >
---- > is an older reference.
---- >
---- >
---- > ---- >> When I connect via Remote Desktop to a Windows XP machine, what
kind of
---- >> encryption is used and where can I find documentation on this?
---- >>
---- >> Olav
---- >>
---- >
---- >
 
Thanks - that's a very useful reference, and gives some additional
information about why a VPN connection adds to the security of Remote
Desktop.
 
Here's a reference that a great many folks in this group will find
enlightening:

http://www.microsoft.com/resources/...serv/2003/all/techref/en-us/W2K3TR_ts_how.asp

It is oriented towards Windows Server 2003, which is a more complex case of
Terminal Services implementation, but the greater part of it is just as
relevant to XP.

I'm not coming up immediately with the reference you need about what
controls encryption levels in the XP client. Part of this relates to server
settings--if the server is set to require high (128) bit key strength, then
the client can't contravene that and connect successfullly. There are
client settings controlled by Group Policy however, and those settings
should be found in this document, for XP Service Pack 2.

http://www.microsoft.com/downloads/...2f-da15-438d-8e48-45915cd2bc14&displaylang=en
 
Back
Top