- Individual Applications
Protect
Filter
Perform
Connect
Add-Ons
- Software Packages
- Complete Appliances
|
|
#1 (permalink) |
|
Untanglit
Join Date: Mar 2008
Posts: 27
![]() |
Sorry if this was posted someplace but I wasn't able to find anything that quited answered my question.
1 - As I understand it, I can use RAP to access my TS server behind my UT, by utilizing the RDP client, correct? 2 - If this is indeed possible, how the terminal server handle the connection as far as licening is concerned? Will a single TS Device CAL work for all users via the RAP as if all the connections are coming from the UT box? Or is the RDP connection routed transparently through the UT box, therefore requiring user TS cals for each user that has access to the RAP? Basically, I want my management team to be able to use RAP to access the terminal server instead of having to leave their computers on all the time to allow RDP access 24/7. Anyone with experience, any info would be greatly appreciated. Thanks, Ken. |
|
|
|
|
#2 (permalink) |
![]() ![]() Join Date: Jul 2008
Posts: 2,770
![]() |
no, the licensing requirements are not changed by remote access portal.
__________________
m. Big Frickin Disclaimer: While I'm pretty sure, I can't guarantee that I know what I'm doing. There might be a better way to do this, and this way might actually suck. Make sure you understand the implications of what you're doing before trying to follow these directions. It often helps troubleshooting if you have a good network map. Look here if you want my advice on how to draw one. Attention: Support and help on the Untangle Forums is provided by volunteers and community members like yourself. If you need Untangle support please call or email support@untangle.com |
|
|
|
|
#3 (permalink) |
![]() ![]() Join Date: Apr 2008
Location: Phoenix, AZ
URLs submitted: 8
Posts: 15,460
![]() |
I suggest you implement OpenVPN. If RDP is online for each of their desktops, you can easily create a VPN client for each user, and use the firewall to contain access to a reserved IP that is assigned to each workstation.
RWW would be ideal here as well, but that is only on SBS server. We should have a working TS gateway service in server 2010 but that is a ways off still.
__________________
Rob Sandling, BS:SWE, MCP Intouch Technology Phone: 480-272-9889 rob@intouchtechllc.com UntangleAppliances.com Phone: 866-794-8879 |
|
|
|
|
#4 (permalink) |
|
Untanglit
Join Date: Mar 2008
Posts: 27
![]() |
My problem with OpenVPN, is that it requires more inteligence on the users side of things. I will admit that the openVPN's pre-built config installer in UT works pretty well the times i have tested it, but it still requires the users to install another program and ultimately for me to field the calls when it doesn't work.
The SSL RAP portal allows us give simple, easy access to a desktop, while preventing the security risks that giving them traditional VPN access would open up. I couldn't dream of having to teach my "mostly computer illiterate" users about how to connect via openvpn. |
|
|
|
|
#5 (permalink) |
![]() ![]() Join Date: Apr 2008
Location: Phoenix, AZ
URLs submitted: 8
Posts: 15,460
![]() |
Yet they connect with RDP? I have zero complaints from my end users about a "right click connect" then "double click this icon". Then again, I always do the setup for them.
I think you need to look into Microsoft SBS 2008s RWW feature.
__________________
Rob Sandling, BS:SWE, MCP Intouch Technology Phone: 480-272-9889 rob@intouchtechllc.com UntangleAppliances.com Phone: 866-794-8879 |
|
|
|
|
#8 (permalink) |
![]() ![]() Join Date: Apr 2008
Location: Phoenix, AZ
URLs submitted: 8
Posts: 15,460
![]() |
No... RAP needs some major work in several areas.
And No to the RWW being there outside of SBS... it drives me nuts because that feature is EXACTLY what you asked for. I hate SBS server... but that one feature can only be found there. If you have 2008 servers take a look at the terminal server gateway feature, it may be able to do what you need as well.
__________________
Rob Sandling, BS:SWE, MCP Intouch Technology Phone: 480-272-9889 rob@intouchtechllc.com UntangleAppliances.com Phone: 866-794-8879 |
|
|
|
|
#10 (permalink) | |
![]() Join Date: Aug 2007
Posts: 1,394
![]() |
Quote:
If your users can work with RDP client, they can do the VPN. |
|
|
|
![]() |
| Thread Tools | |
|
|