• No results found

MCTS Guide to Microsoft Windows Server 2008 Applications Infrastructure Configuration (Exam # )

N/A
N/A
Protected

Academic year: 2021

Share "MCTS Guide to Microsoft Windows Server 2008 Applications Infrastructure Configuration (Exam # )"

Copied!
61
0
0

Loading.... (view fulltext now)

Full text

(1)

MCTS Guide to Microsoft

Windows Server 2008

Applications Infrastructure

Configuration (Exam # 70-643)

Chapter Four

Windows Server 2008 Remote Desktop

Services, Part 1

(2)

Objectives

• Describe the Remote Desktop Services capabilities in Windows Server 2008

• Explain the enhanced Remote Desktop Services capabilities in Windows Server 2008

• Describe the Remote Desktop Connection settings and Desktop Experience enhancements

• Publish remote applications

• Package Remote Desktop Services RemoteApp programs

(3)

Objectives (cont’d.)

• Explain the Remote Desktop Services Web Access capabilities and install RD Web Access

• Describe Remote Desktop Gateway functionality and install the RD Gateway role service

(4)

Remote Desktop Connection

• Remote Desktop Connection (RDC) client software – Used to connect a client computer to the Remote

Desktop Session Host

– Communicates through virtual channels that operate in user mode or kernel mode

• Virtual channel

– Communication path in the Remote Desktop Protocol (RDP)

• Network Level Authentication – Supported in RDP 6.0 and later

(5)

Activity 4-1: Display Remote Desktop

Connection Properties

• Click Start, point to All Programs, point to Accessories

– Click Remote Desktop Connection

– Remote Desktop Connection dialog box is displayed

• View available tabs and see which settings are available from each tab

• Close all open windows

(6)

Figure 4-1 Remote Desktop Connection

(7)

The Desktop Experience

• Microsoft Desktop Experience

– Improves user experience when using Remote Desktop Services

– Intended to look and feel like a Windows 7 desktop

• Remote Connection display enhancements – Enhanced display resolution

– Custom display resolutions – Monitor spanning

– Font smoothing

– Display data prioritization

(8)

Table 4-1 Display and monitor commands configured in RDC

Table 4-2 Display and monitor commands configured in mstsc.exe

(9)

Desktop Experience Enhancements

• User experience enhancement examples – Customizable desktop themes

– Desktop Composition feature – Windows Media Player

– Video for Windows – Windows SideShow – Disk Cleanup

– Sync Center

– Sound Recorder – Snipping Tool

(10)

Activity 4-2: Install Desktop

Experience

• Click Start, point to Administrative Tools, click Server Manager

• Right-click Features and select Add Features

• Add any features required for Desktop Experience – Check the box for Desktop Experience

• Click Next

• Click Install and then click Close

• Click Yes when prompted to restart

• After reboot, click Close in the Installation Results

(11)

Figure 4-2 Add Features Wizard

©Cengage Learning 2012

(12)

Device Redirection

• Enables a device to be connected to the local device but be accessible through the Remote Desktop Services session

• Common devices that need to be redirected – Plug and play devices

– Microsoft Point of Sale for .NET devices – Print devices

• Remote Desktop Easy Print

– Enables redirection of the default printer without having to match print drivers on client and server

(13)

Activity 4-3: Redirect Plug and Play

Devices

• Click Start, point to All Programs, point to

Accessories, click Remote Desktop Connection – Remote Desktop Connection dialog box opens

• Click Options

• Click the Local Resources tab

• Click More

• Expand Supported Plug and Play Devices

• Choose device to redirect

• Check the Devices that I plug in later box

• Click OK and close the RDC dialog box

(14)

Figure 4-3 Local Resources Tab

©Cengage Learning 2012

(15)

Figure 4-4

Local devices and resources

©Cengage Learning 2012

(16)

Authentication and Single Sign-On

• Single sign-on

– Enables a user to enter credentials once and have access to other systems and services

– User credentials are passed on to application or system being accessed

• Requirements for single sign-on

– Client system must be Windows Vista or higher – User rights or permissions must be adequate to

access the application or system

– Client and host server must be in the same domain

(17)

Activity 4-4: Set Remote Desktop

Session Host Server Authentication

• Click start, point to Administrative Tools, point to Remote Desktop Services

– Click Remote Desktop Session Host Configuration

• Right-click the name of the connection in the Connections section

– Click Properties

• Click the General tab

– Set the Security Layer value to Negotiate or SSL

• Click the Log on Settings tab

– Deselect Always prompt for password check box

(18)

Figure 4-5 Remote Desktop Session Host Configuration

©Cengage Learning 2012

(19)

Figure 4-6 RDP-Tcp Properties

©Cengage Learning 2012

(20)

Activity 4-4: Set Remote Desktop

Session Host Server Authentication

(cont’d.)

• Click OK

• Close all windows

(21)

Activity 4-5: Enable Single Sign-On

Capabilities

• Click Start, click Run, type gpedit.msc and press Enter to open the Local Group Policy Editor

• Expand Computer Configuration, Administrative Templates, Windows Components, Remote

Desktop Services, Remote Desktop Session Host, and Security

– Note the Group Policy settings that can be configured

• Close all open dialog boxes and the Local Group Policy Editor window

(22)

Figure 4-7 Local Group Policy Editor

(23)

Figure 4-8 Security settings

©Cengage Learning 2012

(24)

Remote Desktop Services Role

• Need to install this role to install and configure the Remote Desktop Services capabilities on a system

– Installed in similar manner as other roles

– Add Role Wizard walks you through the process

• Remote Desktop Services role services examples – RD Session Host

– RD Web Access – RD Licensing – RD Gateway

– RD Connection Broker

(25)

Activity 4-6: Install Remote Desktop

Services

• Click Start, point to Administrative Tools, click Server Manager

• Click Roles in the left pane, then click Add Roles in Roles Summary

• The Add Roles Wizard’s Before You Begin page displays

– Click Next

• Check the Remote Desktop Services box on the wizard’s Select Server Roles page

(26)

Figure 4-9 Server manager

(27)

Figure 4-10 Select Server Roles

©Cengage Learning 2012

(28)

Activity 4-6: Install Remote Desktop

Services (cont’d.)

• Click Next

• Click Next on the Remote Desktop Services page

• Check Remote Desktop Session Host on the Select Roles Services page

• Click Next

• The Uninstall and Reinstall Applications for Compatibility page displays

– Click Next

• Select the desired authentication method and click Next

(29)

Figure 4-11 Select Role Services

©Cengage Learning 2012

(30)

Figure 4-12 Specify Authentication Method for Remote Desktop Session Host

(31)

Activity 4-6: Install Remote Desktop

Services (cont’d.)

• Select the desired licensing mode and click Next

• Add the desired users or groups and click Next

• Select the desired functionality and options on the Configure Client Experience page

– Click Next

• Confirm that settings are correct

– Click Install, click Close, and click Yes to restart

– When server reboots, close the Installation Results window

(32)

Figure 4-13 Specify Licensing Mode

(33)

Activity 4-7: Change between Install

Mode and Execute Mode

• Click start, click Run, type cmd, click OK to open the command prompt

• To see help information about user modes, enter change user /?

• To change to Install mode, enter change user /install

• To change to Execute mode, enter change user /execute

• Close the command prompt

(34)

Figure 4-14 /install and /execute commands

©Cengage Learning 2012

(35)

Publishing Remote Applications

• RemoteApp

– New capability in Windows Server 2008

• Supported only by clients running RDC 6.1 or higher

– Enables publishing individual applications instead of having to publish the entire desktop

• Three types of profiles – Local

– Roaming – Mandatory

• RemoteApp Manager used to manage applications

(36)

Activity 4-8: Add to the RemoteApp

Programs List

• Click Start, point to Administrative Tools, click Server Manager

• Expand Roles, Remote Desktop Services, and click RemoteApp Manager (servername)

• Click Add RemoteApp Programs in Actions pane

• The RemoteApp Wizard opens – Click Next

• Select desired applications to add to the RemoteApp program list

• Click Next and click Finish

(37)

Figure 4-15 RemoteApp Manager

©Cengage Learning 2012

(38)

Figure 4-16 Choose programs to add to the RemoteApp Programs list

(39)

Packaging RemoteApp Programs

• Aspects of packaging RemoteApp programs – Defining location where package will be saved – Selecting Remote Desktop Session Host settings – Selecting Remote Desktop Gateway settings

– Selecting certificate settings

(40)

Activity 4-9: Package RemoteApp

Programs

• Open RemoteApp Manager

• Select application you want to create a package for and click Create Windows Installer Package

• The RemoteApp Wizard displays – Click Next

• Select the location to save the package – Modify settings

• Click Next

(41)

Figure 4-17 RemoteApp Manager

©Cengage Learning 2012

(42)

Figure 4-18 Specify Package Settings

©Cengage Learning 2012

(43)

Activity 4-9: Package RemoteApp

Programs (cont’d.)

• Select where shortcut icons will appear on the client computer

– Select Start menu folder

– Enter a folder name, such as Remote Programs

• Click Next and click Finish

(44)

Figure 4-19 Configure Distribution Package

(45)

Remote Desktop Web Access

• Can be used to distribute RemoteApp programs

• Installed as a server role on server users will connect to

• Client computers must have RDC 6.1 or higher

• Integrates with IIS to provide access to applications

• Applications are displayed as icons in Web browser

• When client clicks icon, RD Web Access server creates the RDP file

– Client can launch application from the server

(46)

Activity 4-10: Install Remote Desktop

Web Access

• Click Start, point to Administrative Tools, click Server Manager

• Click Remote Desktop services in Roles Summary – If role is not installed, need to install it first

• Click Add Role Services in the Role Services area

• Select the Remote Desktop Web Access check box

(47)

Figure 4-20 Select Role Services

©Cengage Learning 2012

(48)

Activity 4-10: Install Remote Desktop

Web Access (cont’d.)

• If required roles for Remote Desktop Web Access are not installed, you will be prompted to install them

– Click Add Required Role Services to install the required roles, if necessary

• Click Next

• If IIS needs to be installed, click Next on the

introduction page, click Next on the Role Services for IIS page, then click Install

• Click Close

(49)

Figure 4-21 Add Role Services

©Cengage Learning 2012

(50)

Figure 4-22 Installation Results

(51)

Remote Desktop Gateway

• Establishes an HTTPS connection

• Encapsulates RDP traffic with SSL encryption

• Creates a secure connection for remote access – Users do not have to create VPN connection

• Remote users can connect to internal resources

behind the firewall and network address translators

• Used for secure access to RemoteApps through RD Web Access

• Can be implemented with an ISA server or other VPN solution for added security

(52)

Activity 4-11: Install Remote Desktop

Gateway Role Service

• Click Start, point to Administrative Tools, click Server Manager

• Click Remote Desktop Services in Roles Summary

• Click Add Role Services in the Role Services area

• Select the Remote Desktop Gateway check box

• Click Next

• Click Add Required Roles Services

• Click Next

(53)

Figure 4-23 Add Role Services

©Cengage Learning 2012

(54)

Activity 4-11: Install Remote Desktop

Gateway Role Service (cont’d.)

• Select the desired SSL encryption

• Click Next

• The Create Authorization Policies for RD Gateway page displays

– Click Next

• Click Add and select the groups that can connect through the Remote Desktop Gateway

– Click Next

• Select desired options on the Create an RD Cap for RD Gateway page

(55)

Figure 4-24 Choose a Server Authentication Certificate for SSL Encryption

(56)

Figure 4-25 Create Authorization Policies for RD Gateway

(57)

Activity 4-11: Install Remote Desktop

Gateway Role Service (cont’d.)

• Select desired options on the Create an RD RAP for RD Gateway page, and click Next

• Click Next on the Network Policy and Access Services page

• Confirm that the Network Policy Server role is selected and click Next

• Click Next on The Web Server (IIS) page

• Change or accept the default roles and click Next

• Review installation selections, click Install, and click Close when installation completes

(58)

Figure 4-26 Confirm Installation Selections

(59)

RD CAPs and RD RAPs

• Remote Desktop Connection Authorization Policies (RD Caps)

– Enable specifying which users can connect to the RD Gateway server

– Specify requirements users must meet to connect

• Remote Desktop Resource Authorization Policies (RD Raps)

– Enable specifying network resources that users can connect to

• Will be covered in more detail in Chapter 5

(60)

Summary

• Remote Desktop Services allows users to remotely access another system and programs on the

remote system

• Remote Desktop Connection (RDC) client software is used to connect

• Windows Desktop Experience improves user feel and experience when using an RDC

• Device redirection enables a locally connected

device to be accessible through a Remote Desktop Services session

(61)

Summary (cont’d.)

• Single sign-on enables users to enter credentials once and access other systems and services

• RemoteApp enables you to publish individual

applications instead of having to publish the entire desktop

• Remote Desktop Web Access can be used to distribute RemoteApp programs

• Remote Desktop Gateway can provide security and encryption when remote users access the server

References

Related documents

Remote Desktop Services is a component of Microsoft Windows Server 2008 R2 and Windows Server 2012 that lets you remotely access applications installed on a Windows Server 2008 R2 or

To do this, go to Windows Server Manager > Roles > Remote Desktop Services > RD Session Host Configuration: “Host Name” and Double click on Remote Desktop Licensing

One of the new features started with Windows Server 2008 is the Remote Desktop Gateway which allows Remote Desktop clients to establish a RDP connection trough HTTPS with the

Remote Desktop uses Windows RDP (Remote Desktop Protocol) and can only be used to access Host PCs running Windows Server 2003/2008, XP Professional,

Remote Desktop Virtualization Host Remote Desktop Web Access Remote Desktop Connection Broker Remote Desktop Session Host RemoteApp Remote Desktop Services V V V V Virtual

Horizon 7 provides a single platform for delivering hosted Windows applications and shared desktop sessions from Windows Server instances using Microsoft Remote Desktop

The remote desktop window will open on your client computer, and you will see the desktop settings, fi les, and programs of your host computer.. Using remote desktop to control

The network contains a Remote Desktop Session Host Server that runs Windows Server 2008 R2, and client computers that run Windows 7.. All computers are members of