Hoe to redirect RD gatway to RD web access Server

Hi
i have already one W2008 server with All RD services but not RD gatway. i have just installed RD GW on W2012. i opend the 443 port on Firewall and i can connect from externl to it.
the question now : how to set the RD GW to rediret any request from client to the Web acces installed on the other server ?
Many thanks for Help

Hi,
Thank you for your comment.
RD Web Access server needs to communicate with your RDSH server to retrieve the list of RemoteApp program. RDWeb server computer account needs to be a member of the local RD Web Access Computer group on your RDSH server. The client PC also needs to trust the
certificates it receives from RDWeb, RD Gateway, RDSH, etc. In RemoteApp Manager on your RDSH server please configure the FQDN of your RD Gateway server.
You can check below link, which might get useful for your case.
Windows Server 2012: Manage your RDS with RDMS
http://technet.microsoft.com/en-us/magazine/dn235779.aspx
Configure the RD Web Access Server for RemoteApp and Desktop Connection
http://technet.microsoft.com/en-us/library/dd759250.aspx
Configuring RD web access for public/external access
http://social.technet.microsoft.com/Forums/windowsserver/en-US/4396d3e9-2ac5-4d0b-baba-25471498a349/configuring-rd-web-access-for-publicexternal-access?forum=winserverTS
Hope it helps! 
Thanks,
Dharmesh

Similar Messages

  • How do I change the URL to the Remote Web Access server in Windows Server 2012?

    Hallo!
    I have set up a Remote Dexktop Service using the "Quick" deployment method in Server Manager and everything is working greate internally, but I cannot start an app published in Remote Web Access from outside our network.
    The problem is that it wants to start the using the internal URL, for example, server.domain.local, instead of the external one, for example remote.server.com.
    I therefore want to know how I can change the default URL for the Remote Web Access server and all the Remote Web Apps in Windows Server 2012?
    I have allready looked in Server Manager and I can change some of the deployment settings in server manager, but there is no way to alter the URL of the Remote Web Access server. See below images:
    Pressing the internal URL only results in opening the internal URL.
    This was very simple to do in Windows Server 2008 R2 using the tsconfig tool, but it does not seam to be any way of solving this in server manager.
    A possible sollution would be to alter the registry someware in HKLM->Software->Microsoft->Windows NT->Terminal Services. But this can easaly lead to problems due to wrong format, etc. and is probably not supported.
    Is there a simpler and supported way?

    That option can be used to connect to any machine that you want.  The error message indicates that the client machine cannot resolve the name "server.domain.local" to an IP address that it can connect to.
    You have several options for configuring that tab on the RDweb site.  You can even remove it entirely. 
    Customization of RD Web Site
    RD Web provides a number of customization options for the RD Web interface, including the ability to control default Gateway server settings and redirection settings. These settings
    are controlled by editing the web.config file located in %SYSTEMROOT%\Web\RDWeb\Pages.
    Displaying Local Help
    To display local help for users instead of the web-based help, edit the LocalHelp value and change the value from false to true.
    <!-- LocalHelp: Displays local help for users, instead of the web-based help. Value must be "true" or "false" -->
    <add key="LocalHelp" value="false" />
    When this value is changed, a user that clicks on Help in the upper right corner of the RD Web login page will open the local help file instead of web-based help.
    Hiding the Connect to a Remote PC Tab
    The RDWeb page
    Connect to a Remote PC tab can be hidden from users to prevent connections to any servers through RD Web other than the servers configured in a collection. By default, this setting is set to true and the
    Remote Desktops tab is displayed. To hide the tab, set the value to false.
    <!-- ShowDesktops: Displays or hides the Remote Desktops tab. Value must be "true" or "false" -->
    <add key="ShowDesktops" value="true" />
    When the value is set to false, a user will not see the Connect to a Remote PC tab when logged on to the RD Web page
    RD Gateway Settings
    If the Connect to a Remote PC tab is enabled, an administrator can configure RD Web to use a Gateway server when connecting to remote computers. To specify a gateway, edit the below
    value with the name of the RD Gateway server:
    <!-- DefaultTSGateway: Admin can preset this to a given Gateway name, or set to "" for no gateway. -->
    <add key="DefaultTSGateway" value="" />
    The default authentication method for the RD Gateway server can also be configured by editing the following section of the web.config:
    <!-- GatewayCredentialsSource: TS Gateway Authentication Type.
    Admins can preset this.
    0 = User Password
    1 = Smartcard
    4 = "Ask me later"
    -->
    <add key="GatewayCredentialsSource" value="0" />
    Devices and Resources
    By default, only Printers and Clipboard are redirected on connections made using the Connect to a Remote PC tab. If the user clicks the
    Options << button, the redirection settings for a specific connection can be modified
    To configure each specified redirection option to be enabled or disabled by default, edit the following section in the web.config file:
    <!-- Devices and resources: Preset the Checkbox values to either true or false -->
    <add key="xPrinterRedirection" value="true" />
    <add key="xClipboard" value="true" />
    <add key="xDriveRedirection" value="false" />
    <add key="xPnPRedirection" value="false" />
    <add key="xPortRedirection" value="false" />
    LAN Experience Defaults
    Windows Server 2012 RD Web Access can display a new user selectable option for optimizing the connection for a LAN experience. This option is displayed at the bottom of the RD Web
    page and can be controlled by the administrator using the following section of the web.config file:
    <!--  Checkbox to opt for optimized LAN experience -->
    <add key="ShowOptimizeExperience" value="false" />
    <add key="OptimizeExperienceState" value="false" />
    This value is set to false by default, but when changed to true, the following checkbox will display at the bottom of the webpage. The LAN experience
    checkbox can also be set as enabled by default.
    Each setting can also be modified using the IIS Manager user interface:
    Don Geddes - SR Support Escalation Engineer - Remote Desktop Services - Printing and Imaging

  • Outlook Web Access Server

    Can someone please help me? I am able to receive mail, but cannot send mail out. We have an Outlook Web Access Server and I have entered the address. I know this address is functional since I can access it via the web.
    Do I have to enter a smtp server? I tried to choose "none," but once I quit and relaunch the program, the smtp goes back to my previous smtp server.

    Never mind! I selected "Exchange IMAP" in error, making the field entitled, "Outlook Web Access Server" required. I should have selected "IMAP", not "Exchange IMAP". 
    Thanks for all you who took the time to read this question.
    If the administrator reads this, feel free to remove my question.
    Thank you.
    Paul Slapikas

  • OWA (outlook web access) server character limit

    Hi,
    When I try to add the server for my OWA account on the BIS account, it truncates the last portion, as it seems the server name is too long. Does anyone know what the character limit is set to (seems to only allow about 72 characters), or if BB has any plans on increasing this limit any time soon?
    Thank you,
    Ken

    Hi and Welcome to the Forums!
    While I don't know the specific answer to your question, I can offer a potential workaround...
    If you have been trying to configure using the device interface to BIS (Setup > Email Settings), then you might try (from a PC/browser) your carriers web interface to BIS. You can find it here:
    http://www.blackberryfaq.com/index.php/Where_can_I_log_into_my_BIS_account%3F
    And FWIW here is the OWA configuration KB:
    KB03133 How to integrate a Microsoft Outlook Web Access email address with a BlackBerry Internet Service account
    Best!
    Occam's Razor nearly always applies when troubleshooting technology issues!
    If anyone has been helpful to you, please show your appreciation by clicking the button inside of their post. Please click here and read, along with the threads to which it links, for helpful information to guide you as you proceed. I always recommend that you treat your BlackBerry like any other computing device, including using a regular backup schedule...click here for an article with instructions.
    Join our BBM Channels
    BSCF General Channel
    PIN: C0001B7B4   Display/Scan Bar Code
    Knowledge Base Updates
    PIN: C0005A9AA   Display/Scan Bar Code

  • Lync 2013-Office Web Access Server-IPAD

    I have configured a Office Web App server onto a Windows Server 2012.  I was able to upload a PowerPoint from a Lync 2013 client both internally and externally.  When I test external access to that PowerPoint from an IPAD using the 2013 clinet,
    I am not able to see the PowerPoint.  If I VPN into the network from the IPAD it works.  There seems to be a problem with my AAR but, like I said my Lync 2013 client works fine though AAR.  I can browse to the external url http:\\externalurl\hosting\discovery
    and I can see the XML page.  I have confirmed that I can ping the internal name on the AAR.
    I am using the following pattern us/|^hosting/|^m/|^o/|^oh/|^op/|^p/|^we/|^wv/|^x/).*) in my AAR
    Any help would be appreciated.

    Are you able to access the PowerPoint externally using the desktop Lync client?
    If not, check that you are able to access your Web Conferencing ports on your Edge infrastructure. (usually TCP 443 on the webconf.domain.com (or whatever you called it) on the Edge server or TCP 444 if you have only a single IP on your Edge)
    The test you've done, shows that you are able to connect to your Office WAC. But if you can't connect to webconf service, this can cause this type of issue - and it's not obvious.
    If this helped you please click "Vote As Helpful" if it answered your question please click "Mark As Answer" | Blog
    www.lynced.com.au | Twitter
    @imlynced

  • RD Web access SSO - remote desktop doesn't work

    Hi,
    This is my first post in here, and I hope you gays can help me out.
    I am currently experiencing some issues with RD Web SSO not working as I would like it to work.  I have found countless articles and guides describing how to get it to work, but no guide have yet helped me.
    The problem is that when I log in on the web access and open a published application everything works fine I wait 5 sec and the application pups up, but when I try to open "Remote Desktop" then I get a new log in box where I must enter my log in credentials
    again (after entering my credentials everything work great.)
    The problems I am currently facing is produced in a demo environment configured as follows:
    1x DC server (DC01) also the lic server
    2x RDS server (RDS01/02)
    1x RDS Connection broker (RDCM01)   I have created a farm named "farm01.mydomain.com"
    1x RDS Web access server (RDWA01)
    1x RDS Gateway (RDSGW01)
    (All the Servers are installed with Windows server 2008 (R2) SP1, and have the latest update.)
    I am publishing my demo environment on the internet, i have created a domain name for my gateway and my web access and they are both accessible from the web (rdwa.mydomain.com and rdsgw.mydomaim,com). I also have secured everything with an SSL wildcard certificate
    ( my external and intern domain names are the same so I am using one SSl certificate) that is trusted on the web.
    when I  log in on the web access server trough (IE9 or IE8 ) from another network(wan) and I open a published application (calculator), it pop ups in just a few seconds. But when I try to open my Remote desktop I get a login box where I must enter my
    username and password one more time.. after that remote desktop opens and everything works great.
    My laptop is a Windows 7 professional with RDP 7 and IE 9, and is not member of a domain (just a workstation), I have tested it from multiple workstations and networks(Also win 7 and RDP7) but even there I have the same problem.
    Thinks that I have tried tell now:
    I have created a kerberos account as mentioned on
    MSDN
    I have checked my group permissions as mentioned
    here
    And many more blogs and forums
    I have tried multiple settings on RDCM, RDWA, RDSGW and RDS server
    Right now I am out of ideas, and I hope you gays can help me out..
    thanks in advance,
    Pouyan

    Thnx for you advise,
    Did you go into your RemoteApp Deployment settings and change the server name to the farm name "farm01.mydomain.com?"
    Yes
    Also in the Session Broker's RemoteApp and Desktop Connection Properties window change the Connection ID to the farm name as well.
    actually I couldn't find out what to put on the connection ID so I had left it just default, but after changing it to the farm name it still doesn't work
    Did you sign you apps with the cert used on your RDS servers?
    yes, I am using a wildcard ssl certificate to sign all the servers/apps with.
    there is
    something that
    strikes me, when I log on the web access and click on a published application (that is hosted from the same RDS servers) then I get a information box. when I click on the "details" button I see on the bottom "use the following credentials to connect" and my
    domain and username are published there. But when I click on the "Remote desktop" icon and do the same I can't see this information!!
    Also I don't think that its an SSL problem, because after log in again it works perfect without any warning.

  • RD Web Access SSO not working correctly

    I have two Win 2008 r2 sp1 servers.  Both are RD Session host servers.  One of them is also serving as a RD Gateway server AND RD Web access server.  Most everything is working well and as planned.  However, I am having an issue with
    the the RD Web Access.
    In the RD Web access server configuration page, I've set "One or more RemoteApp sources" and I've added two servers there, separated by a semicolon (eg RDServer1;RDServer2), and as expected a long list of RemoteApps hosted on both servers is shown .  The
    issue is that whatever server is listed second (eg RDServer2) won't allow sso to work right  -- when I click a link for a RemoteApp hosted on RDServer1 I am not prompted again for login credentials.  However, when clicking a link for a RemoteApp
    hosted on RDServer2 I am prompted "Enter Your Credentials".  I've tried swapping the order of the "Source Name" servers, and after a reboot indeed links to the RemoteApps hosted on that second server now prompt for me to "Enter your credentials".
    Things I've tried:
    1. Trying various server name formats (IP address, NetBIOS name, FQDN, and more) to no apparent effect.
    2. Applied the hotfix from KB2524668 to both servers.
    3. Flushed the IE caches for the client machines.
    4.  Tried various AD login accounts
    5. Ensuring that the RD Web Access server is added to the local group "TS Web Access Computers" on both servers.
     This is one step that I'm not 100% sure of -- it is clear to me that the RD Session host server that doesn't contain RD Web access should be there, but I'm not totally clear as to whether the dual-duty RD Web server/RD Session host should have this setting.
     I've tried it both ways, but it doesn't seem to make a difference.
    I'm stumped.

    Kevin,
    That's it!  I have a separate SSL cert for each RD Session Host, and used the corresponding certs to sign RemoteApps for each.  I still don't see this requirement in the documentation (although they do mention exporting self-signed certs, but that
    is due to the fact that they are self-signed and not automatically trusted by client machines), but maybe I'm just blind.
    Regardless, the fix to my problem was to export the cert from my RDServer1, import it to RDServer2, then set RDServer2 to use that cert to sign the RemoteApp connections.
    Thanks for your assistance, I was really stuck.
    Chris

  • RD web access 3 passwords to connect

    I am setting up a new remote desktop access gateway to allow users to connect to their local desktops. I have it working but it requires 3 logins to connect. 1 for the web access, 2. for the RD gateway and then to the PC. Is there a way to streamline that
    down to one or two password prompts?
    -Ben

    Hi Ben,
    Thank you for posting in Windows Server Forum.
    Initially suggest you to update RDP 8.1 which will work better for this scenario.
    Yes, there is a way to reduce the number of password prompt, here you need to enable RD Web Access Single Sign-On (SSO), where the password will be saved and need to enter the credential for single time. 
    There are certain requirements for this feature, as follow.
    • To take advantage of the new Web SSO feature, the client must be running Remote Desktop Connection (RDC) 7.0. 
    • In order for Web SSO to work:
    1. The connection in RemoteApp and Desktop Connections must have an ID. By default, it is set to the Fully Qualified Domain Name (FQDN) of the RD Connection Broker server in case of RD Connection Broker mode. In RD Session mode, it is set to the FQDN of the
    RD Web Access server.
    2. RemoteApp programs must be digitally signed using a Server Authentication certificate [Secure Sockets Layer (SSL) certificate]. The certificate Enhanced Key Usage section must contain ‘Server Authentication (1.3.6.1.5.5.7.3.1)’. More details about the types
    of certificates used to digitally sign RemoteApp programs can be found here.
    3. Client operating systems must trust the certificate with which the RemoteApp programs are signed.
    More information.
    Introducing Web Single Sign-On for RemoteApp and Desktop Connections
    http://blogs.msdn.com/b/rds/archive/2009/08/11/introducing-web-single-sign-on-for-remoteapp-and-desktop-connections.aspx
    Remote Desktop Web Access single sign-on now easier to enable in Windows Server 2012
    http://blogs.msdn.com/b/rds/archive/2012/06/25/remote-desktop-web-access-single-sign-on-now-easier-to-enable-in-windows-server-2012.aspx
    Hope it helps!
    Thanks.
    Dharmesh Solanki
    TechNet Community Support

  • 2012 R2 Web Access Logon

    Just trying to get a definitive answer to the age old question of can we remove the initial user logon requirements when accessing the RD Web Access server in a 2012 R2 RDS deployment?
    I was under the impression that the Single Sign-On only removes the logon prompts when users try to access a RemoteApp or Session Host once they've logged on to the Web Access server?
    Is there a way to use the current users credentials (they're all connecting from domain joined windows 7 or 8 machines) to logon to the RD Web Access site?
    Cheers for now
    Russell

    Hi,
    AFAIK you can only to single sign on when using published applications, not to the actual login page on remote desktop web services. 
    You may be able to look at changing some of the authentication options in IIS and making sure the website is in the local intranet site to see if you can pass through the creds. 
    Thanks
    Regards,
    Denis Cooper
    MCITP EA - MCT
    Help keep the forums tidy, if this has helped please mark it as an answer
    Blog: http://www.windows-support.co.uk 
    Twitter:   LinkedIn:

  • Windows 2008 R2 + Remote Desktop Web Access + Single Sign-On + 2 servers

    Hi
    First sorry for my English. I have got problem with run SSO with RDWeb. I configured everything follow this instructions:  http://blogs.msdn.com/b/rds/archive/2009/08/11/introducing-web-single-sign-on-for-remoteapp-and-desktop-connections.aspx
    and http://blogs.technet.com/b/mrsnrub/archive/2010/03/22/remote-desktop-services-websso.aspx. After logon to RDWeb web page I click application icon. Then I see dialog box for credentials - SSO not working.
    I have got 2 servers with Windows Server 2008 R2 Standard:
    Server OL-AP1 with role Remote Desktop Session Host (RDSH) and certificate for digital sign RemoteApps
    Server OL-AP04 with ONLY Remote Desktop Web Access (RD Web) with certificate for https
    Client PC: Windows 7 SP1 with installing certificate for OL-AP01 witch I used for digital sign RemoteApps
    All certificates created by enterprise domain CA - Active Directory Certificate Services (AD CS)

    Hi,
    Thank you for posting in Windows Server Forum.
    Do you have RD Gateway setup in your environment?
    Have you configure RD Connection Broker and set the Fully Qualified Domain Name (FQDN) of the RD Connection Broker server in case of RD Connection Broker mode. In RD Session mode, it is set to the FQDN of the RD Web Access server. 
    Client operating systems must trust the certificate with which the RemoteApp programs are signed. Suggest to install RDP 8.1 for client OS.
    Do you have a trusted certificate with a matching name configured on your RDSH server in RD Session Host Configuration? (Means cert must match the name that clients use to connect to it for running the RemoteApp).
    Hope it helps!
    Thanks.
    Dharmesh Solanki

  • What ports to open between Connection broker and Web access hosts

    I have setup a 4 node 2008 R2 RDS farm (1 connection broker, 1 Web access, and 2 session hosts.) They were all built from the same image, but the web access and connection broker will not talk to each other. They are all on the same subnet, and ips are x.x.x.200-203 The Web access server can ping the Sesions hosts, the session hosts can ping each other, web access and the connection broker. But the Web access and Connection broker cant ping each other. I turned off the windows firewall and they can ping, and connect... So whats ports does it need open?
     Thanks!
    ~M

    Hello,
    Do you need any further helps? Please let us know it. Thanks.
    ·        Lionel Chen
    TechNet Subscriber Support in forum
    If you have any feedback on our support, please [email protected]
    This posting is provided "AS IS" with no warranties, and confers no rights.

  • Remote Desktop Web Access Administration not in menu

    I am trying to figure out why RemoteApp is working and Remote Desktop connection isn't on my very simple installation. One thing I came across is that something seems to be missing from my Remote Desktop Services menu. According to the TechNet article at https://technet.microsoft.com/en-us/library/ee891009(WS.10).aspx
    if I should be able to access RD Web administration by following these instructions: 
    On the RD Web Access server, click Start, point to Administrative Tools, point to Remote Desktop Services, and then click Remote Desktop Web Access Administration.
    But when I go there I find that there is no Remote Desktop Web Access Administration. Any ideas on why it doesn't exist?

    Yes, that's the OS I'm using. Those settings are set properly as far as I know. Since this is all on one server, the DC (very small office that can't justify second server), I'm not using an RD Connection Broker so it's set to the RemoteApp sources and
    the Source name is the internal FQDN of the server. servername.domain.local. The weird thing is that when I log in via RD Web the RemoteApps Programs tab has a Remote Desktop icon that successfully connects me to the server but the Remote Desktop tab always
    fails, telling me it can't connect to the computer.

  • Web access how to stream to android and ipad`s

    Hello.
    At the moment I can log into my web access server from another pc and click on media files and be able to watch a film by streaming.
    I am unable to do this on my android or ipad is there a step by step guide on how to get this to work?
    I am new to owning a server 2012r2 so be gentle.
    Thank you.

    While PowerShell Web Access (PSWA) does require authorization rules to function, these rules do not specify what cmdlets can be used in a PSRemoting session. The PSWA authorization rules define what user, or group of users, can remotely connect to what computer,
    or group of computers, through the PSWA gateway (the PSWA server).
    What you need to research are session configurations and/or endpoints. These are separate from PSWA, but can be used in conjunction with PSWA (PSWA website > Optional connection settings > Configuration >
    NameOfConfiguration), just as they can in a standard console-based PSRemoting session (Enter-PSSession -ComputerName
    server01 -Configuration NameOfConfiguration -or- Invoke-Command -ComputerName
    server01 -Configuration NameOfConfiguration).
    Start your research with New-PSSessionConfigurationFile and then Register- and Unregister-PSSessionConfiguration. These have been great for our environment, allowing non-admin users access to run very specific cmdlets as an admin, without being an admin
    on the computer.

  • RD Web Access From The Internet/External

    I’m requesting help with accessing from the internet (external web) a RD Web Access Connection (SSL) that I setup and configured on a Windows 2008 R2 Server.
    My setup is as follows. All server rolls are configured and running on one Windows 2008 R2 Server (VM).
    1.      
    Remote Desktop Services
    a.      
    RemoteApp Manager
    b.     
    Remote Desktop Connection Manager
    c.      
    RD Gateway Manager
    d.     
    RD Session Host Configuration
    e.     
    Remote Desktop Service Manager
    f.       
    Remote Desktop Licensing
    2.      
    Web Server (IIS)
    All my configurations are working perfectly internal/intranet. I can access all published applications and remote desktop connectivity via (SSL) from IE 9 web browser.
    The URL that is used internally is: (https://ServerName/RDWEB).
    When I attempt to connect via the internet I’m getting an “Internet Explorer cannot display the webpage” message.
    I’m using Dynamic DNS to access the server hosting the (IIS Remote Access Web Page URL), example (https://DDNS/RDWEB). I’ve opened ports 443 & 80
    on my Untangle firewall, also port forwarding for 3389.
    Any and all help will be appreciated.

    Freek,
    Thank you for your response. I tested Telnet as you suggested, and both FQDN and IP address were able to establish a Telnet connection to my RD Web Access Server.
    The “NSLOOKUP” resolved the DNS server name. Also, I am able to us the IP address, URL (https://IP/REWEB) in IE9 to browse to my RD Web Access Server site. The above should confirm DNS IS working correctly within my internal network.
    My connection issue is from external/internet access to my RD Web Access Server site. All my networked devices (internal) are natted IP assigned behind an “Untangle
    Gateway” firewall and routable internally only.
    Although, I’ve opened ports, created firewall rules to pass traffic on ports 443, 3389 my problem still exist. Since my internal natted devices are not routable
    from the internet, I am using a DDNS host URL from (www.dyndns.org) to route from the internet to my internal site server. As it stands now, I suspect the problem maybe at the Untangle Gateway”. I will focus my attention there.
    Thank you again for your help.
    Aubrey R. Martin

  • Outlook Web Access + Mail.app?

    I'm setting up a friend (a new Mac user) with some applications, and he wants to use Mail in Tiger to check his school email account. His university uses Outlook Web Access for student accounts. Any way I can get Mail to work with his account?
    iSMH

    This sounds like an Exchange type account and if so, an Exchange account with the Mail.app allows you to connect to your Exchange server via IMAP, and if you enter text in the Outlook Web Access Server field, Mail filters non-email related content from the server. (You can get the text you need to enter from your mail account provider.)
    For Exchange to work with Mail, Exchange administrators need to configure the Exchange server for IMAP access. Some system administrators may refer to an Outlook Web Access Server as an Internet Information Services (IIS) server.

Maybe you are looking for