Remote Desktop Connection With Custom Certificate on Windows 8.1 fails

I'm trying to establish a secured remote desktop connection without success.
The setting
There are some local pcs with windows 8.1 Pro and windows 7 Pro, no server-edition. I've created a self signed ca-certificate with openssl for Windows. I used this to sign custom certs for the local windows-pcs, which are installed at mmc -> certificate
snap-in for local computer -> My Certificates -> Certificates. The networkdriver has the right to read the key. The sha1-fingerprint of the custom signed certs are registered at HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp
-> SSLCertificateSHA1Hash = sha-1 hash of the custom local cert. Additionally the revocation-list is restrained to the local list by setting HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\Credssp -> UseCachedCRLOnlyAndIgnoreRevocationUnknownErrors
= 1.
The results
The connection form win 8.1 to win 7 works. The connection info confirms that it is a veryfied connection. The connection to windows 8.1 fails after entering the credentials with error: No connection possible. Network Level Authentication is set, but other
level don't work as well. The log (Event Views -> Applications and Services Logs -> Microsoft -> Windows -> TerminalServices-RemoteConnectionManager -> Admin) says "Remote Desktop Services has taken too long to load the user configuration
from server" and "The Local Security Authority Cannot Be Contacted" (error 0x80090304)
Aditional information
The connection via linux (remmina) works for win 7 and win 8.1, but I have no information about the encryption. It is the same with the Microsoft Remote Desktop Tool for Android.
Maybe it is accociatet with a different cert handling by Windows 8.1 but I couldn't find further information or a solution in the internet.
Best regards
abditus

I solved the problem!
The default openssl certificate signature algorithm is md5RSA but it doesn't work with windows 8.1.
It is at least sha1RSA needed.
By adding "default_md = sha1" to the openssl.cnf you create certs with sha1RSA and it works fine.
Beste Gegards
abditus

Similar Messages

  • Having trouble maintaining remote desktop connection with Mavericks.  What is this about needing RDC 3.7.1 with Mavericks.  I downloaded RDC 3.7.1 but it does not replace RDC 2.1.0 previously installed.

    Having trouble maintaining remote desktop connection with Mavericks.  What is this about needing RDC 3.7.1 with Mavericks.  I downloaded RDC 3.7.1 but it does not replace RDC 2.1.0 previously installed

    Lucky you, it did not work for many users (which as it should be) so MS produced a new version, for ML and Mavericks.
    It's in the App Store, for free.
    FYI, I assume that you were attempting to post a picture, no one can see it (except maybe you) because it is on your computer rather than the forum server.
    file:///Users/dbrant/Desktop/About%20Apple%20Remote%20Desktop%203.7.1.webloc
    Use the small camera icon in the editor toolbar to post it.
    It also looks like you attempted to use Apple Remote Desktop, which does not do Windows.

  • Using a remote desktop connection with the Macbook pro.

    I use the remote desktop connection on the Macbook pro and am unable to exchange info between the mac and the remote connetion windows. For example, if I am writing an email from the remote connection and want to attach a document, photo etc. that I created on the Mac, it just doesn't work. It seems like the Mac and the desktop connection are completely seperated eventhough they are both on the screen in front of me. the systems I use for work are not Apple compatible and will not work on anything other than windows explorer and in my case the remote desk top connection. Any ideas!

    Welcome to Apple Discussions
    Try running in 'ClamShell' mode (MacBook Pro lid closed and using an external keyboard and mouse) with the Gateway connected and then run System Preferences/Displays, it should show then ...
    My 1920x1080 monitor shows the following:

  • Remote Desktop Connection with WRT54G from Novice

    Well, I’m usually pretty good at using Google and forums to eventually figure out how to fix my problem but this one absolutely has me stumped and I’m hoping someone out there has an answer for me. For the record, I have probably a beginner/intermediate knowledge of computers so if you know the answer to my problem, try to explain it simply! ****TO ANYONE WHO TAKES THE TIME TO READ THIS THING AND CAN OFFER SOME ADVICE-THANK YOU!!!!***
    THE PROBLEM
    I would like to be able to use Remote Desktop to log into either of my home computers from basically any computer on the internet.
    THE SETUP
    I have two computers, whose names are LAPTOP and DESKTOP that are both running Windows Vista Ultimate. Both of the computers are connected to a Linksys WRt54G Router ; one wired, the other wirelessly. The Linksys router is then connected to a Westell DSL Modem that connects to AT&T’s internet service.
    SETTINGS
    My DSL service only provides me with a dynamic IP address so I signed up with no-ip.com. Through that site, I bought a domain name and downloaded their small program that runs in the background of my desktop computer. The program checks what my IP address is every couple of seconds and if it changes, it notifies their server so that anyone who types in my domain name is directed to the new IP address.
    ROUTER (Firmware 4.20.6)
    Basic Setup Page: The Router Name is just the model number, the Server Name is my DSL provider and the Domain Name is the name I chose and registered with No-IP.com. (www.mydomainname.com, for example.) DHCP Server is ENABLED. DDNS Service is DISABLED. Under Advanced  Routing, it is set in GATEWAY mode.
    Security Page: Firewall Protection is ENABLED. Block Anonymous Internet Requests is NOT checked. Filter Multicast, Filter Internet NAT Redirection and Filter IDENT ARE checked.
    Applications and Gaming Page: I chose two port numbers, one for each computer that I want to connect to. On the first line, I have Application: RDP, Port Range: 49200 to 49200, Protocol: Both, IP Address (The IP address of the computer I want to connect to) and the Enable box IS checked. [I did the same thing with the second line for the other computer, but with a different port number and that computer’s IP address)
    Administration Page: Access Server is HTTP, Wireless Access Web is ENABLED, Remote Management is ENABLED through Port 8080, and UPnP is ENABLED.
    WINDOWS VISTA SETTINGS
    First, I went to the Remote Desktop Settings of the target computer and ENABLED Remote Desktop Connection and allowed computers running any version of Windows. I also confirmed that the box labeled “Allow This Computer To Be Controlled Remotely” WAS checked. I then made sure that I had a user name, it had a password associated and that it had Administrator priveledges. I went back to the Remote Connections screen and added the user name as being allowed to connect. (I think this is redundant since it’s both the owner of the computer and has Administrator Status.)
    Next, per Randomly Googled Internet Advice, I went into the registry and changed the port number that Remote Desktop listens for incoming connections to Port 49200 to match the router settings. [Registry Entry that I modified was: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp]
    Finally, I went to the Windows Firewall and Added (opened) port 49200 for use as a Remote Connection. I kept the protocol as TCP and confirmed the scope was set for Any Computer.
    CURRENT STATUS
    If I go to Explorer and enter my IP address with a colon and the specify port 8080, I can get the login screen for the router. Same thing happens if I just enter my domain name and port 8080. However, if I switch the 8080 port and use one of the ports I chose (49200), it cannot connect, either using the Public IP address or the domain name. (I’m trying to connect using a wireless card and not connected to my local network so I know it’s the same as if I was anywhere else.)
    I’m not sure why it won’t let me connect; it feels like the router will not allow the connection to pass through it to the port I’m asking it to forward to. I’m guessing someone out there who took the time to read it is shaking their head at all the information I provided and knows the one dumb thing I missed!
    Thanks again!

    I'm attempting to do the same thing with my home network. the only differences are that i have cable internet from comcast and i'm running vista business. my router is the wrt54gs. i'm assuming that the web page is similar for adjustmants. To be honest i cannot figure out how to do a remote destop too. so i went to www.logmein.com and installed the program. once installed to to every computer you want to have access too and log into the website. then click on the add computer icom. full control app sharing etc... even better when you connect you have the option to deactivate the local host mouse and screen to prevent anyone seeing what your doing.
    If you resolve the router issue would you let me know. plz thanks
    Forest

  • Enable Remote Desktop Connections with PowerShell

    What is the easiest way to enable remote desktop connections on Windows 7, with powershell?

    Use Shay Levy's "Remote Registry PowerShell Module", and modify the value of the "fDenyTSConnection" value in the
    key "HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server" on the remote box to "0"
    The Windows 7 box will need to be rebooted before it will take effect.
    See http://oreilly.com/windows/archive/server-hacks-remote-desktop.html
    Or, grab Michal Gajda's script "Enable-RDP.ps1" in the gallery :)
    Karl
    When you see answers and helpful posts, please click Vote As Helpful, Propose As Answer, and/or Mark As Answer
    My Blog: http://unlockpowershell.wordpress.com
    My Book:
    Windows PowerShell 2.0 Bible
    My E-mail: -join ("6B61726C6D69747363686B65406D742E6E6574"-split"(?<=\G.{2})",19|%{[char][int]"0x$_"})

  • Remote Desktop Connection with single Ethernet cable

    Hi,
    I'd like to be able to use Microsoft's Remote Desktop Connection app to connect to one of my XP machines with my PowerBook. I can do this when everything is running on my home LAN, but I'd like to be able to connect with just a single Ethernet cable connected from my PowerBook's network port to the network card of the XP machine. This would allow me to use the PowerBook as a monitor when I bring the XP machine offsite to run tests (I'm a computer technician). I've played with the Network settings in the System Preferences, but things that would seem to me to work don't work. Any suggestions would be appreciated.
    Thanks,
    Ken

    When you're on the road, and these are the only machines connected to each other, you will either need to configure them to have static IP's in the same subnet
    192.168.0.2 and 192.168.0.3
    255.255.255.0
    no gateway/router IP required.
    THey'll need to be in the same workgroup (but you probably have that already)
    ...or...
    Configure the XP machine to be the DHCP server, and the mac to get IP from XP.
    (first option is probably better.)
    Might need a crossover cable. Might not.

  • Apple Remote desktop connection with different internet network

    I did purchase "Apple Remote Desktop"in mac app store, it works well in the same wifi's network but when i try to use different network, but i won't connect.
    It said " Please make sure Screen Sharing in the System preference", but it won't works as well.
    Please help
    Mac OS: 10.9.1
    Apple Remote Desktop: 3.7.1

    The first thing I'd suggest is that you talk to your network support group and make sure that the necessary IP ports, primarly 3283 and 5900, are open between the two networks. If those are blocked, ARD can't connect.
    Hope that helps.

  • Windows 7 remote desktop connection cannot logoff the local user

    Windows 7 remote desktop connection cannot logoff the local user
    Remote Desktop connection:
    (This experience is from Windows 7 remote to Windows Embedded Standard 7 computer)
    I used Remote Desktop to try to log on to a Windows 7 (WES7E) computer and someone is already logged on locally (Console Session), I saw a message like this:
    "Another user is currently logged on to this computer.  If you continue, this user has to disconnect from this computer.  Do you want to continue?"
    I click on Yes.
    Then I saw "Please wait for [username] to respond".  No action from the logged-on local user, I waited for 30 seconds, then I was able to login the computer and at the same time was able to disconnect the logged-on local user. 
    Question:
    1. "Another user is currently logged on to this computer..." message doesn't show me the actual logged-on user name.  Is there any way to show the user name in this pop-up message?
    2. After waiting for 30 seconds, I was able to login the computer and the logged-on local user is disconnected, however this local user is never been logged-off.  I wanted to logoff the local user (with Console Session) when I made the connection remotely
    to the computer from remote desktop (Just like Windows XP)  Is there any group policy can change the behavior?
    The policies I have looked at are:
    Local Computer Policy | Computer Config | Admin Templates | Windows Components | Remote Desktop Services|Connections|Deny
    logoff of an administrator logged in to the console session => disabled
    Regards,
    Mei Davis

    Hi ,
    These behavior is by design. There is no way to change that. Thank you for your understanding.
    Best Regards.
    Tracy Cai
    TechNet Community Support

  • Would anyone know a way to get ASIO4all to operate through the Remote Desktop Connection Application?

    Sound problem... when I try to use FL Studio via Remote Desktop Connection with a Windows XP laptop.

    Hi Crimsonrain,
    What is the model number of your router? 

  • Remote Desktop Connection Mouse Slow with Windows 2012

    Hello:
    I am connecting to a customer site with Citrix and using Citrix's Remote Desktop. I know this may be a Citrix issue but not sure. Customer isn't helping so thought I would check here.
    I have two connections to computers in their network with Remote Desktop. One is to a Windows 2003 Server which works fine. When I connect to Windows 2012 the mouse is slow. I tried adjusting the mouse settings but it doesn't help.
    Has anyone else experienced this? Is it an issue specific to Citrix or to Remote Desktop in general?
    Thanks,

    check out this blog, it's for virtual PC though but also using RDP.
    just try it out whether it helps or not
    http://mattrefghi.com/blog/solutions/virtual-pc/slow-mouse-when-controlling-a-virtual-pc-through-remote-desktop/
    Slow Mouse When Controlling a Virtual PC Through Remote Desktop
    Right-click the Desktop, and select Properties.
    Move to the Settings tab in the Display
    Properties dialog.
    Click the Advanced button.
    Move to the Troubleshoot tab in the Monitor
    Properties dialog.
    Move the Hardware acceleration slider all the way to the right, so it is right next to Full.
    Click OK in the Monitor Properties dialog.
    Click OK in the Display Properties dialog.
    Every second counts..make use of it. Disclaimer: This posting is provided AS IS with no warranties or guarantees and confers no rights.

  • Easy print not working on a 64 bit Windows 8.1 client with Remote Desktop connection version 8.1

    Easy print is not working on a 64 bit Windows 8.1 client with Remote Desktop connection version 8.1 . Printers dont get redirected when you connect to the terminal server. The server we are connecting to has Windows 2008 server.  On 32 bit Windows
    7 and windows XP clients Easy print is working fine and printers get redirected in terminal server.

    I am having the exact same problem. Windows 7 works fine, but 8.1 will not redirect printers. Others said to check local policy terminal services settings and my setting are all set as they should.
    I think Windows 8.1 is not telling the terminal server what printers it has.

  • Remote Desktop Connection to Windows 8 PC from other computers crashing

    Hi all.
    Was hoping someone would be able to help me with an issue I'm having.
    I'm trying to get a LAN remote desktop connection established to my Windows 8 laptop. It's an HP ENVY 17t-2100 CTO 3D Edition Notebook PC. Note that I'm running Windows 8 Pro only - not 8.1 as HP haven't released 8.1 graphics drivers for this laptop and probably
    never will. The computer has a single user profile that has full administrator rights.
    I have followed numerous web tutorials on how to turn on Remote Desktop. I've gone into Advanced System Settings > System Properties > Remote > checked "Allow Remote connections to this computer". All seems ok to me. 
    The problem comes when I try to establish a connection. When the connection is made, it almost instantaneously crashes the session on the computer or device trying to connect. The RDP client on my Windows 7 laptop, Mac OSX or Mac running Windows 8.1 Pro just
    crashes, while the RDP iPhone or iPad app simply flickers for a few seconds then goes back to the main screen. Meanwhile, the HP ENVY loads the lock screen and displays a message saying XXX device is connected remotely and it won't let me log back in to kill
    the connection or do anything. I have to restart the computer from then to be able to use it again.
    I'm convinced there's not a problem with my local network as the HP ENVY can RDP into the Windows 7 laptop or Mac running Windows 8.1 without any problems. All computers are connected via Ethernet to a Linksys/Cisco wireless ADSL modem router which supports
    Gigabit. The iPhone and iPad of course connect to the wifi network from the Cisco/Linksys modem router
    I've also had a brief look at the RDP local connection logs. From what I can make out, they confirm that a user has successfully logged in, but they don't provide a crash log or a log of the user ever disconnecting, probably because I have to restart the computer
    to continue using it. Dead end there, it seems.
    The HP ENVY is connected to 3 external HP LED monitors. I've disconnected them and tried all devices with no luck. I've also played round with the RDP client settings to not mount drives or printers and the HP ENVY has no printers connected anyway, though I've
    done all I can to remove any printer drivers as I've read elsewhere that they are what could cause the problem, but I've had no luck. 
    If anyone can suggest anything more that I can try, I would be unbelievably grateful! I'm more than happy to provide screenshots or videos of what happens when I try connecting. I'm not sure what you experts would find immediately helpful so just ask away if
    you think I can provide anything.
    Thanks in advance!
    rugbyreff

    The first thing that I would try is to uncheck all of the boxes for local resources on computer running the RDP client. It is possible that a device, such as a printer or other redirected device, is causing the crash. You can also look under Event Viewer
    in the event logs of both systems and see if anything unusual appears when you attempt the remote connection.
    Brandon
    Windows Outreach Team- IT Pro
    The Springboard Series on TechNet
    Hi Brandon
    Many thanks for your suggestions. There's nothing in the logs that I could find, like I said in the original post. I've also tried connecting with bare minimum settings on all devices (FYI the iPad and iPhone version don't support the use of printers) and
    this still hasn't helped.
    If you have any other ideas I'd be very glad to hear them!
    rrugbyreff
    "If it's worth doing, it's worth overdoing" -- MythBusters

  • Remote desktop connection not working in windows 7 Pro x64 bit sp1 3389 port not working

    i have still facing same problem in last two week in my  system RDC not working . i have installed in my system windows 7 x64 bit Pro sp1 then i check 3389 port working or not  in my system use the command netstat -a -o command in
    command prompt but this is  my bad luck  its not woking in my machine after i have decide to change RDC listening port via registry  i have change it 3389 to 3391 after restart my system,  and
    after again testing using same command but no any change again rdc not listening . After i have  search this issue on search engine google bing and microsoft , i have found more solutions  but i have try one
    uninstalled two microsoft updates first is kb  KB2621440 second is KB2667402 and after again restart my system and again installed KB 2667402 But not change i have already enabled Remote Desktop connection in windows 7 and select the option
    any version computer running , i have try  three and four time enable  disable remote desktop connection in my machine . but not change i have all windows firewall disable and uninstalled anti virus they intalled in my machine , and using the Mcafee
    stinger tools to scan my machine to remove virus but stinger is not found any thread in system.  ihave already run this command in my system sfc /scannow  Please Can you help me to fix  this issue.

    Hi,
    When you try to start the Remote Destop Connection, what errors it showed out?
    Could the other PCs connect this PC with the RDC?
    So you have read this blog?
    RDP connections might fail due to a problem with KB2621440 - MS12-020
    Did you reinstalled the KB2621440?
    Besides, did you follow this guide to enable the RDC connection?
    Connect to another computer using Remote Desktop Connection
    And also this guide?
    Why can’t I connect using Remote Desktop Connection?
    Please take a check with those settings again.
    Best regards
    Michael Shao
    TechNet Community Support

  • Can 1 instance of Windows 8.1 ENTERPRISE host multiple Remote Desktop connections?

    I am shopping for the components for building a machine with fair, high-performance hardware. I have Windows 8.1 Professional. I wanted to know if either Windows 8.1 Professional or Windows 8.1 Enterprise can support multiple remote connections
    from users outside the local network. For example, my brother is based in San Diego, CA and has an underpowered laptop. Is there any way to make a remote connection over that much distance, from San Diego to Northern Virginia, from a RDP client running Windows
    8.1 Professional to a RDP "server" Windows 8.1 Professional/Enterprise machine, and run a modern, single- or multiplayer- game over smoothly that connection? At the very least, is it possible to run common
    apps (e.g. Microsoft Office 2013 IE 11, Adobe Acrobat XI) smoothly on a Windows 8.1 Pro RDP client connected to a Windows 8.1 RDP "server" located 2250+ miles away?
    Would upgrading my installation from Professional to Enterprise improve the responsiveness and display quality for my remote users?
    I know Windows Server R2 2012 has features specific for handling remote connections, but I am trying to keep a Windows 8.1 user experience. Still, if anyone can show some evidence that Windows Server 2012 R2 Remote Desktop Services (RDS)  improves display
    and responsiveness over long-distances for remote (RDS) connections, then I will shop for Windows Server 2012 R2 Standard instead. The huge drawback of Windows Server 2012 R2 Standard CALs is the enormous cost to enable 3-5
    remote connections for family, non-commercial use.
    Has anyone attempted to host long-distance remote access, non-commercially, for 3-5 connections? Has it worked well? What, in general, is required?
    T. Webster

    Hi,
    It depends on the quality of the network connection to run the software smoothly throuth RDP.  And I don't think the quality would be better if you upgrade to Windows 8.1 Enterprise.
    Windows 8.1 allow only one session of RDP, the Remote Desktop Server in Windows other than the Windows Server edition has a limitation to allow only one concurrent user per session by default, i.e. if someone remotely connects to the computer over RDP then
    whoever was logged in at that moment will be automatically logged off, even if that user is physically present at the computer. This is by design.
    Regarding more information about RDP, please take a look at the following articles:
    Remote Desktop app help
    Remote Desktop Connection: frequently asked questions
    Best regards
    Michael Shao
    TechNet Community Support

  • Remote desktop connection manager on windows 8.1, can't connect to windows server 2012 R2, Socket closed

    remote desktop connection manager on windows 8.1, can't connect to windows server 2012 R2, Socket closed each time i try to open remote connection to the server,
    does remote desktop connection manager V2.2 not compatible with windows 8.1, and if so, is there are any other compatible versions
    or what's the problem,
    Mahmoud Sabry IT System Engineer

    this issue maybe will be fix by latest version, we still waiting for it
    maybe your issue can be fix using this methods
    https://social.technet.microsoft.com/Forums/windowsserver/en-US/61f218a5-5ef8-49da-a035-90cdd64fc9a0/problem-with-remote-desktop-connection-manager-error-3334?forum=winserverTS
    http://shawn.meunier.com/?p=1#comment-43

Maybe you are looking for

  • Quotation Mark Issue

    Is there any way to change the default double quotation in Dreamweaver CS4 to a single quotation?  For example: <form name="ex"> to <form name='ex'> Right now if I use the autocomplete for tags I get double quotes.  Is there any way to change that?

  • Popup windows on multiple windows is opened across both monitors.

    I am using Firefox 6 the latest version on Windows 7 64 bit using 2 monitors. I was on a website that wanted me to logon via facebook. So the browser opened a popup windows. The window that opened covered both monitors. The left edge of the window st

  • Oracle Projects AIM documents template - BR100, TE, BP Etc

    Hi All, Can someone help me in getting the AIMs doc for oracle project costing / billing / managment R12? It would be gr8 to have any of the business process doc / functional specs ( BR100) / Test cases / Migration Doc / Gap analysis doc etc. Just te

  • Essbase 11.1.1.3 - Unable to spawn process for application

    Anyone know how to solve the problem with the error message "Unable to spawn process for application" when trying to create a BSO-application in a newly installed 11.1.1.3 installation.

  • Upgrade 12.1.1 to 12.1.3 Problem

    Hi I have done many times upgrade from EBS 12.1.1 to EBS 12.1.3 in Oracle Linux 64b but it's my first time in HPUX Itanium 64b. please give me an answer for my qustions: *1) i'm now in EBS 12.1.1 and database 11.1.0.7* according to document  761570.1