Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | RE: RDP Security |
|---|---|
| Date: | Sun, 11 Mar 2007 15:56:36 -0400 |
I believe Microsoft's answer to MITM attacks on a local LAN is to implement IPSec on your computers. If you implement the correct IPSec policy, then I would say that RDP would be 100% secure. Even if you don't want to turn on IPSec for your whole LAN, you could create a policy to sign traffic on port 3389 between the computers that you're RDP'ing with and it would eliminate the possibility of MITM attacks completely. Bryan -----Original Message----- From: listbounce@securityfocus.com [mailto:listbounce@securityfocus.com] On Behalf Of Tornado Sent: Monday, March 05, 2007 6:37 AM To: security-basics@securityfocus.com Subject: RDP Security Hi All, I was just curious to know how secure is Remote Desktop Protocol on the local network? I know that this protocol is prone to MITM attacks.But has Microsoft addressed this issue in the latest RDP client? Thanks in advance. ---------------------------------------------------------------------- Click for FHA loan, $0 lender fees, low rates & approvals nationwide http://tags.bluebottle.com/fc/CAaCMPJetxFHQmpYDjxn9T2dV7G9wZV0/
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: Admin rights via backdoors, Adam Pridgen |
|---|---|
| Next by Date: | Re: small business av recommendations, Isaac Perez Moncho |
| Previous by Thread: | RE: Invisible dilemma - ARP flush, WALI |
| Next by Thread: | Re: Re: RDP Security, alegr1 |
| Indexes: | [Date] [Thread] [Top] [All Lists] |