{"id":21141,"date":"2009-12-17T12:04:36","date_gmt":"2009-12-17T16:04:36","guid":{"rendered":"http:\/\/www.bu.edu\/tech\/security\/protect\/bestpractice\/securely-using-remote-desktop\/"},"modified":"2018-07-10T11:40:05","modified_gmt":"2018-07-10T15:40:05","slug":"remote-desktop","status":"publish","type":"page","link":"https:\/\/www.bu.edu\/tech\/about\/security-resources\/bestpractice\/remote-desktop\/","title":{"rendered":"Securely Using Remote Desktop"},"content":{"rendered":"<p>Remote Desktop is a convenient way to retain access to your office computer while not in your office, but the default configuration also makes it accessible to the Internet and increases your risk of a system compromise.<\/p>\n<p>To reduce the risk of compromise, the BU Information Security Incident Response Team (IRT) recommends you make the following changes to the configuration of Remote Desktop:<\/p>\n<ul>\n<li>Use the <a href=\"https:\/\/www.bu.edu\/tech\/services\/cccs\/remote\/vpn\/\">campus VPN service<\/a>\u00a0to first connect to campus, and then remote desktop to the BU PC. The BU <a href=\"https:\/\/www.bu.edu\/tech\/services\/cccs\/remote\/vpn\/two-factor-vpn\/\">two-factor VPN with Duo Security<\/a>\u00a0is required for connecting to computers at the Medical Campus and at Charles River Campus <a href=\"http:\/\/www.bu.edu\/hipaa\/\">HIPAA Components<\/a>.<\/li>\n<li>Consider if you need RDP at all; if not please ensure it is <a href=\"https:\/\/www.bu.edu\/tech\/about\/security-resources\/bestpractice\/remote-desktop\/#disable_rdp\">disabled<\/a>.<\/li>\n<\/ul>\n<p>We discourage the use of gotmypc.com for privacy reasons mostly. We discourage the use of other third party software for security vulnerabilities concerns.<a name=\"disable_rdp\"><\/a><\/p>\n<h3>Enabling Remote Desktop Securely on Windows 10<\/h3>\n<p>Remote Desktop can be enabled securely on Windows 10 with the following instructions:<\/p>\n<ol>\n<li>Go to Control Panel (Search for Control Panel via Cortana\/Search<\/li>\n<li>Then on the left hand side, please click &#8220;Remote Settings&#8221;<\/li>\n<li>Then click on allow remote connections and also check &#8220;Allow connections only from computers running Remote Desktop with Network Level Authentication.<\/li>\n<\/ol>\n<h3>Disabling Remote Desktop<\/h3>\n<p>Windows 7<\/p>\n<p>Go to <strong>Control Panel<\/strong>, click <strong>System And Security<\/strong>, and then click <strong>System <\/strong>(or just System if using the classic view).<\/p>\n<ol>\n<li>On the System page, click <strong>Remote Settings <\/strong>in the left pane. This opens the System Properties dialog box to the <strong>Remote<\/strong> tab.<\/li>\n<li>To disable Remote Desktop, select <strong>Don\u2019t Allow Connections To This Computer<\/strong>,<\/li>\n<li>Also <em>uncheck<\/em> the\u00a0 <strong>Allow Remote Assistance box <\/strong>only if already checked.<\/li>\n<\/ol>\n<p><a href=\"\/tech\/files\/2009\/12\/rdp_disable.jpg\"><img loading=\"lazy\" class=\"alignnone size-full wp-image-54357\" title=\"rdp_disable\" src=\"\/tech\/files\/2009\/12\/rdp_disable.jpg\" alt=\"rdp_disable\" height=\"474\" width=\"426\" \/><\/a><\/p>\n<ol>\n<li>Click <strong>Apply<\/strong><strong> <\/strong><\/li>\n<\/ol>\n<p>Windows XP<\/p>\n<p>Click <strong>System<\/strong> in Control Panel.<\/p>\n<ol>\n<li>On the <strong>Remote<\/strong> tab, clear the <strong>Allow users to connect remotely to your computer<\/strong> check box, and then click <strong>OK<\/strong>.<\/li>\n<\/ol>\n","protected":false},"excerpt":{"rendered":"<p>Remote Desktop is a convenient way to retain access to your office computer while not in your office, but the default configuration also makes it accessible to the Internet and increases your risk of a system compromise. To reduce the risk of compromise, the BU Information Security Incident Response Team (IRT) recommends you make the&#8230;<\/p>\n","protected":false},"author":2620,"featured_media":0,"parent":6549,"menu_order":12,"comment_status":"closed","ping_status":"closed","template":"","meta":[],"_links":{"self":[{"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages\/21141"}],"collection":[{"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/users\/2620"}],"replies":[{"embeddable":true,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/comments?post=21141"}],"version-history":[{"count":23,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages\/21141\/revisions"}],"predecessor-version":[{"id":115503,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages\/21141\/revisions\/115503"}],"up":[{"embeddable":true,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages\/6549"}],"wp:attachment":[{"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/media?parent=21141"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}