The protocol, key exchange, and cipher should be supported.The certificate, which should be valid and trusted.Specifically, the following SSL components should be rated to determine how good the configuration is: When configuring RAS Secure Client Gateway to use SSL encryption, you should pay attention to how the SSL server is configured to avoid possible traps and security issues. Once the above options are correctly set, both TCP and UDP connections will be tunneled over SSL. This option can be set in the Connections Settings > Connection Mode drop-down list on the client side. The Parallels Clients must be configured to use the Gateway SSL mode. In the Network category, make sure that the Enable RDP UDP Data Tunneling option is selected.In the SSL/TLS category, make sure that the Enable SSL on port option is selected.To use DTLS on a RAS Secure Client Gateway: To provide the SSL protection for UDP connections, DTLS must be used. Recent Windows clients may also utilize a UDP connection to improve WAN performance. Paste the content of the exported certificate (attached to the list of the other certificates).Ī Parallels Client normally communicates with a RAS Secure Client Gateway over a TCP connection.This file contains certificates of common trusted authorities. On the client side in the directory "C:\Program Files\Parallels\Remote Application Server Client\" there should be a file called trusted.pem.To add the certificate with the list of trusted authorities on the client side and enable Parallels Client to connect over SSL with a certificate issued from an organization’s Certificate Authority: Open the exported certificate with a text editor, such as notepad or WordPad, and copy the contents to the clipboard.Export the certificate in Base-64 encoded X.509 (.CER) format.In case the certificate is self-signed, or the certificate issued by Enterprise CA, Parallels Clients should be configured as follows: If a third-party certificate issued by a well-known Trusted Certificate Authority is used, the client device trusts using Trusted Certificate Authority updates for the platform. Client devices on other platforms require manual configuration. If an Enterprise CA certificate is used, Windows clients receive a Root or Intermediate Enterprise CA certificate from Active Directory. To simplify the Parallels Client configuration, it is recommended to use a certificate issued either by a third party Trusted Certificate Authority or Enterprise Certificate Authority (CA). To do so, in Parallels Client, open connection properties and set the connection mode to Gateway SSL. To encrypt a connection between Parallels Client and the gateway, you also need to configure connection properties on the client side. ![]() By default, the only type of connection that is encrypted is a connection between a Gateway and backend servers.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |