[THIN] Re: RDP Client hanging at "Securing remote Session"

  • From: Andreas Roth <art-freelists@xxxxxxxxxxxxx>
  • To: thin@xxxxxxxxxxxxx
  • Date: Tue, 26 Feb 2013 15:28:04 +0100 (CET)

Boom, Jackpot!

Working as descripted - Pat you saved my day!

Thanks and Best Regards,

Andreas


----- Ursprüngliche Mail -----
> Von: "Pat Coughlin" <strangedog@xxxxxxxxx>
> An: thin@xxxxxxxxxxxxx
> Gesendet: Dienstag, 26. Februar 2013 14:21:22
> Betreff: [THIN] Re: RDP Client hanging at "Securing remote Session"
> 
> The behavior is documented here: http://support.microsoft.com/kb/2677070
> 
> You can disable the network retrieval of the trusted and untrusted CTLs. To
> do this, you disable automatic root updates by using Group Policy settings.
> To disable automatic root updates by using policy settings, follow these
> steps:
> 
>    1. Edit a new or existing Group Policy in the Local Group Policy Editor.
>    2. In the Local Group Policy Editor, under the *Computer
> Configuration* node,
>    double-click *Policies*.
>    3. Double-click *Windows Settings*, double-click *Security Settings*,
>    and then double-click *Public Key Policies*.
>    4. In the pane on the right side, double-click *Certificate Path
>    Validation Settings*.
>    5. Click the *Network Retrieval* tab, click to select *Define these
>    policy settings*, and then click to clear the *Automatically update
>    certificates in the Microsoft Root Certificate Program (recommended)*
>    check
>    box.
>    6. Click *Ok*, and then close the Local Group Policy Editor.
> 
> Have fun...
> 
> Patrick Coughlin, CCIA
> 
> 
> 
> On Tue, Feb 26, 2013 at 4:18 AM, Andreas Roth
> <art-freelists@xxxxxxxxxxxxx>wrote:
> 
> > Hi Forum,
> >
> > I running an RDP Client on W2k8R2 machine - when connecting to target
> > machines higher than W2k8 the RDP Client hangs for about 30 seconds at
> > "securing your Session".
> > At network dumps I see that the client is asking "ctldl.windowsupdate.com"
> > getting back the IP and trying to connect at TCP/80. The guy seems search
> > for some updatestuff..
> > The firewall is configured to drop the packages instead of rejecting them
> > - which is causing the 30 seconds delay.
> >
> > To fix the rootcause - how to disable this update behavior? Seems to have
> > something to do with new implemented rdp certificate authentication?
> >
> > Thanks for your help in advance,
> >
> > Andreas
> > ************************************************
> > For Archives, RSS, to Unsubscribe, Subscribe or
> > set Digest or Vacation mode use the below link:
> > //www.freelists.org/list/thin
> > ************************************************
> >
> 
************************************************
For Archives, RSS, to Unsubscribe, Subscribe or
set Digest or Vacation mode use the below link:
//www.freelists.org/list/thin
************************************************

Other related posts: