Description |
This article describes how to allow RDP from a PC to a Windows Domain Controller using a non-Admin user
Topology: The below topology diagram is used, where both the Domain controller and PC are behind the two different FortiGates, and FG1 and FG2 are connected with point-to-point connection:
In the Scenario below, it is located on the PC side and is trying to take the RDP to the Domain Controller using the User named User1 which is a non-Admin User.
It is ended up with an error mentioned in the screenshot below:
|
Scope | FortiGate. |
Solution |
The basic sniffer depicts that the reset packets are sent by the Domain controller. 10.10.2.2 is sending rst + ack, which basically means that 10.10.10.2 sent the reset first.
After adding User1, it would be possible to do the RDP from non-admin users:
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.