<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Query on clientless VPN in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/query-on-clientless-vpn/m-p/391353#M90770</link>
    <description>&lt;P&gt;&lt;SPAN&gt;We are told that the clientless apps only works with HTTP/HTTPS based apps, and therefore we cannot use it to allow MS remote desktop.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;This is the problem I am trying to solve. Our users currently use their own computers at &amp;nbsp;home. They connect to the corporate network using Global Protect, but of course this could be a security risk if one of the home PCs has a virus.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Buying everyone a corporate machine for home is one option, but costly.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Therefore I was hoping we could use the firewall to allow them to connect using remote desktop, without allowing any data to be transferred from their office PC to their home PC.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 16 Mar 2021 00:44:18 GMT</pubDate>
    <dc:creator>FarzanaMustafa</dc:creator>
    <dc:date>2021-03-16T00:44:18Z</dc:date>
    <item>
      <title>Query on clientless VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/query-on-clientless-vpn/m-p/391353#M90770</link>
      <description>&lt;P&gt;&lt;SPAN&gt;We are told that the clientless apps only works with HTTP/HTTPS based apps, and therefore we cannot use it to allow MS remote desktop.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;This is the problem I am trying to solve. Our users currently use their own computers at &amp;nbsp;home. They connect to the corporate network using Global Protect, but of course this could be a security risk if one of the home PCs has a virus.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Buying everyone a corporate machine for home is one option, but costly.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Therefore I was hoping we could use the firewall to allow them to connect using remote desktop, without allowing any data to be transferred from their office PC to their home PC.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 16 Mar 2021 00:44:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/query-on-clientless-vpn/m-p/391353#M90770</guid>
      <dc:creator>FarzanaMustafa</dc:creator>
      <dc:date>2021-03-16T00:44:18Z</dc:date>
    </item>
    <item>
      <title>Re: Query on clientless VPN</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/query-on-clientless-vpn/m-p/391396#M90774</link>
      <description>&lt;P&gt;this really will depend on you security acceptance levels.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We only allow RDP via an RDS gateway in the DMZ. 2 factor authentication is required and no file transfer/clipboard/drive mapping etc. between client and desktop.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;some good help here...&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://ryanmangansitblog.com/2020/03/23/quick-simple-remote-access-solution-using-ms-rd-gateway-12-16-19-versions-ready-to-use-within-the-hour/#:~:text=The%20RD%20Gateway%20allows%20you,TCP%20443%20and%20UDP%203391" target="_blank" rel="noopener"&gt;https://ryanmangansitblog.com/2020/03/23/quick-simple-remote-access-solution-using-ms-rd-gateway-12-16-19-versions-ready-to-use-within-the-hour/#:~:text=The%20RD%20Gateway%20allows%20you,TCP%20443%20and%20UDP%203391&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can use GP to allow RDP application if you prefer but still prevent data transfers via RDP settings.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://social.technet.microsoft.com/Forums/en-US/f07b2557-27fd-484f-9a62-635057959214/disable-file-transfercopy-paste-for-rds?forum=winserverTS" target="_blank"&gt;https://social.technet.microsoft.com/Forums/en-US/f07b2557-27fd-484f-9a62-635057959214/disable-file-transfercopy-paste-for-rds?forum=winserverTS&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 16 Mar 2021 09:36:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/query-on-clientless-vpn/m-p/391396#M90774</guid>
      <dc:creator>Mick_Ball</dc:creator>
      <dc:date>2021-03-16T09:36:51Z</dc:date>
    </item>
  </channel>
</rss>

