Bert,

I'm going to have to disagree with you. Terminal Services on port 3389 is perfectly secure. You can set the encryption to high which uses 128-bit encryption with connections to clients and you'll be fine. Strong user passwords, which you should be using regardless, will stop the dirtbags from guessing an account password and hacking your box. The NUMBER ONE REASON behind Terminal Services Gateway is so you can run Terminal Server over port 443 to get past firewalls. Many hotel firewalls allow only port 80 and 443 traffic (HTTP and HTTPS respectively) so people could not log on to work using port 3389. This is the same reasoning behind using DirectAccess as opposed to dial-up VPN. DirectAccess is VPN over port 80/443.

Sandeep,

I'm going to have to disagree with you as well. Licenses are NOT required for Remote Desktop Services Gateway. The RDS Gateway is just a connection proxy, that is all. You have to have CALS for the Terminal Server/Remote Desktop Server you are accessing behind it. So if you have 50 users that need to log on to a Remote Desktop Services server, you need 50 Terminal Server CALS and you're done. You do not need CALS for the Gateway regardless of whether you use RDP or RWW.

JamesNT



James Summerlin
My personal site: http://www.dataintegrationsolutions.net
james@dataintegrationsolutions.net