Hello Everyone,
i’d like to ask if you know whether RoyalTS supports KDC Proxy (kerberos proxy)?
We have an environment which consist of multiple domains. Our laptops doesn’t reach this environment directly, so we have installed a Remote Desktop gateway.
RoyalTS works great, i can reach all my servers via the RDS gateway, but the authentication is NTLM. The problem is for some of our accounts we use “Protected Users” group, so NTLM doesn’t work, and anyway kerberos would be better.
With the RDS gateway, also a KDC proxy gets installed automatically. If i use the builtin windows RDP client, authentication works via Kerberos - and i see logs on my RDS Gateway (Microsoft-Windows-Kerberos-KDCProxy/Operational) that the request went through the KDC proxy. With RoyalTS this doesn’t happen.
AwakeCoding ![]()
| RD Gateway Without KDC Proxy Causes NTLM Downgrade
Based on this mstsc assumes automatically that the KDC Proxy is on the same host as the RD gateway.
Is there any possibility to configure this in RoyalTS?
thank you