KDC Proxy on Remote Desktop Gateway

Hello Everyone,

i’d like to ask if you know whether RoyalTS supports KDC Proxy (kerberos proxy)?
We have an environment which consist of multiple domains. Our laptops doesn’t reach this environment directly, so we have installed a Remote Desktop gateway.
RoyalTS works great, i can reach all my servers via the RDS gateway, but the authentication is NTLM. The problem is for some of our accounts we use “Protected Users” group, so NTLM doesn’t work, and anyway kerberos would be better.
With the RDS gateway, also a KDC proxy gets installed automatically. If i use the builtin windows RDP client, authentication works via Kerberos - and i see logs on my RDS Gateway (Microsoft-Windows-Kerberos-KDCProxy/Operational) that the request went through the KDC proxy. With RoyalTS this doesn’t happen.
AwakeCoding :sun::laptop: | RD Gateway Without KDC Proxy Causes NTLM Downgrade
Based on this mstsc assumes automatically that the KDC Proxy is on the same host as the RD gateway.
Is there any possibility to configure this in RoyalTS?

thank you

Hi!

This is not supported at the moment but it is on our radar and will hopefully be implemented in Royal TS v26. Stay tuned…

Regards,
Stefan

HI Stefan!

This feature would be awesome. Thank you very much for your answer.

Best regards