RDP Management
Remote Desktop Protocol (RDP) management is crucial for securing remote access to client systems. PC Matic offers centralized tools to manage and secure RDP settings efficiently.
Features of RDP Management
RDP Management is a centralized location within the PC Matic management console that allows for efficient management and enhanced security of the Remote Desktop Protocol in your environment. Accessing RDP Management is as simple as clicking on it in the left-hand sidebar of your management console. Once inside, you will discover four main components: Control Center, Log Summary, Log Detail, and Device Allowlist.
Additionally, PC Matic offers additional options for managing and monitoring RDP throughout the management console, including the Device list and individual device pages.
Log Summary
Provides a summary of all RDP sessions for the network devices.
Log Detail
Provides a centralized location for auditing your customer's RDP history. The RDP Log maintains a permanent record of attempted and successful RDP sessions on any of your customer's devices that are protected by PC Matic MSP. This includes the IP Address, Device Name, Location, Session Duration, Login Username, Active Status, and more.
Control Center
The Control Center is where you will manage RDP on the machines in your environment. Control Center will display all of the devices that are currently on your account and information about the current RDP status and schedule for each device.
- RDP Enabled? - An orange icon indicates RDP is currently set to enabled on this device.
- Active Session? - During an active session, a green eye will display where you can click to view information about and kill the current session.
- Device/Group Name - Device and Group name of that machine.
- Port - The current port that RDP is configured for, whether enabled or disabled.
- RDP Schedule - This graphically shows the current schedule for RDP on each device with green representing time that RDP is enabled.
- Hours Per Week - The total number of hours per week that RDP is set to be enabled.
- Actions - A set of three actions, a toggle to fully enabled or disable RDP, a calendar to set a reoccurring schedule, and a clock to set a temporary window in the future that RDP will be enabled.
Device Allowlist
PC Matic uses allowlisting to protect your RDP ports on your network. The Device Allowlist tab allows you to enable our RDP Security and control your device allowlist.
Using a default-deny approach, any device that is not on the allowlist and attempts to initiate an RDP session will be blocked. You can receive realtime alerts about these sessions as well that include quick actions to take and all information about the session attempt right inside the alert. With RDP Authentication enabled, unknown devices that attempt to establish an RDP connection to any of your devices will be blocked.
You can add a device to your RDP Allowlist by device name or alias, or you can select a device from a previously blocked connection attempt.
Best Practices for RDP Management
- Strict Access Control: Limit RDP access to only essential users and devices, reducing the attack surface for potential intruders.
- Regular Log Reviews: Regularly review RDP logs to detect and respond to any unauthorized access attempts promptly.
- Educate Users on Secure RDP Practices: Train users on the importance of secure RDP practices, including the use of strong passwords and secure connections.