How do I setup Remote Desktop on Windows server 2016?

How To Enable Remote Desktop In Windows Server 2016

Posted by Jarrod on April 27, 2016 Leave a comment [27] Go to comments

By default in Windows Server 2016 remote desktop is disabled.

Here we cover how to turn on and enable remote desktop protocol [RDP].

Note: In Windows Server 2016 Essentials edition, remote desktop is already enabled by default so you will not need to manually do this.

Remote desktop can be enabled through the graphical user interface [GUI] with the following easy steps.


Các bước kích hoạt Remote Desktop trên Windows Server 2016

Để kích hoạt Remote Desktop trên Windows Server 2016 bạn thực hiện như sau:

Bước 1: mở Server Manager

Bạn sẽ đăng nhập tài khoản quản trị và mở Server Manager từ taskbar hoặc Start Menu Windows Server 2016.

Bước 2: chọn Local Server – kích hoạt Remote Desktop

Bạn chọn tab cấu hình ‘Local Server‘ nằm ở bên trái giao diện Server Manager nhé.

Bạn tiếp tục nhìn dòng cấu hình Remote Desktop , nếu giá trị đang là ‘Disabled‘ thì click vào để chuyển sang giá trị ‘Enabled‘ tức là kích hoạt tính năng Remote Desktop Protocol.

Bước 3: chọn cấu hình cần thiết

Khi cửa sổ System Properties mở ra, click ‘Allow Remote Connection to this computer‘ và ‘Allow connections only from…‘. Sau đó click Apply và click Ok.

Theo mặc định, tài khoản Administrator local sẽ có quyền truy cập vào máy chủ từ xa. Nếu bạn muốn cho user khác được sử dụng Remote Desktop vào Windows Server thì bạn chỉ cần add thêm thông tin tên user đó vào như dưới.

Vậy là qua bài viết này bạn đã biết cách kích hoạt Remote Desktop trên Windows Server 2016 rồi phải không ? Cực kì đơn giản và dễ thao tác, giờ bạn hãy làm xem nào. Nếu có bất kì thắc mắc nào đừng ngại comment bên dưới để trao đổi thêm với ‘Cuongquach.com‘ nhé.

Nguồn://cuongquach.com/

1. Kích hoạt Remote Desktop bằng GUI

Mở Server Manager và bấm Local Servertừ khung bên trái.Tại đây, bấm Disable trong trường Remote Desktop.

Trong cửa sổ xuất hiện, bậtCho phép kết nối từ xa đếncài đặtmáy tính này.Tại thời điểm này, bạn có thể chọn cho phép kết nối NLA bằng cách bật cài đặt tương ứng mà còn chọn người dùng hoặc nhóm bổ sung nào để kết nối ngoài người quản trị.

Bạn đã bật cài đặt ở trên, bạn sẽ thấy một thông báo kích hoạt quy tắc Tường lửa Windows tương ứng sẽ cho phép Kết nối máy tính từ xa từ bất kỳ địa chỉ nguồn nào.

Khi bạn nâng cấp lên Server Manager, bạn sẽ thấy cài đặt Remote Desktop đã thay đổi thành Enabled.

2. Bật Remote Desktop bằng PowerShell

Để bật Remote Desktop thông qua PowerShell, bạn sẽ cần thêm hai khóa vào sổ đăng ký và một quy tắc trong Tường lửa Windows.Các lệnh nên chạy trong cửa sổ PowerShell với quyền quản trị viên.

Bằng cách chạy lệnh sau, Remote Desktop sẽ được bật, cho phép kết nối thông qua Terminal Services.

New-ItemProperty -Path ‘HKLM:\System\CurrentControlSet\Control\Terminal Server\’ – Name “fDenyTSConnections” -Value 0 -PropertyType dword -Force

Bằng cách chạy lệnh sau, các quy tắc Tường lửa Windows được xác định trước sẽ được kích hoạt cho Remote Desktop trên tất cả các cấu hình.

Enable-NetFirewallRule -DisplayGroup “Remote Desktop”

Cuối cùng, lệnh sau cho phép Xác thực cấp mạng [NLA] cho các kết nối Máy tính từ xa.

New-ItemProperty -Path ‘HKLM:\System\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\’ -Name “UserAuthentication” -Value 1 -PropertyType dword -Force

Remote Desktop - Allow access to your PC

  • Article
  • 12/23/2021
  • 3 minutes to read
  • 10 contributors

Is this page helpful?

Yes No

Any additional feedback?

Feedback will be sent to Microsoft: By pressing the submit button, your feedback will be used to improve Microsoft products and services. Privacy policy.

Submit

Thank you.

In this article

Applies to: Windows Server 2022, Windows 10, Windows 8.1, Windows Server 2019, Windows Server 2016, Windows Server 2012 R2

You can use Remote Desktop to connect to and control your PC from a remote device by using a Microsoft Remote Desktop client [available for Windows, iOS, macOS and Android]. When you allow remote connections to your PC, you can use another device to connect to your PC and have access to all of your apps, files, and network resources as if you were sitting at your desk.

Note

You can use Remote Desktop to connect to Windows 10 Pro and Enterprise, Windows 8.1 and 8 Enterprise and Pro, Windows 7 Professional, Enterprise, and Ultimate, and Windows Server versions newer than Windows Server 2008. You can't connect to computers running a Home edition [like Windows 10 Home].

To connect to a remote PC, that computer must be turned on, it must have a network connection, Remote Desktop must be enabled, you must have network access to the remote computer [this could be through the Internet], and you must have permission to connect. For permission to connect, you must be on the list of users. Before you start a connection, it's a good idea to look up the name of the computer you're connecting to and to make sure Remote Desktop connections are allowed through its firewall.

Welcome to Remote Desktop Services

  • Article
  • 12/23/2021
  • 2 minutes to read
  • 8 contributors

Is this page helpful?

Yes No

Any additional feedback?

Feedback will be sent to Microsoft: By pressing the submit button, your feedback will be used to improve Microsoft products and services. Privacy policy.

Submit

Thank you.

In this article

Remote Desktop Services [RDS] is the platform of choice for building virtualization solutions for every end customer need, including delivering individual virtualized applications, providing secure mobile and remote desktop access, and providing end users the ability to run their applications and desktops from the cloud.

RDS offers deployment flexibility, cost efficiency, and extensibility—all delivered through a variety of deployment options, including Windows Server 2016 for on-premises deployments, Microsoft Azure for cloud deployments, and a robust array of partner solutions.

Depending on your environment and preferences, you can set up the RDS solution for session-based virtualization, as a virtual desktop infrastructure [VDI], or as a combination of the two:

  • Session-based virtualization: Leverage the compute power of Windows Server to provide a cost-effective multi-session environment to drive your users' everyday workloads.
  • VDI: Leverage Windows client to provide the high performance, app compatibility, and familiarity that your users have come to expect of their Windows desktop experience.

Within these virtualization environments, you have additional flexibility in what you publish to your users:

  • Desktops: Give your users a full desktop experience with a variety of applications that you install and manage. Ideal for users that rely on these computers as their primary workstations or that are coming from thin clients, such as with MultiPoint Services.
  • RemoteApps: Specify individual applications that are hosted/run on the virtualized machine but appear as if they're running on the user's desktop like local applications. The apps have their own taskbar entry and can be resized and moved across monitors. Ideal for deploying and managing key applications in the secure, remote environment while allowing users to work from and customize their own desktops.

For environments where cost-effectiveness is crucial and you want to extend the benefits of deploying full desktops in a session-based virtualization environment, you can use MultiPoint Services to deliver the best value.

With these options and configurations, you have the flexibility to deploy the desktops and applications your users need in a remote, secure, and cost-effective fashion.

Server Manager

Open the Server Manager console, navigate to the Local Server node, and click the Remote Desktop hyperlink as shown in Figure 2.

The Remote Desktop hyperlink is simply a shortcut to the System Properties sheet from the System Control Panel item. Select Allow remote connections to this computer, and optionally enable Allow connections only from computers running Remote Destkop with Network Level Authentication [recommended].

Network Level Authentication [NLA] protects Windows Server against denial-of-service [DoS] attacks by requiring authentication to take place before any graphical session is established by the server. NLA also conserves server system resources.

Windows PowerShell

From a lower-level perspective, incoming RDP connections are enabled on a server through two Registry values and a Windows Firewall rule.
Open an elevated Windows PowerShell session and run the following commands. This first one creates the fDenyTSConnections value and sets it to 0 [off]. This makes sense, because we don't want to deny Terminal Services [TS] connections.

New-ItemProperty -Path 'HKLM:SystemCurrentControlSetControlTerminal Server' -Name 'fDenyTSConnections' -Value 0 -PropertyType dword -Force

The next command creates and enables the UserAuthentication [Network Layer Authentication] value; NLA is a good idea and you should consider enabling it by default on your servers.

New-ItemProperty -Path 'HKLM:SystemCurrentControlSetControlTerminal ServerWinStationsRDP-Tcp' -Name 'UserAuthentication' -Value 1 -PropertyType dword -Force

The next command enables the predefined "Remote Desktop" Windows Firewall rule. We can then invoke the Get-NetFirewallRule PowerShell cmdlet to verify as shown in Figure 3.
Enable-NetFirewallRule -DisplayGroup 'Remote Desktop'

Enable Remote Desktop using the GUI

Open Server Manager and click Local Server from the left pane. Here, click Disable in the Remote Desktop field.

In the window that appears, enable the Allow remote connections to this computer setting. At this point, you can choose whether to allow NLA connections by enabling the corresponding setting but also to select which additional users or groups to connect other than administrators.

Once you’ve enabled the above setting, you’ll see a message to enable the corresponding Windows Firewall rule that will allow Remote Desktop Connection from any source address.

That’s it! Once you upgrade to Server Manager, you will see that the Remote Desktop setting has changed to Enabled.

Video liên quan

Chủ Đề