AndreaGiacomin
Bit poster
Hi,
Is it possibile on RAS 17.5 restrict access on Parallels Client and on HTML5 Gateway to specific users or groups in Active Directory.
In a scenario where there are hundreds or thousands of users is possible that an attacker guess the username and password of user, register the 2FA (if the user never used the RAS services) and access the application exposed to all domain users.
The possibile workarounds I can think of are:
- protect all users with 2FA. Very impractical.
- filter all application to specific user or group.
Andrea Giacomin
Is it possibile on RAS 17.5 restrict access on Parallels Client and on HTML5 Gateway to specific users or groups in Active Directory.
In a scenario where there are hundreds or thousands of users is possible that an attacker guess the username and password of user, register the 2FA (if the user never used the RAS services) and access the application exposed to all domain users.
The possibile workarounds I can think of are:
- protect all users with 2FA. Very impractical.
- filter all application to specific user or group.
Andrea Giacomin

