Kaspersky Next XDR Expert

Remote access from a Linux-based device with OSMP Console to a Windows-based managed device

Remote desktop connection (RDP)

Prerequisites

Before you start, make sure that you have done the following:

  • Remote connection is allowed in the operating system settings of the managed device.
  • On the managed device running Windows, Network Agent version 13.0 or later is installed.
  • The administrator has the Start RDP sessions right to establish RDP connections.

To connect to a Windows-based managed device from a Linux-based OSMP Console by using RDP:

  1. In the main menu, go to the Assets (Devices) → Managed devices section or open a device selection.
  2. Select the check box next to the managed device to which you want to connect remotely, and then click the Connect to Remote Desktop button.

    The Connect to Remote Desktop window opens.

    If you select multiple devices, a mobile device, or a device running macOS, the Connect to Remote Desktop button will be disabled.

  3. In the Connect to Remote Desktop window, select the RDP connection type.
  4. If the remote connection is not allowed in the operating system settings of the managed device, allow remote connection centrally by clicking the Change settings button.

    If the settings are applied correctly, a notification is displayed. Also, on the managed device, in the SettingsSystemRemote Desktop section, the Enable Remote Desktop option is enabled.

    If the remote connection is allowed in the operating system settings of the managed device, the Change settings button is not displayed.

  5. Download the klsctunnel utility by clicking the Download button, and then run it.

    If the utility file is unavailable for download, an error message is displayed. In this case, download the utility manually.

  6. Generate a text blob with encoded connection parameters by clicking the Generate blob button, and then copy and paste the text into the corresponding field in the klsctunnel utility.

    A blob contains the settings required to establish a connection between Administration Server and the managed device. A blob is valid for three minutes. If it has expired, generate a new blob.

  7. In the klsctunnel utility, if you use a proxy server, specify the proxy server connection settings.

    The klsctunnel utility displays the address and port of the connection to the remote device.

    The utility allows the administrator to close the tunnel connection. If the tunnel connection is closed, the current connection to the remote desktop is terminated.

  8. Run an RDP client and connect it to the managed device by using the address and port provided by the klsctunnel utility.

A connection to the managed device is established, and the desktop is available in the RDP client window.

Connection to the current remote desktop session of the user is established without the user's knowledge. Once the administrator connects to the session, the device user is disconnected from the session without notification.

Virtual Network Computing system (VNC)

Prerequisites

Before you start, make sure that you have done the following:

  • On the managed device running Windows, Network Agent version 13.0 or later is installed.
  • On the managed device running Windows, the VNC server is installed.
  • The administrator has the Initiate tunneling right to establish the tunnel connection for VNC.

To connect to a Windows-based managed device from a Linux-based OSMP Console by using VNC:

  1. In the main menu, go to the Assets (Devices) → Managed devices section or open a device selection.
  2. Select the check box next to the managed device to which you want to connect remotely, and then click the Connect to Remote Desktop button.

    The Connect to Remote Desktop window opens.

    If you select multiple devices, a mobile device, or a device running macOS, the Connect to Remote Desktop button will be disabled.

  3. In the Connect to Remote Desktop window, select the connection type VNC.
  4. Download the klsctunnel utility by clicking the Download button, and then run it.

    When downloading the utility, take into account the following:

  5. In the Connect to Remote Desktop window, specify the VNC connection port. By default, port 5900 is used.
  6. Generate a text blob with encoded connection parameters by clicking the Generate blob button, and then copy and paste the text into the corresponding field in the klsctunnel utility.

    A blob contains the settings required to establish a connection between Administration Server and the managed device. A blob is valid for three minutes. If it has expired, generate a new blob.

  7. In the klsctunnel utility, if you use a proxy server, specify the proxy server connection settings.

    The klsctunnel utility displays the address and port for the local connection of the VNC client.

    The utility allows the remote user to close the tunnel connection. If the tunnel connection is closed, the current connection to the remote desktop is terminated.

  8. Run a VNC client and connect it to the managed device by using the address and port provided by the klsctunnel utility.

Connection to the managed device is established, and the desktop is available in the VNC client window.