Netscaler gateway RDP proxy connection blocked by Network Firewall

Netscaler gateway RDP proxy connection blocked by Network Firewall

book

Article ID: CTX228470

calendar_today

Updated On:

Description

Users are not able to launch RDP after connecting through RDP Proxy.
After logging in successfully they are able to click on RDP Application and download the "app.rdp" file.

We observe this error message on the Client PC's.

User-added image

When taking a packet capture on Netscaler or Backend Server we notice no connections opened towards the Backend Server for RDP Application on TCP Port 3389.
 

Resolution

Some network firewalls deployed in b/w Clients and Netscaler can block/TCP reset incoming connections after the "app.rdp" file is downloaded and launched.

Even though this traffic is on the same Destination Port 443 which was used earlier to connect to VPN and Download the RDP File.
  • We may need to allow the applications like Ms-rdp, Ssl, Cotp, T.120 in firewall rules to allow this traffic.