Correct LDAP Setting for v1.1.0

2020-03-18 Thread Chris Lee
Hi All, I installed Guacamole on Fedora 31, based on the following guideline: https://kifarunix.com/how-to-setup-guacamole-web-based-remote-desktop-access-tool-on-ubuntu-18-04/ Question: Any sample LADP config to connect Windows Server for LADP User Auth? I tried the followng but seems not wo

RE: Correct LDAP Setting for v1.1.0

2020-03-18 Thread Chris Lee
Hi Pete, Can you share your existing working LDAP setting for my reference? Many thanks in advance. Regards, Chris -Original Message- From: PeteWale Sent: Wednesday, March 18, 2020 8:13 PM To: user@guacamole.apache.org Subject: Re: Correct LDAP Setting for v1.1.0 Hi Chris, I have the

Best Settings for RDP virtual disk drive

2020-03-24 Thread Chris Lee
Hi All, I am setup the Apache Guacamole 1.1.0 on Fedora Linux with AD Auth against with MS AD which using MySQL database as backend. For RDP Virtual Disk Drive setting, any recommendation for setup Drive Path for all AD users without share the same path? [cid:image001.png@01D60292.52911950] F

RE: Best Settings for RDP virtual disk drive

2020-03-25 Thread Chris Lee
${GUAC_USERNAME} See https://guacamole.apache.org/doc/gug/configuring-guacamole.html#parameter-tokens Regarding the /tmp directory, keep in mind that there are automatic cleanup jobs and usually iirc /tmp is tmpfs (ram) in fedora. Sent from my iPhone On 25. Mar 2020, at 03:50, Chris Lee

RE: Best Settings for RDP virtual disk drive

2020-03-25 Thread Chris Lee
guring-guacamole.html#parameter-tokens Regarding the /tmp directory, keep in mind that there are automatic cleanup jobs and usually iirc /tmp is tmpfs (ram) in fedora. Sent from my iPhone On 25. Mar 2020, at 03:50, Chris Lee mailto:chris...@centurycity.com.hk>> wrote:  Hi All, I am setu

Settings Batch Import?

2020-03-26 Thread Chris Lee
Hi All, Does User and Connections support batch import (e.g CSV file)? [cid:image001.png@01D60387.CF685D80] I want to create all the AD users and PC info on Excel, export to CVS file and import to MySQL database. Regards, Chris This message and its attachment (if any) are strictly confident

RE: Best Settings for RDP virtual disk drive

2020-03-26 Thread Chris Lee
way would’ve been user affinity, but I suppose that’s not really possible. Thanks, Bogdan On 25 Mar 2020, at 12:14, Chris Lee mailto:chris...@centurycity.com.hk>> wrote: Hi Bogdan, How about multiple severs mount the same NAS shared folder? /mnt/nas/guaca/${GUAC_USERNAME} Regards,

RE: fail2ban plugin for guacamole

2020-03-26 Thread Chris Lee
Hi Piviul, Are your jail.local config like this? [guacamole] enabled = true port = http,https logpath = /var/log/tomcat/catalina.*.log Seem the Warning message are logged on /var/log/message instead of /var/log/tomcat/catalina.*.log I have using Fedora 31. Regards, Chris -Origina

Intranet website

2020-04-12 Thread Chris Lee
Hi All, It is possible to setup connection for inTRAnet website? Instead of grant users whole RDP connection, I only allow them to access some webserver reside on internal network and use apache guacamole for access control. For example: Protocol: HTTPS: Host:

RE: Intranet website

2020-04-13 Thread Chris Lee
:31 PM, Chris Lee wrote: > It is possible to setup connection for inTRAnet website? Just to expand on this a little bit, this is correct - Guacamole is designed to be a remote desktop interface, not a general proxy or VPN tool. It supports common remote desktop protocols - RDP, SSH, Telnet,

Multiple WAN Network Interface

2020-04-14 Thread Chris Lee
HI All, It is possible to setup multiple Network WAN interface on Fedora Linux box, so it can increase the total WAN bandwidth and HA? WAN 1 \ WAN 2 --- Guacamole Server - LAN WAN 3 / Suppose each WAN link have 10Gb bandwidth, Then I get different URL for different department users: Account:

RE: Multiple WAN Network Interface

2020-04-14 Thread Chris Lee
ris On Apr 14, 2020, at 3:59 AM, Chris Lee mailto:chris...@centurycity.com.hk>> wrote:  HI All, It is possible to setup multiple Network WAN interface on Fedora Linux box, so it can increase the total WAN bandwidth and HA? WAN 1 \ WAN 2 --- cz – LAN WAN 3 / Suppose each WAN link hav

RE: Multiple WAN Network Interface

2020-04-14 Thread Chris Lee
Hi sciUser, Based on you example, it only have one uplink NIC 0? May I correct? Regards, Chris -Original Message- From: sciUser Sent: Wednesday, April 15, 2020 12:01 AM To: user@guacamole.apache.org Subject: Re: Multiple WAN Network Interface Yes you can do this, we do this all the tim

guacamole-auth-ldap Performance

2020-04-15 Thread Chris Lee
Hi All, The perform on LDAP Auth extension seem rather slow when first lookup on our Windows AD server. Does this extension is run on request, or it is a persistence service? Regards, Chris This message and its attachment (if any) are strictly confidential and sent to the designated recipie

RE: Multiple WAN Network Interface

2020-04-15 Thread Chris Lee
Hi, I found the solution by install shorewall package on my Fedora box : https://shorewall.org/MultiISP.html I testing for few hours, seems so far so good. [cid:image001.png@01D613DE.614297F0] Hope this help for others. Regards, Chris -Original Message- From: sciUser

RE: guacamole-auth-ldap Performance

2020-04-16 Thread Chris Lee
Hi Alessandro, About AD 600 users. Did you use setting like following: ldap-username-attribute: sAMAccountName ldap-user-search-filter:(objectClass=user)(!(objectCategory=computer)) ldap-max-search-results:400 Beside, do you got following msg after success auth Apr 16 18:16:58 server[313781]:

SSH Config issue

2020-04-20 Thread Chris Lee
Hi All, I try setup SSH Protocol to access Fedora Linux Server I success use PuTTY to SSH by Private Key and already change the key format to OpenSSH format [cid:image002.png@01D617EB.8EDD27A0] [cid:image001.png@01D617EB.19721A70] After input the Passphrase, it should following error prompt:

Email Notification on Login

2020-04-21 Thread Chris Lee
Hi All, Is it possible to send email notification when some users success logon the system? Regards, Chris This message and its attachment (if any) are strictly confidential and sent to the designated recipient(s) only. If you are not the intended recipient, please notify the sender by e-ma