Hi everybody.

I have a fresh install of guacamole on debian 10.3 tomcat 9 and Guac 1.1,
ldap (for active directory) and otp extension.

I have some security questions with RDP connexion :

User is connected on windows server over guacamole in Chrome or Firefox.
Windows  logoff , close navigator, open navigator with url of the last rdp
session. > guacamole start a news logon in windows without guacamole login
request.

I try to use in guacamole.propertie : api-session-timeout:1 or 0. but nothin
to do ...

It's an enormous security hole !

do you have the same behavior ?

Thank for your help.

Regard



--
Sent from: 
http://apache-guacamole-general-user-mailing-list.2363388.n4.nabble.com/

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to