ื›ื™ืฆื“ ืœื”ืกื™ืจ ืื–ื”ืจืช ืชืขื•ื“ื” ืžืขืฆื‘ื ืช ืขื‘ื•ืจ RDP

ื›ื™ืฆื“ ืœื”ืกื™ืจ ืื–ื”ืจืช ืชืขื•ื“ื” ืžืขืฆื‘ื ืช ืขื‘ื•ืจ RDP
ืฉืœื•ื ื”ื‘ืจ, ื–ื”ื• ืžื“ืจื™ืš ืกื•ืคืจ ืงืฆืจ ื•ืคืฉื•ื˜ ืœืžืชื—ื™ืœื™ื ื›ื™ืฆื“ ืœื”ืชื—ื‘ืจ ื‘ืืžืฆืขื•ืช RDP ื‘ืืžืฆืขื•ืช ืฉื ื“ื•ืžื™ื™ืŸ ืžื‘ืœื™ ืœืงื‘ืœ ืื–ื”ืจื” ืžืขืฆื‘ื ืช ืขืœ ืื™ืฉื•ืจ ื—ืชื•ื ืขืœ ื™ื“ื™ ื”ืฉืจืช ืขืฆืžื•. ื ืฆื˜ืจืš WinAcme ื•ื“ื•ืžื™ื™ืŸ.

ื›ืœ ืžื™ ืฉืื™ ืคืขื ื”ืฉืชืžืฉ ื‘-RPP ืจืื” ืืช ื”ื›ืชื•ื‘ืช ื”ื–ื•.

ื›ื™ืฆื“ ืœื”ืกื™ืจ ืื–ื”ืจืช ืชืขื•ื“ื” ืžืขืฆื‘ื ืช ืขื‘ื•ืจ RDP
ื”ืžื“ืจื™ืš ืžื›ื™ืœ ืคืงื•ื“ื•ืช ืžื•ื›ื ื•ืช ืœื ื•ื—ื•ืช ืจื‘ื” ื™ื•ืชืจ. ื”ืขืชืงืชื™, ื”ื“ื‘ืงืชื™ ื•ื–ื” ืขื‘ื“.

ืœื›ืŸ, ื ื™ืชืŸ ืœื“ืœื’ ืขืœ ื—ืœื•ืŸ ื–ื”, ื‘ืื•ืคืŸ ืขืงืจื•ื ื™, ืื ืชื ืคื™ืง ืื™ืฉื•ืจ ื—ืชื•ื ืขืœ ื™ื“ื™ ืจืฉื•ืช ืื™ืฉื•ืจื™ื ืžื”ื™ืžื ื” ืฉืœ ืฆื“ ืฉืœื™ืฉื™. ื‘ืžืงืจื” ื–ื”, ื‘ื•ืื• ื ืฆืคืŸ.

1. ื”ื•ืกืฃ ืจืฉื•ืžืช A

ื›ื™ืฆื“ ืœื”ืกื™ืจ ืื–ื”ืจืช ืชืขื•ื“ื” ืžืขืฆื‘ื ืช ืขื‘ื•ืจ RDP

ืื ื—ื ื• ืคืฉื•ื˜ ืžื•ืกื™ืคื™ื ืจืฉื•ืžืช A ื•ืžื›ื ื™ืกื™ื ืœืชื•ื›ื” ืืช ื›ืชื•ื‘ืช ื”-IP ืฉืœ ื”ืฉืจืช. ื–ื” ืžืฉืœื™ื ืืช ื”ืขื‘ื•ื“ื” ืขื ื”ื“ื•ืžื™ื™ืŸ.

2. ื”ื•ืจื“ ืืช WinAcme

ื”ื•ืจื“ ืืช WinAcme ืžื”ืืชืจ ืฉืœื”ื. ืขื“ื™ืฃ ืœืคืจื•ืง ืืช ื”ืืจื›ื™ื•ืŸ ืœืžืงื•ื ืฉืœื ืชื’ื™ืข ืืœื™ื•; ืงื‘ืฆื™ ื”ืคืขืœื” ื•ืกืงืจื™ืคื˜ื™ื ื™ื”ื™ื• ืฉื™ืžื•ืฉื™ื™ื ืขื‘ื•ืจืš ื‘ืขืชื™ื“ ืœืขื“ื›ื•ืŸ ืื•ื˜ื•ืžื˜ื™ ืฉืœ ื”ืื™ืฉื•ืจ. ืขื“ื™ืฃ ืœืจื•ืงืŸ ืืช ื”ืืจื›ื™ื•ืŸ ื‘-C:WinAcme.

3. ืคืชื— ืืช ื™ืฆื™ืื” 80

ื›ื™ืฆื“ ืœื”ืกื™ืจ ืื–ื”ืจืช ืชืขื•ื“ื” ืžืขืฆื‘ื ืช ืขื‘ื•ืจ RDP

ื”ืฉืจืช ืฉืœืš ืžืื•ืžืช ื‘ืืžืฆืขื•ืช http, ืื– ืื ื—ื ื• ืฆืจื™ื›ื™ื ืœืคืชื•ื— ื™ืฆื™ืื” 80. ื›ื“ื™ ืœืขืฉื•ืช ื–ืืช, ื”ื–ืŸ ืืช ื”ืคืงื•ื“ื” ื‘- Powershell:

New-NetFirewallRule -DisplayName 80-TCP-IN -Direction Inbound -Protocol TCP -Enabled True -LocalPort 80

4. ืืคืฉืจ ื‘ื™ืฆื•ืข ืกืงืจื™ืคื˜

ืขืœ ืžื ืช ืฉ-WinAcme ืชื•ื›ืœ ืœื™ื™ื‘ื ืืช ื”ืชืขื•ื“ื” ื”ื—ื“ืฉื” ืœืœื ื‘ืขื™ื•ืช, ืขืœื™ืš ืœื”ืคืขื™ืœ ืกืงืจื™ืคื˜ื™ื. ื›ื“ื™ ืœืขืฉื•ืช ื–ืืช, ืขื‘ื•ืจ ืืœ ื”ืชื™ืงื™ื” /Scripts/

ื›ื™ืฆื“ ืœื”ืกื™ืจ ืื–ื”ืจืช ืชืขื•ื“ื” ืžืขืฆื‘ื ืช ืขื‘ื•ืจ RDP

ืœืคื ื™ ื”ืคืขืœืช WinAcme, ืขืœื™ื ื• ืœืืคืฉืจ ืœืฉื ื™ ืกืงืจื™ืคื˜ื™ื ืœืคืขื•ืœ. ื›ื“ื™ ืœืขืฉื•ืช ื–ืืช, ืœื—ืฅ ืคืขืžื™ื™ื ื›ื“ื™ ืœื”ืคืขื™ืœ ืืช PSRDSCerts.bat ืžื”ืชื™ืงื™ื™ื” ืขื ืกืงืจื™ืคื˜ื™ื.

5. ื”ืชืงืŸ ืืช ื”ืื™ืฉื•ืจ

ื›ื™ืฆื“ ืœื”ืกื™ืจ ืื–ื”ืจืช ืชืขื•ื“ื” ืžืขืฆื‘ื ืช ืขื‘ื•ืจ RDP

ืœืื—ืจ ืžื›ืŸ, ื”ืขืชืง ืืช ื”ืฉื•ืจื” ืœืžื˜ื” ื•ื”ื–ืŸ ืืช ืฉื ื”ื“ื•ืžื™ื™ืŸ ื“ืจื›ื• ืชืจืฆื” ืœื”ืชื—ื‘ืจ ืœืฉืจืช ื•ื”ืคืขืœ ืืช ื”ืคืงื•ื“ื”.

C:Winacmewacs.exe --target manual --host VASHDOMAIN.RU --certificatestore My --installation script --installationsiteid 1 --script "ScriptsImportRDListener.ps1" --scriptparameters "{CertThumbprint}"

ืœืื—ืจ ืžื›ืŸ, ืื™ืฉื•ืจ ื—ืชื™ืžืช ื”ื“ื•ืžื™ื™ืŸ ื™ื—ืœื™ืฃ ืืช ื”ื™ืฉืŸ. ืื™ืŸ ืฆื•ืจืš ืœืขื“ื›ืŸ ื“ื‘ืจ ื‘ืื•ืคืŸ ื™ื“ื ื™; ืœืื—ืจ 60 ื™ื•ื, ื”ืชื•ื›ื ื™ืช ืชื—ื“ืฉ ืืช ื”ืชืขื•ื“ื” ืขืฆืžื”.

ืžื•ึผื›ึธืŸ! ืืชื” ื’ื“ื•ืœ ื•ื ืคื˜ืจืช ืžื”ื‘ืื’ ื”ืžืขืฆื‘ืŸ.

ืื™ืœื• ืฉื’ื™ืื•ืช ืžืขืจื›ืช ืžืขืฆื‘ื ื•ืช ืื•ืชืš?

ื›ื™ืฆื“ ืœื”ืกื™ืจ ืื–ื”ืจืช ืชืขื•ื“ื” ืžืขืฆื‘ื ืช ืขื‘ื•ืจ RDP

ืžืงื•ืจ: www.habr.com

ื”ื•ืกืคืช ืชื’ื•ื‘ื”