<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Prevent horizon RDSH User from remote desktop to other systems in Horizon Desktops and Apps</title>
    <link>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/Prevent-horizon-RDSH-User-from-remote-desktop-to-other-systems/m-p/2842322#M93725</link>
    <description>&lt;P&gt;I think you can:&lt;/P&gt;&lt;P&gt;- block port 3389 (outbound) on a firewall&lt;/P&gt;&lt;P&gt;- remove C:\windows\system32\mstsc.exe or at least rename it or set advanced permissions so non-admins users are not able to execute the file&lt;/P&gt;&lt;P&gt;- set AppLocker policy:&amp;nbsp;&lt;A href="https://social.technet.microsoft.com/wiki/contents/articles/5211.how-to-configure-applocker-group-policy-to-prevent-software-from-running.aspx" target="_blank"&gt;https://social.technet.microsoft.com/wiki/contents/articles/5211.how-to-configure-applocker-group-policy-to-prevent-software-from-running.aspx&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 16 Apr 2021 20:48:14 GMT</pubDate>
    <dc:creator>rogal7</dc:creator>
    <dc:date>2021-04-16T20:48:14Z</dc:date>
    <item>
      <title>Prevent horizon RDSH User from remote desktop to other systems</title>
      <link>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/Prevent-horizon-RDSH-User-from-remote-desktop-to-other-systems/m-p/2842062#M93709</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;I need to isolate my horizon RDS users so I want they couldn't&amp;nbsp; remote desktop to other systems after they connect to RDS server. also we need they couldn't use and see other system share but a Z drive that I map to them. I am using Horizon 2006 and windows server 2019.&lt;/P&gt;&lt;P&gt;Thank you in advance&lt;/P&gt;</description>
      <pubDate>Thu, 15 Apr 2021 19:37:19 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/Prevent-horizon-RDSH-User-from-remote-desktop-to-other-systems/m-p/2842062#M93709</guid>
      <dc:creator>hamidja</dc:creator>
      <dc:date>2021-04-15T19:37:19Z</dc:date>
    </item>
    <item>
      <title>Re: Prevent horizon RDSH User from remote desktop to other systems</title>
      <link>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/Prevent-horizon-RDSH-User-from-remote-desktop-to-other-systems/m-p/2842322#M93725</link>
      <description>&lt;P&gt;I think you can:&lt;/P&gt;&lt;P&gt;- block port 3389 (outbound) on a firewall&lt;/P&gt;&lt;P&gt;- remove C:\windows\system32\mstsc.exe or at least rename it or set advanced permissions so non-admins users are not able to execute the file&lt;/P&gt;&lt;P&gt;- set AppLocker policy:&amp;nbsp;&lt;A href="https://social.technet.microsoft.com/wiki/contents/articles/5211.how-to-configure-applocker-group-policy-to-prevent-software-from-running.aspx" target="_blank"&gt;https://social.technet.microsoft.com/wiki/contents/articles/5211.how-to-configure-applocker-group-policy-to-prevent-software-from-running.aspx&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 16 Apr 2021 20:48:14 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Horizon-Desktops-and-Apps/Prevent-horizon-RDSH-User-from-remote-desktop-to-other-systems/m-p/2842322#M93725</guid>
      <dc:creator>rogal7</dc:creator>
      <dc:date>2021-04-16T20:48:14Z</dc:date>
    </item>
  </channel>
</rss>

