Hi there,
i recently set up a server in our DMZ with RD Web and RD Gateway role on it.
The RD Web should use the RD Gateway to authenticate which works fine. But after the user tries to connect to a "full desktop session". He gets the warning"
There are some sites out there recommending to not perform the check. But my CRL is on a HTTP server and i let the gateway Server access this address and also opened a port for the ldap query to the internal CA (these are the 2 CRL points).
I can see that the gateway server is not checking any of these or is this a task performed by the client? We want to allow external clients so "importing CAs" is not the solution.
Best regards
Stephan