question

IGOR M. avatar image
IGOR M. asked ·

Is Microsoft Terminal traffic analyzer available ?

Hello!

I know that Citrix protocol analyzer is supported and even special agent exists to catch user ID on Citrix server side.

https://www.dynatrace.com/support/doc/nam/getting-...

Is similar technology supported for Microsoft Terminal services? To catch user ID and track user session.

Kind thanks for all suggestions.

Regards,

Igor

namnam probecitrix
10 |2000000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 50.0 MiB each and 250.0 MiB total.

IGOR M. avatar image
IGOR M. answered ·

Am i right thinking that there is no point in trying to analyze Win Term Services cause no analyzer in AMD list?

Only Citrix ICA available :-(


2 comments Share
10 |2000000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 50.0 MiB each and 250.0 MiB total.

This is correct. There is no RDP analyzer because such analyzer will not provide much value. RDP is internally encrypted with RC4 (which is based on Diffie-Hellmann algorithm), so decryption off-path is not feasible. Analysis of the encrypted stream functionally equals generic TCP analysis, which the Generic TCP decode does.

0 Likes 0 · ·

Kris, we finished our testing on testbed and definitely we see almost nothing about apps in RDP . TCAM agent helps distinguish users + very general TCP level RDP health.

:-(

0 Likes 0 · ·
IGOR M. avatar image
IGOR M. answered ·

Thank you Kris.

We desided to do small test and run app as Windows Terminal Service RemoteApp (term seamles application). Will let results here....

Share
10 |2000000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 50.0 MiB each and 250.0 MiB total.

IGOR M. avatar image
IGOR M. answered ·

I dont understand if described at

https://www.dynatrace.com/support/doc/nam/citrix-x...

Citrix related story works for MS Term Services.

Can one help please!

1 comment Share
10 |2000000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 50.0 MiB each and 250.0 MiB total.

It doesn't work the same way. In fact, only the TCAM piece would work. There is no decode available for RDP. You may use generic TCP (and UDP) decodes for RDP, but these won't provide ore information beyond volumetric and general network quality (RTT, ACK RTT, retransmission rate).

However, some customers use it as an auxiliary data source for the whole application delivery chain monitoring - if expectations are set right, it works.

1 Like 1 · ·