Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Thin client security issue

Status
Not open for further replies.

blegit1980

Programmer
Nov 21, 2005
53
CA
Here's the issue:

i got t5300 thin clients connecting to a windows 2003 server throutgh ICA. I actually have two servers. There is load balancing between the two to keep the system optimised. Once in a while when a user logs off he drops into the session that was open before!!! This is a huge security breach. Has anyone experienced this sort of issue before? Any insights would be greatly appreciated. Thanks in advance
 
Hi Patrick, thanks for the response. Some of the thin clients are logging on automatically with similar but differnt usernames... Some of the thins don<t log in automatically. The issue seems to be happening in both cases. Any insights?? Thanks
 
The only thing I can think of that would cause this is two or more different users loging on with the same credentials. So if you can find some commonality between the user logging off and the session they connect to, i.e. always on the same server, always using the same published app...

Try disabling workspace control.

Patrick Rouse
Microsoft MVP - Terminal Server
 
Hi patrick, this is just a possibility. Like i mentionned before, we use load balancing between two servers. I think that there`s a chance that a user could login at the same time that the load balancing goes in affect. This creates a session on the server. The user then logs in again, creating another session. When he logs out and returns the the login screen another user can press on the cancel button and get back to the first session. Could this be possible? Thanks
 
what do you mean?? Are there many types of load balancing? I'm new to this. i think that every thirty seconds there is load balancing for all the thin clients. The ICA session on the think clients reconnects to the appropriate server... I think that it`s at this point that two sessions could be created.. What do you think? Thanks
 
Yes, there are several different types of load balancers. You're probably using the Citrix Load Balancer that's part of Presentation Server Advanced or Enterprise Edition.

I'd suggest that you hire a consultant from a Citrix Partner to look at what's going on.

Patrick Rouse
Microsoft MVP - Terminal Server
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top