question

TechGuyMS1-3710 avatar image
0 Votes"
TechGuyMS1-3710 asked KarlieWeng-MSFT answered

Best Practice for Remote Desktop Access of Windows 10 Virtual Machine

Dear Experts,

I want to use a Win10 VM on Azure as virtual desktop. For RDP, I will have to open port 3389. I want to know what are best practices for securely using RDP? I saw on Azure that VPN is an option. If I connect from a regular laptop/desktop to VM via Azure VPN, will it be free or there will be charges? 

Finally, if I make an inbound rule and open all connections on 3389 for a brief time to RDP to VM and then immediately block all inbound connection to Azure, will it be a very secure practice? 

Looking for your insight. Much appreciate your help.

Thanks

azure-virtual-machineswindows-10-securityazure-vpn-gatewayazure-security-centerazure-virtual-machines-networking
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

AndreasBaumgarten avatar image
0 Votes"
AndreasBaumgarten answered

Hi @TechGuyMS1-3710,

Azure VPN is not free of costs.
https://azure.microsoft.com/en-us/pricing/details/vpn-gateway/

Maybe the Just-In-Time access is an option for you:
https://docs.microsoft.com/en-us/azure/security-center/just-in-time-explained


(If the reply was helpful please don't forget to upvote and/or accept as answer, thank you)

Regards
Andreas Baumgarten

5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

KarlieWeng-MSFT avatar image
0 Votes"
KarlieWeng-MSFT answered

Hello @TechGuyMS1-3710

There some ways introduced in this article: Securely connect to your Azure Virtual Machines – the options

1.RDP using a Private IP address across a Site to Site VPN
2.Lock down RDP to a source IP or IP Range
3.Just-in-time VM access
4.Public Load Balancer with Network Address Translation (NAT)
5.Provision a Jumphost VM
6.Azure Bastion – a jump host PaaS service

Best Regards
Karlie


If the Answer is helpful, please click "Accept Answer" and upvote it.

5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.