Authentication via RDP Using Electronic Identifiers

Yurii Kraev, Georgii Firsov, Danil Kandakov · 2021

This paper's purpose is to develop a method of user authentication on a remote computer with an electronic identifier. This system is based on the standard implementation of the Remote Desktop Protocol (RDP) by Microsoft with built-in support for virtual channels. Thus, the purpose of this research is to study the applicability of these technologies for the target task and to test the ability of the implemented system to prevent attacks that use Microsoft's RDP implementation's vulnerabilities, such as various man-in-the-middle attacks. The communication channel established between a computer and a terminal to transfer authentication information via virtual channels is protected with AES encryption. Moreover, user authentication data on an electronic identifier is encrypted too. The article presents the results of testing the developed system against attacks based on the vulnerabilities listed above.

Read the paper · More papers on PaperTik