In SPS versions 6.2 and later, you can export files from audit trails after RDP file transfer through clipboard.
In SPS versions 6.5 and later, you can export files from audit trails after RDP file transfer through disk redirection too.
NOTE: You can export files from audit trails that were recorded before the SPS versions described above, if the Clipboard or Disk redirect channel was recorded.
To export files from these audit trails, make sure that you have the appropriate version of the Safeguard Desktop Player installed.
For more information on the process in the Safeguard Desktop Player application, see Exporting files from an audit trail after RDP file transfer through clipboard or disk redirection in the Safeguard Desktop Player User Guide.
To configure SPS to enable extracting files from audit trails after RDP file transfer through clipboard or disk redirection
- Navigate to Traffic Controls > RDP > Connections and open an existing connection (or create and configure a new connection).
- Expand the connection tab, scroll down to the Channel policy drop-down list, and select a channel policy of your choice from the drop-down list options.
- Navigate to Traffic Controls > RDP > Channel Policies and open the channel policy that you selected from the Channel policy drop-down list under Traffic Controls > RDP > Connections.
- Ensure that the Clipboard or Redirect drop-down list option under Type and the Record audit trail checkbox are both selected.
- (Optional) Click to save your configuration.
From SPS version 6.11, you can enable auditing the sound that is transferred between an RDP client and the server.
Using the Safeguard Desktop Player application, you can export the input and output sound recorded on the side of the audited user to a .wav file.
NOTE: To export audio files from the audit trails, make sure that you have the appropriate version of Safeguard Desktop Player installed.
For more information on the sound export process in Safeguard Desktop Player, see Exporting the sound from an audit trail in the Safeguard Desktop Player User Guide.
To configure SPS to enable extracting sound from audit trails
-
Navigate to Traffic Controls > RDP > Channel Policies and open the policy that you want to use for sound auditing or create and configure a new connection for this purpose.
For example, you can use the all policy for sound auditing as well.
-
From the Type drop-down, open Sound and Dynamic virtual channel and make sure that the Record audit trail checkbox is selected for both of these channel types.
NOTE: If the Record audit trail checkbox is selected only for the Sound channel, only the output sound (the one that is received by the audited user) is recorded in the audit trail.
If the Record audit trail checkbox is selected for the Dynamic virtual channel, both the input sound (the one that comes from the audited user) and output sound (the one that is received by the audited user) are recorded.
TIP: To play back the video file of the recorded audit trails with sound, enable the Record audit trail checkbox for the Drawing channel as well.
-
Click to save your configuration.
The Share connection policy with SPP option enables you to use RDP connection policies in SPP to initiate sessions.
To share an RDP connection policy
-
Navigate to Traffic Controls > RDP > Connections.
Figure 224: Traffic Controls > RDP > Connections — Functions shared with SPP
-
Select Share connection policy with SPP.
NOTE: The Share connection policy with SPP checkbox is enabled only if you have linked an SPP appliance to SPS.
-
Set the following configuration for the RDP connection policy:
-
In Target, select Inband destination selection.
-
Unselect Require Gateway Authentication on the SPS Web Interface.
-
In AA plugin, consider the following, then select the AA plugin of your choice:
-
Select an AA plugin different from the safeguard_default plugin.
-
Alternatively, leave AA plugin unset.
|
WARNING: Do not delete or rename the safeguard_default AA plugin; otherwise, you are not able to use the Share connection policy with SPS option. If you have modified the safeguard_default plugin, to proceed, revert your changes. |
-
In Credential Store, select SGCredStore.
NOTE: The SGCredStore option is available only if you have linked an SPP appliance to SPS.
-
To save your changes, click Commit.
If you have joined an SPP to SPS, the Share connection policy with SPS option enables you to use RDP connection policies in SPS to initiate sessions.
To share an RDP connection policy
-
Navigate to Traffic Controls > RDP > Connections.
Figure 225: Traffic Controls > RDP > Connections — Functions shared with SPP
-
Select Share connection policy with SPS.
NOTE: The Share connection policy with SPS checkbox is enabled only if you have linked an SPP appliance to SPS.
-
Set the following configuration for the RDP connection policy:
-
Unselect Require Gateway Authentication on the SPS Web Interface.
-
In AA plugin, consider the following:
-
Select an AA plugin different from the safeguard_default plugin.
-
Alternatively, leave AA plugin unset.
|
WARNING: Do not delete or rename the safeguard_defaultAA plugin; otherwise, you are not able to use the Share connection policy with SPS option. If you have modified the safeguard_default plugin, to proceed, revert your changes. |
-
To save your changes, click Commit.