Question. For remote headless Windows servers which can only be accessed internally by specific people via RDP, is there really an added security benefit for locking the session after the “standard” 15 minutes? Going back to the lock screen doesn’t prevent RDP session hijacking if someone really wanted to do that.

Not only do we work remotely the majority of the time, our work computers already lock after 15 minutes of being idle.

Am I missing something here?

#infosec

No comments yet!

Infosec

!infosec@kbin.social

Create post

This magazine is dedicated to discussions on cybersecurity, network security, and information security. Whether you are an IT professional, a cybersecurity enthusiast, or simply concerned about online privacy and security, this is the place for you. Here you can share your knowledge, ask for advice, and discuss the latest news and trends in the world of cybersecurity. From encryption and malware to risk management and digital forensics, this category covers a wide range of topics related to information security. Join the conversation and let’s work together to keep our online world safe and secure.

Community stats

  • 1

    Monthly active users

  • 135

    Posts

  • 22

    Comments

Community moderators