<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Restrict RDP clipboard access with Harmony Endpoint when using Remote access. in Endpoint</title>
    <link>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/151703#M5798</link>
    <description>&lt;P&gt;Thanks.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I tried a remediation action to run the .bat file from an internet located web server and also from a location on the client PC (File://C:\Program Files (x86)\Checkpoint), but I get the same error in both cases:&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="clired.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/17028i11A8A94BB15C2110/image-size/medium?v=v2&amp;amp;px=400" role="button" title="clired.png" alt="clired.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;When I perform a curl, it downloads the file from the URL fine. Also when I test running the .bat file manually with admin rights, it adds the registry key ok.&amp;nbsp; Not sure if it's rights issue. I use Run as System option.&lt;/P&gt;</description>
    <pubDate>Fri, 24 Jun 2022 09:36:06 GMT</pubDate>
    <dc:creator>Antonis_Hassiot</dc:creator>
    <dc:date>2022-06-24T09:36:06Z</dc:date>
    <item>
      <title>Restrict RDP clipboard access with Harmony Endpoint when using Remote access.</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/150798#M5766</link>
      <description>&lt;P&gt;I am trying to ensure that users that log on to VPN and RDP to their machine, can't copy/paste text/files over the RDP session.&amp;nbsp;&lt;/P&gt;&lt;P&gt;In Windows 10 this is controlled by the following registry: HKLM/SOFTWARE\Microsoft\Terminal Server Client\DisableClipboardRedirection. Set REG_DWORD to 1 for disable, 0 for enable clipboard.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="clipboard.PNG" style="width: 408px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/16903i2E5DB577B39CE777/image-size/large?v=v2&amp;amp;px=999" role="button" title="clipboard.PNG" alt="clipboard.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;You can create a Compliance-&amp;gt;Applications/Files check -&amp;gt; Modify and check registry, input the above key name in the registry value name, check &lt;STRONG&gt;REG_DWORD&lt;/STRONG&gt; under "Reg type" and &lt;STRONG&gt;Exist&lt;/STRONG&gt; under "Check registry key and value".&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="redirection.PNG" style="width: 587px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/16904i4594B65D866D7A39/image-size/large?v=v2&amp;amp;px=999" role="button" title="redirection.PNG" alt="redirection.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;The problem is that it seems the compliance check, goes and checks the wrong registry location. I found this is the case, by selecting Action=Update. I found that it updated the following location:&amp;nbsp;HKLM/SOFTWARE\&lt;STRONG&gt;WOW6432Node&lt;/STRONG&gt;\Microsoft\Terminal Server Client\DisableClipboardRedirection. So it's adding&amp;nbsp;WOW6432Node in the registry path.&amp;nbsp;&lt;BR /&gt;Any idea on why this happens and how to resolve it?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Setting the REG_DWORD to 1 on the WOW6432Node path doesn't disable the Clipboard in RDP.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The machine running Harmony Endpoint is Windows 10 x64.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jun 2022 12:23:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/150798#M5766</guid>
      <dc:creator>Antonis_Hassiot</dc:creator>
      <dc:date>2022-06-14T12:23:37Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict RDP clipboard access with Harmony Endpoint when using Remote access.</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/151169#M5769</link>
      <description>&lt;P&gt;WOW6432Node is the correct path, at least according to this:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk64001" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk64001&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 17 Jun 2022 21:33:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/151169#M5769</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-06-17T21:33:05Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict RDP clipboard access with Harmony Endpoint when using Remote access.</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/151204#M5772</link>
      <description>&lt;P&gt;I had the same issue with another key under HKLM\Software in the past and according to TAC Compliance blade on 64-Bit windows checks are checking both 64-Bit and 32-Bit location of the registry but can only remediate the 32-Bit RegKey.&lt;/P&gt;&lt;P&gt;Therefore you have to workaround this by using a remediation batch script that will explicitly set the 64-Bit Key.&lt;/P&gt;&lt;P&gt;&lt;U&gt;Example remediation batch script content (everything in one line):&lt;/U&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT face="courier new,courier"&gt;reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Terminal Server Client" /v DisableClipboardRedirection /t REG_DWORD /d 1 /f &lt;STRONG&gt;/reg:64&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;this is because the Compliance blade is running as a 32-Bit process&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 19 Jun 2022 14:07:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/151204#M5772</guid>
      <dc:creator>kwo</dc:creator>
      <dc:date>2022-06-19T14:07:52Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict RDP clipboard access with Harmony Endpoint when using Remote access.</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/151382#M5780</link>
      <description>&lt;P&gt;When I input the above line under "Registry value", it fails to Save the configuration. I guess something is wrong with the statement. I am running 81.10 on a cloud server. Is there some documentation on how to write the statement for this version? I see that different versions position the 'reg add' verb in different locations in the statement.&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Jun 2022 15:59:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/151382#M5780</guid>
      <dc:creator>Antonis_Hassiot</dc:creator>
      <dc:date>2022-06-21T15:59:37Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict RDP clipboard access with Harmony Endpoint when using Remote access.</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/151397#M5781</link>
      <description>&lt;P&gt;You can't put this into the value field. You have to define a remediation action and use the above line in a .bat file hosted on a webserver and downloadable from all clients&lt;/P&gt;</description>
      <pubDate>Tue, 21 Jun 2022 21:00:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/151397#M5781</guid>
      <dc:creator>kwo</dc:creator>
      <dc:date>2022-06-21T21:00:21Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict RDP clipboard access with Harmony Endpoint when using Remote access.</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/151703#M5798</link>
      <description>&lt;P&gt;Thanks.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I tried a remediation action to run the .bat file from an internet located web server and also from a location on the client PC (File://C:\Program Files (x86)\Checkpoint), but I get the same error in both cases:&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="clired.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/17028i11A8A94BB15C2110/image-size/medium?v=v2&amp;amp;px=400" role="button" title="clired.png" alt="clired.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;When I perform a curl, it downloads the file from the URL fine. Also when I test running the .bat file manually with admin rights, it adds the registry key ok.&amp;nbsp; Not sure if it's rights issue. I use Run as System option.&lt;/P&gt;</description>
      <pubDate>Fri, 24 Jun 2022 09:36:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Restrict-RDP-clipboard-access-with-Harmony-Endpoint-when-using/m-p/151703#M5798</guid>
      <dc:creator>Antonis_Hassiot</dc:creator>
      <dc:date>2022-06-24T09:36:06Z</dc:date>
    </item>
  </channel>
</rss>

