Remote Desktop is the Microsoft operating system comes with remote management tools, it can let it administrators on their own computer remote operation, equivalent to the other side of the keyboard and mouse to extend to their own machine, management efficiency greatly improved.
Remote Desktop Services uses the RDP protocol, which corresponds to TCP 3389 ports. By default, the client Remote Desktop is turned off. So we need to turn it on manually.
First we look at the default settings for Remote Desktop, right-click the "This Computer" property
650) this.width=650; "title=" clip_image002 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image002 "src=" http://s3.51cto.com/wyfs02/M02/5A/27/ Wkiol1t4dzfb1ltvaafm5fme0b8928.jpg "" 557 "height=" 419 "/>
Click "Remote Settings" on the left.
650) this.width=650; "title=" clip_image003 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image003 "src=" http://s3.51cto.com/wyfs02/M00/5A/27/ Wkiol1t4dzidb1tnaad6dw31t4a358.jpg "" 344 "height=" 421 "/>
You can see that the default is off. If you want to turn it on, just click "Allow remote connection to this computer" to make sure.
If it is one or a few units can be done this way, the workload is not small. But if it's hundreds of or more, it's probably a pain in the bed.
Fortunately there are Group policies, usually using Microsoft operating system of large companies will use domain to manage computers, this time Group Policy comes in handy, see how to set up to solve the above problems
Switch to Domain control, open GPMC (Group Policy Management Console)
You can edit the default domain policy directly
Change the following 2 items
(1) Computer Configuration-policies-Administrative Templates-windows Components-Remote Desktop Services-Remote Desktop Session Host-connections
(2) Computer Configuration-policies-Administrative Templates-Network-network connection-windows firewall-domain profile
Description: The 1th item is to change the domain policy to enable Remote Desktop, and the 2nd to change the client FW profile to allow Remote Desktop inbound data exceptions
650) this.width=650; "title=" clip_image005 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image005 "src=" Http://s3.51cto.com/wyfs02/M01/5A/27/wKioL1T4DzmDVRAmAAHFZ _8mlp8946.jpg "" 558 "height=" 399 "/>
When you are finished, wait for the client policy to take effect.
By default, the computer policy changes are in effect after the computer restarts, if the machine does not restart, it can automatically take effect, the time is 90-120 minutes, in the experimental environment we enter "Gpupdate/force" under the client command line immediately refresh policy.
650) this.width=650; "title=" clip_image006 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image006 "src=" http://s3.51cto.com/wyfs02/M02/5A/27/ Wkiol1t4dznwxjvbaadpz8rfy3u327.jpg "" 468 "height=" 308 "/>
By completing the steps above, you can have Remote Desktop to all clients on your IT administrator's machine.
650) this.width=650; "title=" clip_image007 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image007 "src=" http://s3.51cto.com/wyfs02/M00/5A/27/ Wkiol1t4dzqilp8naadgln1hdws839.jpg "" 338 "height=" 313 "/>
Connection Successful!
Bulk enable Windows Client Remote Desktop