True, that is why Windows 2003 SP1 supports TLS authentication that prevents
MITM attacks...
How to configure a Windows Server 2003 terminal server to use TLS for server
authentication
http://support.microsoft.com/?id=895433
--
Mike
Microsoft MVP - Windows Security
"Guillaume Tamboise" <(E-Mail Removed)> wrote in message
news:%(E-Mail Removed)...
> Miha Pihler [MVP] wrote:
>> Depending on the task that you are working on. I could would still
>> recommend
>> using RDP. RDP provides secure connection from remote PC to e.g. server
>> (connection is encrypted).
>
> Connection is encrypted, but the server is poorly authenticated -> RDP
> is susceptible to man-in-the-middle attacks.
>
>
> Cheers