Citrix Receiver for Chrome
article #1152, updated 12 days ago

This was tough to find, but it appears current:

Subnet Changes Not Needed with OpenVPN-based SSL "VPN"
article #1117, updated 111 days ago

Definitions and items:

  • VPN stands for Virtual Private Network. A true VPN connects two different networks, using an encrypted “tunnel” through Internet or other non-private connectivity.
  • SSL VPN as defined by OpenVPN (and its wrappers like Watchguard SSL VPN), is not a true VPN. It is an SSL-encryption agreement between devices, building either a TCP tunnel or a UDP dataflow, over which tightly controlled network redirection traffic is distributed.
  • This means that the source and destination subnets, though not IPs, can be the same.

So let’s say that we need to give a PC which is sitting on someone else’s network, an encryption-protected connection for RDP and file sharing, to the office Windows machine at If SSL VPN were true VPN, this would require a subnet change at either the remote side or the home LAN, no further option. But it’s not, so we can do this:

  1. Restrict the SSL VPN capability on the office side, to just the domain controller (e.g., and the RDP destination (
  2. Make sure that the IP of the device on the remote side, is not a duplicate of either the domain controller or the RDP destination on the office side. So it can’t be either or
  3. We can do this by setting a static IP on the remote device; alternatively, we can change the DHCP subnet of the remote site. Either of these are vastly easier than changing subnets!
  4. The only loose end left, may be network printing on the remote side. Just make sure that the printer’s IP is not any of the vitals at the office, and is IPv4, and it will work just fine. Some printers (generally consumer-grade) are defaulting to semi-proprietary IPv6 modes in their Windows configurations, and at least some SSL VPN configurations will not play ball; in this scenario you’ll want to convert the PC setup(s) to use v4.

Use RDP over SSH tunneling instead of VPN
article #1112, updated 117 days ago

This tool appears to be made for this, among several other things:

Some firsthand reports:

There are a few others options on that page also.

Replacement for PuTTY
article #1090, updated 151 days ago

If you’ve ever wanted an easier interface, here’s SmarTTY:

Excellent remote support for Windows, including UAC handling
article #705, updated 371 days ago

Try this:

LogMeIn Settings for Routers & Firewalls
article #188, updated 483 days ago

Best information is now here for Windows and other software firewalls:

There is a link in the above for “whitelisting information” which really has the skinny for hardware firewalls:

AnyDesk: remarkable cross-platform remote control
article #966, updated 590 days ago

This is very interesting:

Video oddities in Windows 8.1
article #960, updated 608 days ago

This is Windows 8.1 only, not 7, not 10. It is not known whether 8.0 is affected.

The current known operative case is Citrix-hosted applications, in a dual-monitor situation. If you see a malfunction, go to Control Panel, All Control Panel Items, Display. If “Let me choose one scaling level for all my displays” is unchecked, check it. It will require logoff/logon. And the problem will be fixed.

SSH login without password
article #356, updated 702 days ago

Here’s a bash script! Works very nicely. Once run on one side and specifying a destination, one does not need a password to open that SSH link in the future.

echo "setup-autossh by Jonathan E. Brickman,"
if [ $# = 0 ]; then
	read -p "Please enter the SSH destination in the format user@host : " sshdest
elif [ $# = 1 ]; then
	echo "Usage: setup-autossh [user@destination]"
	exit 1
if [ ! -f ~/.ssh/id_rsa ]; then
	echo "Creating RSA key for authorization..."
	ssh-keygen -t rsa -N "" -f ~/.ssh/id_rsa
echo "Copying authorized RSA key to $sshdest ..."
remotecmd="cat > authorized_keys ; mkdir -p .ssh ; cat authorized_keys >> .ssh/authorized_keys ; rm authorized_keys"
cat ~/.ssh/ | ssh $sshdest $remotecmd

Enable RDP by Command Line
article #545, updated 832 days ago

For XP:

netsh firewall set service remotedesktop enable
netsh firewall set service remoteadmin enable
reg ADD "HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server" /v  fDenyTSConnections /t REG_DWORD /d 0

For 7:

netsh firewall Set service REMOTEDESKTOP ENABLE
netsh firewall set service REMOTEAdmin ENABLE
REG ADD "HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0

