Windows RDP – Allow Non-Admin Users RDP Session Kill Rights on Windows Server 2008 R2

remote-desktop-serviceswindows-server-2008-r2

Is there a way to allow a non admin user access to kill rogue rdp sessions on a Windows Server 2008 R2 Terminal Server?

If not possible for a regular user, is there a way to allow an admin minimal rights to only be able to kill rdp sessions/reboot the server if needed?

Best Answer

According this technet post you can set "Logoff" or/and "Disconnect" permission in Remote Desktop Session Host Configuration.

To configure permissions for a connection:

  1. On the RD Session Host server, open Remote Desktop Session Host Configuration. To open Remote Desktop Session Host Configuration, click Start, point to Administrative Tools, point to Remote Desktop Services, and then click Remote Desktop Session Host Configuration.
  2. Under Connections, right-click the name of the connection, and then сlick Properties.
  3. In the Properties dialog box for the connection, on the Security tab, configure the permissions as appropriate for your environment, and then click OK.