Remote Desktop Protocol - Off-Campus Access

When Windows Remote Desktop Protocol (RDP) is enabled on a Windows Platform as a Service (WPaaS) system, the Windows Firewall limits incoming connections to on-campus networks. Connections via RDP to WPaaS systems require use of the Campus VPN or the Cisco AnyConnect Management Tunnel

More Details

Beginning December 2019, MiWorkspace limited incoming connections for RDP to on-campus networks. Limitations on RDP traffic were put in place because vulnerabilities in the protocol have been exploited by attackers to disrupt and/or gain unauthorized access to systems.

How to Connect From Off-Campus

In order to connect to a WPaaS computer from off-campus, customers must use the campus Virtual Private Network (VPN) or the Cisco AnyConnect Management Tunnel on the device they are connecting from. Customers may install a Cisco VPN Client to use the campus VPN. Cisco VPN Clients are available for Windows, macOS, iOS, Linux, and Android operating systems. The Cisco VPN client can be installed on personally-owned devices. Customers connecting from a WPaaS device will utilize the Cisco AnyConnect Management Tunnel to connect.

Permitted Networks for Remote Desktop Protocol Access

The table below shows the networks from which RDP connections are permitted:

Network

Description

Network

Description

35.1.0.0/16

Ann Arbor (UMNet Authenticated Wireless)

35.2.0.0/16

Ann Arbor (UMNet Authenticated Wireless)

35.3.0.0/16

Ann Arbor (UMNet Authenticated Wireless)

65.117.69.14/32

LSA Earth and Environmental Sciences - Camp Davis (Jackson, WY)

67.194.0.0/16

Ann Arbor (UMNet, Unauthenticated Wireless and Residence Halls)

141.211.0.0/16

Ann Arbor (UMNet)

141.212.0.0/16 

Ann Arbor (College of Engineering)

141.213.0.0/17 

Ann Arbor (College of Engineering) 

141.213.128.0/17 

Ann Arbor (UMNet) 

141.214.0.0/16 

Ann Arbor (Michigan Medicine)

141.215.0.0/16

141.215.0.0/16

141.216.0.0/16

Flint

192.231.253.0/14

Ann Arbor (UMNet NOC)

198.108.200.0/22

Biological Station (Pellston, MI)

198.110.84.0/24

198.110.84.0/24

207.74.194.0/24

Alumni Association - Camp Michigania (Boyne City)

207.75.144.0/20

Ann Arbor (UMNet WAN-connected off-campus networks)

2607:F018::/32

Ann Arbor