working on explosion tutorial and get stopped with the freerdp. it does not match the walkthrough and I do not know what is wrong. any ideas what I am screwing up?
─[us-starting-point-vip-1-dhcp]─[10.10.14.92]─[manhands22@htb-kv51daaprm]─[~]
└──╼ [★]$ xfreerdp /v: 10.129.120.41
[20:52:01:829] [3162:3162] [WARN][com.freerdp.client.common.cmdline] - ----------------------------------------
[20:52:01:829] [3162:3162] [WARN][com.freerdp.client.common.cmdline] - Using deprecated command-line interface!
[20:52:01:829] [3162:3162] [WARN][com.freerdp.client.common.cmdline] - This will be removed with FreeRDP 3!
[20:52:01:829] [3162:3162] [WARN][com.freerdp.client.common.cmdline] - ----------------------------------------
[20:52:01:829] [3162:3162] [WARN][com.freerdp.client.common.compatibility] - 10.129.120.41 → /v:10.129.120.41
[20:52:01:829] [3162:3162] [WARN][com.freerdp.client.common.compatibility] -
[20:52:01:830] [3162:3163] [INFO][com.freerdp.client.x11] - No user name set. - Using login name: manhands22
[20:52:01:186] [3162:3163] [WARN][com.freerdp.crypto] - Certificate verification failure ‘self signed certificate (18)’ at stack position 0
[20:52:01:186] [3162:3163] [WARN][com.freerdp.crypto] - CN = Explosion
[20:52:01:186] [3162:3163] [ERROR][com.freerdp.crypto] - @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
[20:52:01:186] [3162:3163] [ERROR][com.freerdp.crypto] - @ WARNING: CERTIFICATE NAME MISMATCH! @
[20:52:01:186] [3162:3163] [ERROR][com.freerdp.crypto] - @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
[20:52:01:186] [3162:3163] [ERROR][com.freerdp.crypto] - The hostname used for this connection (10.129.120.41:3389)
[20:52:01:186] [3162:3163] [ERROR][com.freerdp.crypto] - does not match the name given in the certificate:
[20:52:01:186] [3162:3163] [ERROR][com.freerdp.crypto] - Common Name (CN):
[20:52:01:186] [3162:3163] [ERROR][com.freerdp.crypto] - Explosion
[20:52:01:186] [3162:3163] [ERROR][com.freerdp.crypto] - A valid certificate for the wrong name should NOT be trusted!
Certificate details for 10.129.120.41:3389 (RDP-Server):
Common Name: Explosion
Subject: CN = Explosion
Issuer: CN = Explosion
Thumbprint: ec:e6:8b:8c:12:f7:f2:4c:9f:b7:ee:af:e0:e2:84:ea:48:b3:75:a4:5d:11:30:66:4a:01:a0:d9:35:41:ab:42
The above X.509 certificate could not be verified, possibly because you do not have
the CA certificate in your certificate store, or the certificate has expired.
Please look at the OpenSSL documentation on how to add a private CA to the store.
Do you trust the above certificate? (Y/T/N)
have the exact same problem. If I add /cert:ignore /u:Administrator I get;
┌─[us-starting-point-vip-1-dhcp]─[10.10.14.23]─[ddw@htb-y4ggbuavja]─[~]
└──╼ [★]$ xfreerdp -v 10.129.1.13 /ignore:cert /u:Administrator
[05:04:57:872] [6657:6657] [ERROR][com.winpr.commandline] - Failed at index 3 [/ignore:cert]: Invalid sigil. If I omit the /ignore:cert I get what you got and if I omit /u: Administrator it uses my username. any help would be appreciated.
Hi ddw,
You have likely solved this by now however the issue was with your syntax order:
You used /ignore:cert
Should be /cert:ignore
I came here for another issue with this lab/machine:
$ xfreerdp /v:10.129.225.101 /u:Administrator /cert:ignore /dynamic-resolution
Password:
[13:26:06:537] [76297:76300] [ERROR][com.freerdp.core.connection] - Timeout waiting for activation
[13:26:06:538] [76297:76297] [ERROR][com.freerdp.core] - freerdp_abort_connect:freerdp_set_last_error_ex ERRCONNECT_CONNECT_CANCELLED [0x0002000B]
I am at a loss as to how to remediate this issue. I am going to try a different RDP client and see if that corrects the issue.
~]$ sudo xfreerdp /console /u:htb-student /p:‘Password’ /v:10.129.193.3
[21:49:47:962] [4061:4062] [WARN][com.freerdp.crypto] - Certificate verification failure ‘self-signed certificate (18)’ at stack position 0
[21:49:47:962] [4061:4062] [WARN][com.freerdp.crypto] - CN = WS01
[21:49:47:264] [4061:4062] [WARN][com.freerdp.core.nla] - SPNEGO received NTSTATUS: STATUS_LOGON_FAILURE [0xC000006D] from server
[21:49:47:264] [4061:4062] [ERROR][com.freerdp.core] - nla_recv_pdu:freerdp_set_last_error_ex ERRCONNECT_LOGON_FAILURE [0x00020014]
[21:49:47:264] [4061:4062] [ERROR][com.freerdp.core.rdp] - rdp_recv_callback: CONNECTION_STATE_NLA - nla_recv_pdu() fail
[21:49:47:264] [4061:4062] [ERROR][com.freerdp.core.transport] - transport_check_fds: transport->ReceiveCallback() - -1
-[Fri Jan 03-21:49:4721:49]-[f8cthyn@recreem]-
-[~]$ sudo xfreerdp /cert-tofu /u:htb-student /p:‘Password’ /v:10.129.193.3
[21:51:03:145] [4098:4099] [WARN][com.freerdp.crypto] - Certificate verification failure ‘self-signed certificate (18)’ at stack position 0
[21:51:03:145] [4098:4099] [WARN][com.freerdp.crypto] - CN = WS01
[21:51:03:347] [4098:4099] [WARN][com.freerdp.core.nla] - SPNEGO received NTSTATUS: STATUS_LOGON_FAILURE [0xC000006D] from server
[21:51:03:347] [4098:4099] [ERROR][com.freerdp.core] - nla_recv_pdu:freerdp_set_last_error_ex ERRCONNECT_LOGON_FAILURE [0x00020014]
[21:51:03:347] [4098:4099] [ERROR][com.freerdp.core.rdp] - rdp_recv_callback: CONNECTION_STATE_NLA - nla_recv_pdu() fail
[21:51:03:348] [4098:4099] [ERROR][com.freerdp.core.transport] - transport_check_fds: transport->ReceiveCallback() - -1
-[Fri Jan 03-21:51:0321:51]-[f8cthyn@recreem]-
-[~]$ sudo xfreerdp /cert:ignore /u:htb-student /p:‘Password’ /v:10.129.193.3
[21:53:44:064] [4238:4239] [WARN][com.freerdp.core.nla] - SPNEGO received NTSTATUS: STATUS_LOGON_FAILURE [0xC000006D] from server
[21:53:44:064] [4238:4239] [ERROR][com.freerdp.core] - nla_recv_pdu:freerdp_set_last_error_ex ERRCONNECT_LOGON_FAILURE [0x00020014]
[21:53:44:064] [4238:4239] [ERROR][com.freerdp.core.rdp] - rdp_recv_callback: CONNECTION_STATE_NLA - nla_recv_pdu() fail
[21:53:44:064] [4238:4239] [ERROR][com.freerdp.core.transport] - transport_check_fds: transport->ReceiveCallback() - -1
I’ve used 3 different commands and still the same thing is happening