Resolving RDP Session Freezes and Re-Authentication Prompts
Session Management: Resolving RDP Session Freezes and Re-Authentication Prompts
Table of Contents
-
Symptoms
-
Affected Environments
-
Root Cause
-
Resolution Steps
-
Related Articles
Symptoms
While utilizing the Xona Critical System Gateway (CSG), users may experience unexpected connection drops or freezing during active RDP, SSH, VNC, or HTTPS sessions. For RDP sessions specifically, users might encounter frequent re-authentication prompts during normal usage, and administrators may notice a loss of session recordings associated with these events.
Affected Environments
-
Platform: Hardware (1U Server, DIN Rail), Virtual Image (VMware/Hyper-V), AWS AMI, Azure VM
-
Software Version: Xona v5.5.0 and newer
-
Component: CSG
Root Cause
This behavior is associated with the Auto-Reconnect and Session Hold features. These features were introduced and enabled by default in Xona v5.5.0 to enhance reliability for RDP connections. However, in certain live network environments, frequent packet loss can cause active RDP sessions to frequently attempt renegotiation, resulting in session freezes.
The default behavior was reverted in Xona v5.5.1. However, if your appliance was upgraded from v5.5.0 and these settings were manually modified, the features may remain enabled on your CSG configuration.
Resolution Steps
To restore session stability, the recommended solution is to disable these specific session management features until a permanent optimization is released in a future software update.
-
Log in to the CSG Web UI using an administrator account.
-
Navigate to the affected connection profile settings.
-
Locate the configuration fields for Session Hold and Auto-Reconnect.
-
Set the Session Hold value strictly to 0.
-
Ensure the Auto-Reconnect feature is completely disabled.
-
Click Save to apply the configuration changes.
-
Instruct the affected user to initiate a new session to verify that the connection remains stable.
Note for Hardware Appliances: If you are utilizing a DIN Rail CSG and it is connected directly to a Cisco switch, you may experience similar disconnect symptoms that are unrelated to the software settings above. If the steps above do not resolve your issue, ensure that IEEE 802.3az Energy Efficient Ethernet (EEE) is disabled on the connected Cisco switch port.
If you have any questions about this guidance, then please contact support@xonasystems.com.