# Review an RDP file destination and redirections before connecting

> What should a user verify when Remote Desktop warns about an RDP file?

- Canonical URL: https://update.dsesecurity.com/updates/dse-20260908-036-review-an-rdp-file-destination-and-redirections-before-connecting/
- Publisher: Detection Systems & Engineering (DSE Security)
- Author: DSE Security Editorial Team
- Published: 2026-09-08T18:16:35+00:00
- Modified: 2026-09-08T18:17:14+00:00
- Last reviewed by DSE: 2026-09-08
- Resource type: Guide
- DSE priority: Information
- Topics: IT, Networks & Infrastructure
- Reading time: 2 minutes

## What you need to know

What should a user verify when Remote Desktop warns about an RDP file?

## Potentially affected

Use this review when opening a received or downloaded RDP file.

## DSE recommendation

Give users an approved way to confirm the remote address without replying to the message that delivered the file.

## Article

## Source facts

Microsoft says Remote Desktop Connection introduced additional warnings for RDP files with the April 2026 security update. An RDP file specifies the remote connection and may also redirect local resources such as drives, the clipboard, or a camera. Microsoft advises verifying unexpected files through another channel, checking the destination and publisher, and enabling only the redirections that are needed. [Microsoft documentation](https://learn.microsoft.com/en-us/windows-server/remote/remote-desktop-services/remotepc/understanding-security-warnings).

## Applicability

Use this review when opening a received or downloaded RDP file. Identify the expected remote computer and the person responsible for providing the connection. Treat a signed file as something to verify, not automatic approval to connect.

## DSE recommendation

Give users an approved way to confirm the remote address without replying to the message that delivered the file. Document which local resources the business task actually needs. Ask support staff to explain each requested redirection before a user accepts it. Preserve suspicious files through the organization’s reporting process and have the responsible team decide whether the connection is legitimate.

## Verification

Use a controlled example to confirm that users can identify the destination, publisher information, and requested local resources. Record whether unnecessary redirections remain disabled. Test the reporting route for an unexpected file and confirm that the responsible team receives enough context to investigate. Update the user instructions if the dialog or approved connection details change.

## Official references

[Microsoft Learn: Understanding security warnings when opening Remote Desktop (RDP) files](https://learn.microsoft.com/en-us/windows-server/remote/remote-desktop-services/remotepc/understanding-security-warnings). Source reviewed September 8, 2026.

## Primary reference

- Name: Understanding security warnings when opening Remote Desktop (RDP) files
- Authority: Microsoft Learn
- URL: https://learn.microsoft.com/en-us/windows-server/remote/remote-desktop-services/remotepc/understanding-security-warnings
- Source publication date: Not stated by the source

## Citation and use

Preferred citation: “Review an RDP file destination and redirections before connecting,” DSE Security, https://update.dsesecurity.com/updates/dse-20260908-036-review-an-rdp-file-destination-and-redirections-before-connecting/
Publishing principles: https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/
Usage and citation policy: https://update.dsesecurity.com/usage/
Copyright © 2026 Detection Systems & Engineering. All rights reserved.
