Device Connection

This chapter explains how regular users can browse authorized devices, initiate remote connections, transfer files, and view connection history after logging in to the SOSI system.

Browse Devices

After logging in, the system displays your authorized devices as cards. Each card shows the device name, IP address, and connection type (RDP, SSH, VNC, or Telnet).

Start a Connection

  1. Find the target device card in the device list.
  2. Click the “Connect” button.
  3. The system will automatically log in to the remote host using credentials pre-configured by the administrator, taking you directly to the desktop or command-line interface.

You do not need to enter the remote host’s username or password — SOSI handles authentication automatically.

Connection Operations

Once connected, you can operate the remote desktop or terminal directly in your browser:

  • RDP Connection: Operate a Windows remote desktop with mouse and keyboard input.
  • SSH Connection: Use the command-line interface to operate Linux/Unix systems.
  • VNC Connection: Operate remote desktops via the VNC protocol.
  • Telnet Connection: Operate terminal devices via the Telnet protocol. Operate the remote desktop via VNC protocol.
  • BrowserApp Connection: Work with an internal web system inside a locked-down full-screen browser. There is no address bar and no other window; sign-in happens automatically, so you never type the password. The administrator limits which URLs you can reach, and the whole browser environment is wiped when the session ends.

A watermark may appear on screen during the session — this is a security feature configured by the administrator.

The connection info bar (device name, connection time, user name) sits at the top by default; administrators can move it to the bottom, left or right.

File Transfer

If the administrator has enabled SFTP for the device, you can upload and download files during the session:

  • Browse the remote host’s file system via the SFTP interface.
  • Upload local files to the remote host, or download files from it.

All file transfer operations are recorded in the security audit log.

Recording Playback

Recordings from your connection history can be played back in two formats:

  • Raw .guac playback: Plays the original Guacamole recording directly, with no wait for transcoding.
  • Transcoded MP4 playback: Plays the H.264 MP4 produced by FFmpeg.

Administrators choose the playback file type in Site Settings.

If automatic MP4 conversion is turned off in Site Settings, sessions do not produce an MP4 on their own. Playback is unaffected — every session can still be opened and watched from the original recording.

Player Features

  • Autoplay: Playback starts automatically when the page opens.
  • Audio and volume: Audio captured during the session can be played back, with a volume control.
  • Responsive layout: The player adapts to the window width so recordings can be reviewed on different screen sizes.

Audit note: Playing, streaming, and downloading a recording are all written to the access log, together with the user, timestamp, and source IP.

Disconnect

To end a remote connection:

  • Close the browser tab or window directly.
  • Click the “Disconnect” button in the connection interface.

Connection History

You can view your past connection records, including:

  • Device name and IP address
  • Connection start and end times
  • Connection type and status

Request Device Access

If you need to connect to a device that is not currently authorized for you, contact your system administrator with the following information:

  • Your user account
  • The device name or IP address you need to access
  • Purpose of the connection

Once the administrator approves, the device will appear in your device list.