Password encryption
I have been asked by our security team the following question in relationship to ASG-Remote desktop:

 How does the application protect the AES keys so that someone can’t get the password from the database and decrypt the information?
There are 2 possible logins - by Windows Account or Username/Password - if you use Windows Account Logon the key will be generated from some parts of the User Account Info (from Active Directory) - if you use Username/Password the key is not stored - the user enter the key when login to the program

