A customer has a policy to deny all direct RDP access from their workstation network security zone to the server network security zone. Only HTTPS is allowed into the server network security zone.
What recommendation would you provide to the customer?