# Linux VPS: graphical remote desktop Use the native Workcell workspace through a secured display session. ## A desktop is a prerequisite A VPS needs a supported graphical session, an OpenGL-capable renderer and a remote-desktop transport. A running SSH connection or virtual framebuffer is not proof that a customer can see and interact with the app. ## Keep access private Restrict the remote desktop to your authenticated VPN or secured tunnel. Do not open unauthenticated VNC/RDP or Workcell's local broker ports to the internet. Run Workcell under the same unprivileged interactive identity that owns its projects and secure credential store. ## Verify the real interaction Open the tiny paused starter, confirm the camera and geometry are visible, then type, select a model and inspect a small task. Verify resizing, clipboard/focus and keyboard navigation in the actual remote session. Document whether rendering is hardware-accelerated or software-based. ## Separate availability from performance A remote desktop that displays one small scene does not qualify large-world performance. If rendering or simulation is too slow, use [headless jobs](/docs/vps-headless/) for supported automation or move the interactive workload to an appropriate workstation.