Remote Desktop on SBS2003

G

Guest

I've got SBS2003. I allowed to use Remote Desktop. I gave rights to use to
SBS Remote Operators. So from every place from local network or internet I
can connect myself as user with rights to server if I know password.
Now. How can I specific some I.P addresses only allowed to connect by remote
desktop to my server?
 
S

Steven L Umbach

For internet access you would need to configure your firewall to only allow
access to destination port 3389 TCP from a specific IP address. For lan
connections you could user your Windows Firewall and create an exception for
port 3389 TCP and enter only those IP addresses you want to access using
edit -select scope. If you don't use your Windows Firewall then you could
use an ipsec filter that allows access only from the IP addresses you
specify for destination port 3389 TCP from source port any. Do not try to
configure an ipsec filtering policy remotely because if you lock yourself
out you will have to logon to the keyboard to make changes. If you have SP1
installed the Security Configuration Wizard can help you configure the
Windows Firewall and it has a rollback function in case the changes do not
work as planned. FYI there are several great newsgroups for SBS that you
may also want to post in. --- Steve

http://www.securityfocus.com/infocus/1559 --- a primer on ipsec filtering
policy.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top