Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » The Site » Old Forums » Kerio - Tiny Support » [Kerio 4.x] Kerio/Sunbelt blocks RDP
Search Topic:
Uniqs:
670
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
AuthorAll Replies

Mister_E

join:2004-04-02
Etobicoke, ON
·Bell Sympatico


4 edits
reply to Teledata
Re: [Kerio 4.x] Kerio/Sunbelt blocks RDP

First, I would specify the protocol as TCP.

Then, for the local port, you need to specify 3389 - don't specify all ports as this will leave your system open!

For the remote options, the port number should be set to all (or blank - I don't remember what Kerio 4.x uses). If the IP you're connecting from doesn't change (e.g. a static internet IP) you can specify it for added security - otherwise, don't specify an IP or set an IP range that belongs to the IP block you connect from.

Finally, the application specified should be C:\WINDOWS\system32\svchost.exe (as it's svchost that's listening to requests on port 3389 and will manage the Terminal services connection - assuming you're running XP at home). If this doesn't work, you may have to change the application specified to 'Any' to allow communication on port 3389 to get where it needs to go.

Also, if you have a router in between the home PC you're connecting to, you may have configure it to port forward 3389 to the PC's internal IP address. (If your router supports a VPN connection/VPN server, you'll be better off using this to establish the connection - see below.)

BE WARNED though, opening port 3389 is a security risk - many port scanners check to see if this port is open and attack via it, etc. The best solution is to set up a VPN connection first, then run Remote Desktop over the VPN.


Teledata

@ulrich-alber.de

reply to Mister_E
Hi,

thank you for your quick reply.

I changed the rule like in the screen below:

»www.eriks-light-house.de/hc_004.jpg

But it still don't work. It try to connect from another PC to my PC at home. My PC at home has the kerio/sunbelt firewall installed. As I said - if I shut down the firewall, it works.

Do you have any other idea?

Mister_E

join:2004-04-02
Etobicoke, ON
·Bell Sympatico


1 edit
reply to Teledata
I believe your port rules are too strict - RDP expects communication to be directed to local port 3389, however, the outgoing port used for communication could be any. Picture above is from Kerio 2.15, but you should get the idea:

If you're connecting from a computer with Kerio installed (as in the pic above), you need to set the local end point port to be any and the remote end point to be 3389 (and ideally specified to the ip address you're connecting to).

If it's the computer you're trying to control remotely that has Kerio installed, the opposite would be true - e.g. connection is to local port 3389, but the remote port can be varied.


Teledata

@t-dialin.net

Hello,

i've got a Problem: I am trying to connect my PC from another computer with the RDP, which is included in Windows XP. Everytime i switch of the firewall, it works. I created a rule, but i am not sure if that is the right rule.

Please see the screenshots below:

»www.eriks-light-house.de/hc_001.jpg
»www.eriks-light-house.de/hc_002.jpg
»www.eriks-light-house.de/hc_003.jpg

For Help I would be very thankfull - If you need more information, don't hesitate to ask

Teledata
Forums » The Site » Old Forums » Kerio - Tiny Support


Friday, 27-Nov 06:09:11 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [115] Time Warner Cable Fires Broadside At Broadcasters
· [109] New AT&T Ad Campaign Hits Back At Verizon
· [95] Apple Joins AT&T Verizon Snark Fest
· [87] New Bill Takes Aim At Higher Verizon ETFs
· [70] TiVo Sees Record Customer Losses
· [64] In-Flight Internet Headed For Bumpy Landing?
· [56] Thanksgiving Open Thread
· [38] ICANN Slams DNS Redirection
· [36] Senators Want ACTA Made Public
· [35] Despite Billions In USF Fees, U.S. Libraries Lack Bandwidth
Most people now reading
· Newegg Black Friday Sale started [Users Find Hot Deals]
· Bell Response to PIPEDA Request [TekSavvy]
· Windows 7 boot manager editing questions [Microsoft Help]
· Whats the big deal about being "Old School"....? [World of Warcraft]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Slow speeds in the evenings [TekSavvy]
· HOW-TO: QoS and Tomato (fixes "choppy voice") [MagicJack]
· [WotLK] Resto Shaman Healing guide [World of Warcraft]
· IPComms Free DIDs now with sip registration maybe?? [VOIP Tech Chat]