View Single Post
Old 03-19-2007, 09:05 PM   #2 (permalink)
Dilbert1234567
Devils Cabana Boy
 
Dilbert1234567's Avatar
 
Location: Central Coast CA
are you forwarding the proper ports through PAT(NAT) on the router.

it's UDP port 3389

some further thoughts:

you need to beef up security if you are going to open this port and leave it open, first limit the number of login failures to a small number before locking the account for a few minutes, this will limit the ability to brute force it, second use a strong password.

next we want to force encryption, MS likes backwards compatibility at the expense of security. open you group policy editor

run:
%SystemRoot%\system32\gpedit.msc /s

browse administrative template > windows components > terminal services > encryption. enable set client connection encryption level and set it to high.
__________________
Donate Blood!

"Love is not finding the perfect person, but learning to see an imperfect person perfectly." -Sam Keen

Last edited by Dilbert1234567; 03-19-2007 at 09:30 PM.. Reason: Automerged Doublepost
Dilbert1234567 is offline  
 

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73