Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Hello, I am trying to get conne

Status
Not open for further replies.

LadySlinger

IS-IT--Management
Nov 3, 2002
617
US
Hello,

I am trying to get connected to Terminal Services that is behind a firewall. I've seen the other discussions that said I had to have TS port 3389 (TCP) opened and if going through the internet, port 80 as well.

I have this set up, but think I don't think I Have it right.

I've set up one entry for Terminal Services and enabled it. Also set the Outgoing Protocol as TCP, Port Range is (Start) 3389 and (finish) 3389.

Since I'm connecting through the web, I set up the web port 80 to be opened. Port Range both start and finished is 80.
There is another section in my firewall where I Had to enter in similar information, but indicate the incoming port range and outgoing port range for each of the above.
For the Terminal Incoming and outgoing went to 3389 port range.
For the web Incoming and Outgoing went to 80 for the port range.
Has anyone else run into this trying to connect Terminal Services through the web? I have successfully connected to the terminal services after removing it from the firewall and connecting it via plain switch, but I really would like to keep my server behind the firewall.

Thanks, LS
 
hhmm.. it's quite simple actually..

Incoming - ONLY port 3389 needs to open, 80 if you want..

Outgoing- whats it matter.. allow everything *.*

There must be a static route inside your firewall taking all the requests coming in on your outside interface on port 3389 and taking it straight to your Terminal Services box. The box should most definitly have a static address.. once you got that port open and route defined.. your golden..

Snooter

"tis better to remain silent and be thought of as a fool..
then open your mouth and remove all doubt" Mark Twain

"I should of been a doctor.." Me
 
Hello,

I was able to connect. V. silly mistake I did. When I tested the connection outside of the firewall I Had to change the gateway. Well I forgot to switch it back. Which now I'm able to connect w/o any problems.

THanks for your help though!
 
Outgoing- whats it matter.. allow everything *.*

Naughty Naughty....only allow what protocols you need. Allowing anything out invites abuse from trojans, and other horrible nasty things.

I'll see your DMCA and raise you a First Amendment.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top