ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    FQDN not Resolving

    IT Discussion
    dns
    6
    79
    15.1k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      christophergault @scottalanmiller
      last edited by

      @scottalanmiller I don't think I ever did expose it...

      1 Reply Last reply Reply Quote 0
      • C
        christophergault @JaredBusch
        last edited by

        @JaredBusch I can access that but its the app when I open it rdp file it says cant access server

        JaredBuschJ 1 Reply Last reply Reply Quote 0
        • JaredBuschJ
          JaredBusch @christophergault
          last edited by

          @christophergault said:

          @JaredBusch I can access that but its the app when I open it rdp file it says cant access server

          RDP will need opened. The entire point of RDS is to create an RDP session.

          C 1 Reply Last reply Reply Quote 1
          • C
            christophergault @JaredBusch
            last edited by

            @JaredBusch Well how the living hell do I open it?

            JaredBuschJ 1 Reply Last reply Reply Quote 0
            • JaredBuschJ
              JaredBusch @christophergault
              last edited by

              @christophergault said:

              @JaredBusch Well how the living hell do I open it?

              Port 3389

              C 1 Reply Last reply Reply Quote 0
              • C
                christophergault @JaredBusch
                last edited by

                @JaredBusch And that is opened using?

                scottalanmillerS 1 Reply Last reply Reply Quote 0
                • scottalanmillerS
                  scottalanmiller @christophergault
                  last edited by

                  @christophergault said:

                  @JaredBusch And that is opened using?

                  the firewall. All ports are managed using the same tools.

                  C 1 Reply Last reply Reply Quote 0
                  • C
                    christophergault @scottalanmiller
                    last edited by

                    @scottalanmiller So the router firewall to be correct?

                    JaredBuschJ scottalanmillerS 2 Replies Last reply Reply Quote 0
                    • JaredBuschJ
                      JaredBusch @christophergault
                      last edited by

                      @christophergault said:

                      @scottalanmiller So the router firewall to be correct?

                      Well on the server too, but it should have automatically done that one when the roles were installed.

                      1 Reply Last reply Reply Quote 0
                      • scottalanmillerS
                        scottalanmiller @christophergault
                        last edited by

                        @christophergault said:

                        @scottalanmiller So the router firewall to be correct?

                        Well, ALL firewalls between the RDS server and the Internet. If any are blocking 3389, RDP isn't going to get out. The firewall touching the Internet needs to port forward to the server or nothing will be able to get to it.

                        C 1 Reply Last reply Reply Quote 0
                        • C
                          christophergault @scottalanmiller
                          last edited by

                          @scottalanmiller I got it working!!!! I fell so accomplished. Jk

                          JaredBuschJ 1 Reply Last reply Reply Quote 1
                          • JaredBuschJ
                            JaredBusch @christophergault
                            last edited by

                            @christophergault said:

                            @scottalanmiller I got it working!!!! I fell so accomplished. Jk

                            Great!, now I can through a password cracker at it..

                            JaredBuschJ 1 Reply Last reply Reply Quote 1
                            • JaredBuschJ
                              JaredBusch @JaredBusch
                              last edited by

                              @JaredBusch said:

                              @christophergault said:

                              @scottalanmiller I got it working!!!! I fell so accomplished. Jk

                              Great!, now I can through a password cracker at it..

                              Note: I really will not, but this is part of RDS I hate. I need to find a fail2ban equivalent for Windows.

                              C DashrenderD 2 Replies Last reply Reply Quote 1
                              • C
                                christophergault @JaredBusch
                                last edited by

                                @JaredBusch Well whats a best practice for protecting RDS?

                                1 Reply Last reply Reply Quote 0
                                • scottalanmillerS
                                  scottalanmiller
                                  last edited by

                                  I'm not the expert here, but a common practice is to keep it inside of the network and require people to connect via a VPN before connecting to RDP. The VPN, for security, would be best handled by being exclusive to a DMZ where the RDS server sat isolated from other traffic.

                                  1 Reply Last reply Reply Quote 0
                                  • brianlittlejohnB
                                    brianlittlejohn
                                    last edited by

                                    I thought common practice now was to use rds gateway so you only open port 443 and everything is passed through it.

                                    scottalanmillerS 1 Reply Last reply Reply Quote 3
                                    • scottalanmillerS
                                      scottalanmiller @brianlittlejohn
                                      last edited by

                                      @brianlittlejohn said:

                                      I thought common practice now was to use rds gateway so you only open port 443 and everything is passed through it.

                                      Which is a form of VPN 🙂 SSL VPN for a single port and application. But yes, that's the best way. Not sure if it is the most common in the SMB yet.

                                      1 Reply Last reply Reply Quote 1
                                      • DashrenderD
                                        Dashrender @JaredBusch
                                        last edited by

                                        @JaredBusch said:

                                        @JaredBusch said:

                                        @christophergault said:

                                        @scottalanmiller I got it working!!!! I fell so accomplished. Jk

                                        Great!, now I can through a password cracker at it..

                                        Note: I really will not, but this is part of RDS I hate. I need to find a fail2ban equivalent for Windows.

                                        While not the same, one should have account lockouts set after some amount of bad attempts.

                                        1 Reply Last reply Reply Quote 1
                                        • scottalanmillerS
                                          scottalanmiller
                                          last edited by

                                          That would make DoS attacks super easy on your users, though.

                                          DashrenderD 1 Reply Last reply Reply Quote 0
                                          • DashrenderD
                                            Dashrender @scottalanmiller
                                            last edited by

                                            @scottalanmiller said:

                                            That would make DoS attacks super easy on your users, though.

                                            can something like nginx (SP) sit in front for a fail2ban type server?

                                            scottalanmillerS 1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 3
                                            • 4
                                            • 2 / 4
                                            • First post
                                              Last post