Advertisement

05.08.2008 at 09:17AM PDT, ID: 23386640 | Points: 500
[x]
Attachment Details
Logging in to a client directly with remote desktop
Tags: Microsoft, Remote Desktop, server 2003 x64 r2, behind a cisco firewall with about 80 clients
Hello all,

I have a setup with 4 servers and about 80 clients.  I can login to my servers through remote desktop without any problems, one of them is hooked to an external ip.  If I need to get on the other 3 I login in to the one, and than open another remote desktop session directly from the server to log in to another server.  The problem is I have one user who wants to log in to his machine directly( one of the 80 clients).  I do not want him to log in to the server and then use another session to log in to his machine (even though it works, I tested it).  Is there a way where he could use our main ip address and his internal credentials to login to his client machine directly?
Start your free trial to view this solution
Question Stats
Zone: OS
Question Asked By: MarekDabek
Question Asked On: 05.08.2008
Participating Experts: 3
Points: 500
Views: 0
Translate:
Loading Advertisement...
05.08.2008 at 09:26AM PDT, ID: 21526167

Rank: Wizard

All comments and solutions are available to Premium Service Members only.

Start your 7 day free trial and see for yourself why Experts Exchange is the easiest and most proven technology resource in the world. Get Started

Already a member? Login to view this solution.

 
05.08.2008 at 09:29AM PDT, ID: 21526186

All comments and solutions are available to Premium Service Members only.

Start your 7 day free trial and see for yourself why Experts Exchange is the easiest and most proven technology resource in the world. Get Started

Already a member? Login to view this solution.

 
05.08.2008 at 09:35AM PDT, ID: 21526247

Rank: Wizard

All comments and solutions are available to Premium Service Members only.

Start your 7 day free trial and see for yourself why Experts Exchange is the easiest and most proven technology resource in the world. Get Started

Already a member? Login to view this solution.

 
05.08.2008 at 09:51AM PDT, ID: 21526412

All comments and solutions are available to Premium Service Members only.

Start your 7 day free trial and see for yourself why Experts Exchange is the easiest and most proven technology resource in the world. Get Started

Already a member? Login to view this solution.

 
05.08.2008 at 10:00AM PDT, ID: 21526482

All comments and solutions are available to Premium Service Members only.

Start your 7 day free trial and see for yourself why Experts Exchange is the easiest and most proven technology resource in the world. Get Started

Already a member? Login to view this solution.

 
05.08.2008 at 10:04AM PDT, ID: 21526520

Rank: Wizard

All comments and solutions are available to Premium Service Members only.

Start your 7 day free trial and see for yourself why Experts Exchange is the easiest and most proven technology resource in the world. Get Started

Already a member? Login to view this solution.

 
05.08.2008 at 10:05AM PDT, ID: 21526528

Rank: Wizard

All comments and solutions are available to Premium Service Members only.

Start your 7 day free trial and see for yourself why Experts Exchange is the easiest and most proven technology resource in the world. Get Started

Already a member? Login to view this solution.

 
 
Loading Advertisement...
Microsoft
  • Internet Protocols
  • Applications
  • Development
  • OS
  • Hardware
  • Windows Security
Apple
  • Operating Systems
  • Hardware
  • Programming
  • Networking
  • Software
Internet
  • Search Engines
  • File Sharing
  • WebTrends / Stats
  • Spy / Ad Blockers
  • Web Browsers
  • New Net Users
  • Web Development
  • Chat / IM
  • Anti Spam
  • Web Servers
  • Anti-Virus
  • Email Clients
Gamers
  • Tips
  • Online / MMORPG
  • Puzzle
  • Emulators
  • Action / Adventure
  • Role Playing
  • Consoles
  • Game Programming
  • Strategy
  • Sports
  • Misc
  • Computer Games
Digital Living
  • Hardware
  • New Net Users
  • New Users
  • Software
  • Digital Music
  • Gaming World
  • Home Security
  • Apple
  • Networking Hardware
Virus & Spyware
  • Vulnerabilities
  • IDS
  • Encryption
  • Anti-Virus
  • Operating Systems Security
  • Software Firewalls
  • WebApplications
  • Cell Phones
  • Operating Systems
  • Internet
  • Hardware Firewalls
Hardware
  • Handhelds / PDAs
  • Displays / Monitors
  • Components
  • Networking Hardware
  • Peripherals
  • Laptops/Notebooks
  • Storage
  • Servers
  • Desktops
  • New Users
  • Misc
  • Apple
Software
  • System Utilities
  • Industry Specific
  • Network Management
  • Photos / Graphics
  • Page Layout
  • VMWare
  • Misc
  • Web Development
  • OS
  • CYGWIN
  • Voice Recognition
  • Message Queue
  • Quality Assurance
  • Security
  • Firewalls
  • MultiMedia Applications
  • Development
  • Database
  • Office / Productivity
  • Business Management
  • OS/2 Apps
  • Server Software
  • Internet / Email
ITPro
  • OS
  • Storage
  • Encryption
  • Operating Systems Security
  • Apple Hardware
  • Laptops & Notebooks
  • Servers
  • Networking Hardware
  • Peripherals
  • Devices
  • Displays / Monitors
  • WebTrends / Stats
  • Search Engines
  • Firewalls
  • WebApplications
  • IDS
  • Vulnerabilities
  • Email Clients
  • File Sharing
  • Spy / Ad Blockers
  • Web Browsers
  • Web Servers
  • Networking
  • Anti-Virus
  • Chat / IM
  • Anti Spam
Developer
  • Web Servers
  • Web Browsers
  • Game Programming
  • Dev Tools
  • Industry Specific
  • Office / Productivity
  • Database
  • CYGWIN
  • Web Development
  • Search Engines
  • File Sharing
  • WebTrends / Stats
  • Programming
  • Content Management
  • Application Servers
  • Protocols
Storage
  • Removable Backup Media
  • Storage Technology
  • Servers
  • Grid
  • Remote Access
  • Backup / Restore
  • Misc
  • Hard Drives
OS
  • Miscellaneous
  • Security
  • Development
  • Linux
  • VMWare
  • MainFrame OS
  • Unix
  • Apple
  • OS / 2
  • AS / 400
  • BeOS
  • Microsoft
  • VMS / OpenVMS
Database
  • Oracle
  • Miscellaneous
  • MySQL
  • Software
  • Sybase
  • Contact Management
  • PostgreSQL
  • Data Manipulation
  • Clarion
  • InterSystems Cache
  • Siebel
  • MUMPS
  • OLAP
  • SQLBase
  • SAS
  • GIS & GPS
  • 4GL
  • Berkeley DB
  • DB2
  • Informix
  • Interbase / Firebird
  • FoxPro
  • Reporting
  • LDAP
  • Filemaker Pro
  • MS SQL Server
  • dBase
  • MS Access
Security
  • Misc
  • Web Browsers
  • Software Firewalls
  • Operating Systems Security
  • File Sharing
  • Spy / Ad Blockers
  • Vulnerabilities
  • WebApplications
  • IDS
  • Anti-Virus
  • Encryption
  • Anti Spam
  • Email Clients
  • VPN
  • Chat / IM
Programming
  • Editors IDEs
  • Installation
  • Handhelds / PDAs
  • Multimedia Programming
  • System / Kernel
  • Algorithms
  • Game
  • Signal Processing
  • Project Management
  • Open Source
  • Database
  • Misc
  • Languages
  • Processor Platforms
  • Theory
Web Development
  • Scripting
  • Blogs
  • Web Servers
  • Software
  • Search Engines
  • Web Graphics
  • Images
  • Internet Marketing
  • Images and Photos
  • Components
  • Document Imaging
  • Web Languages/Standards
  • Illustration
  • WebApplications
  • Fonts
  • WebTrends / Stats
  • Authoring
  • Digital Camera Software
  • Miscellaneous
Networking
  • Protocols
  • Apple Networking
  • Network Management
  • Message Queue
  • Application Servers
  • Content Management
  • File Servers
  • Email Servers
  • Misc
  • Java Editors & IDEs
  • Wireless
  • Networking Hardware
  • Backup / Restore
  • System Utilities
  • ISPs & Hosting
  • Web Servers
  • Storage Technology
  • Removable Backup Media
  • Servers
  • Broadband
  • Grid
  • OS / 2
  • Novell Netware
  • Unix Networking
  • Windows Networking
  • Security
  • Telecommunications
  • Operating Systems
  • Linux Networking
Other
  • Community Advisor
  • Lounge
  • Community Support
  • New Net Users
  • Philosophy / Religion
  • Math / Science
  • Miscellaneous
  • URLs
  • Expert Lounge
  • Politics
  • Puzzles / Riddles
Community Support
  • Suggestions
  • New to EE
  • New Topics
  • Community Advisor
  • CleanUp
  • Announcements
  • General
  • Feedback
  • Input
  • EE Bugs
 
05.08.2008 at 09:26AM PDT, ID: 21526167

Rank: Wizard

You can change the listening port on the client computer using:
http://support.microsoft.com/kb/306759
Use something like 3395, then set the router to forward port 3395 to the PC.
When the user connects they need to add the port number, such as  123.123.123.123:3395
 
05.08.2008 at 09:29AM PDT, ID: 21526186
If you have another public ip address available, you can simply forward port 3389 to the clients internal ip address, if not you can forward another port use change the remote desktop listening port on his computer.  See the following link:
http://support.microsoft.com/kb/306759
 
05.08.2008 at 09:35AM PDT, ID: 21526247

Rank: Wizard

Though the above is the simplest, you can also set up a VPN by enabling the RRAS service on one of the servers. Then you can give any one you like permission, though Active Directory to connect, and they simply use the LAN IP of their PC. The VPN is also more secure.

If this is of interest, we can provide details on configuring the VPN, or perhaps you have a VPN capable router.
 
05.08.2008 at 09:51AM PDT, ID: 21526412
Thanks guys for the quick response.  Rob, I do have a vpn setup through Cisco and it works beautifuly, but this user does not feel like using it because he does not want to copy files back and forth, and since he is hi up there, (if you know what I mean) I have to accomodate him.  The first solution looks good.  Also a quick question about one of the details.  Since in the office I have dynamic ips setup.  Do I have to setup a static IP on his machine or can I have the port forwarded to the computer name?  I have a cisco router and firewall and both are managed, so I have to know what to tell them.   Also the port number you mention 3395, can it be like 3000 or 4000 or what is the range that I can use?  Thanks again guys

Marek
 
05.08.2008 at 10:00AM PDT, ID: 21526482
How do you feel about using LogMeIn.com? It will get you in and all you need is a firewall rule to allow only logmein over that port. Then you client will be able to use it ANYWHERE.

http://www.logmein.com
 
05.08.2008 at 10:04AM PDT, ID: 21526520

Rank: Wizard

You will have to assign the user a static IP, or what I do is use DHCP reservations. The reservation allows for central management and you don't need to statically assign the PC an IP. If you need clarification on the reservations let me know.

You can use most any port for redirection, so long as it doesn't conflict with an existing service. I have never found it a problem, but there are articles that say when redirecting ports they should be separated by 1 port number. I.e. use 3389, 3391, 3393

I am not very comfortable with Cisco's but with many good routers you have another option. You can forward an external port to a different internal port. For example you tell the user to connect to 123.123.123.123:3395 but on the router you forward external port 3395 to internal port 3389 on the client PC. Eliminates the need to change the listening port and a year from now when you forgot you did that, you won't be trying to figure out why you can't connect to the default port 3389 internaly :-)

Using the Cisco VPN client would be more secure and easier. They don't need to use it for file copying, just remote desktop connections. That way you don't have to configure any port forwarding or change listening ports, just connect to the LAN IP instead of the external IP. If name resolution works over your VPN, you don't even have to set up an IP reservation.

 
05.08.2008 at 10:05AM PDT, ID: 21526528

Rank: Wizard

LogMeIn works great as does GoToMyPC, but I never like to give up control. Just a personal opinion.
 
 
20080236-EE-VQP-29 / EE_QW_2_20070628