Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

Cisco PIX Router Config Question (ACL)

Posted on 2004-03-24
1
509 Views
Last Modified: 2013-11-29
Looking over my router config (actually put in place by the previous admin), and I'm trying to figure out the following :

access-list inbound permit tcp any host x.x.x.x eq 3389
access-list inbound permit tcp any host x.x.x.x eq 3389
access-list inbound permit tcp any host x.x.x.x eq 3389
- Each of these are different server address's

Correct me if I'm wrong, but isn't this allowing anyone access to those address's via terminal services?

Thank you
0
Comment
Question by:MrBean
1 Comment
 
LVL 79

Accepted Solution

by:
lrmoore earned 50 total points
ID: 10672162
Only if there is a matching static that matches the host x.x.x.x with an inside system.
If there is a static, then yes, anyone out there with Terminal services client can connect, but the login credentials must still be supplied. The security is now dependent on the security of the terminal server itself.
0

Featured Post

Optimizing Cloud Backup for Low Bandwidth

With cloud storage prices going down a growing number of SMBs start to use it for backup storage. Unfortunately, business data volume rarely fits the average Internet speed. This article provides an overview of main Internet speed challenges and reveals backup best practices.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Some sers suddenly getting error popup msg 28 93
IPv6 and IPv4 Subnetting scheme 4 47
New firewall implementation guidance 12 89
Accessing two networks from one PC 30 110
Don’t let your business fall victim to the coming apocalypse – use our Survival Guide for the Fax Apocalypse to identify the risks and signs of zombie fax activities at your business.
In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
Internet Business Fax to Email Made Easy - With  eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, f…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

856 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question