Link to home
Start Free TrialLog in
Avatar of crm_info
crm_infoFlag for United States of America

asked on

Remote Desktop from outside of SBS to a machine inside of SBS - without VPN

We have a machine that we would like to allow Remote Desktop access for.  The machine is in our SBS 2003 network.

Right now we can Remote Desktop directly to the machine as long as we are on another machine that is on our network (if we're on the network via VPN or via a direct connection, Remote Desktop works).

However, we would like to be able to give a client remote access to this machine - without them having to log onto our network or use VPN.

We've already setup the machine to listen for Remote Desktop connections via port 3390.

However, because our SBS machine uses 2 NICs, we cannot forward port 3390 directly to the machine from the router.  We can forward it to the SBS machine - and I assume there are some fairly simple settings to have SBS, in turn, forward it to the appropriate specific machine.

Can anyone help us provide the appropriate forwarding so that we can give Remote Desktop access to this machine from anywhere on the Internet?

Thanks.
Avatar of JamesTX10
JamesTX10
Flag of United States of America image

Hi crm_info,
Another option besides remote desktop is www.logmein.com. It handles all the connection issues for you.

JamesTX10
ASKER CERTIFIED SOLUTION
Avatar of Lee W, MVP
Lee W, MVP
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of crm_info

ASKER

leew ... THANKS.

Can you tell me know to setup an outside client with a VPN connection to our network?  I'll need help on setting up the user login, and allowing the user to download the VPN client, etc.

I would like to do this without using up another license on our SBS machine.

I would also like to do this in such a way that they cannot access any machine except for the specific machine that I've given them permission for.

The only reasons why I might prefer to poke a security hole:
(1) Don't want to ask our clients to install software on their desktop
(2) Some of our clients have very secure systems that won't allow them to install other software and, even if it can be installed, they may not be able to run a VPN client on their machine
(3) I don't want to create additional users on our network (thus requiring additional licenses on our SBS machine ... unless I'm missing a way to create a login without using a license).

Thanks again for your help.  I'm optimistic that we'll be able to make the VPN work and would certainly prefer to have a more secure setup.
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
leew & TechSoEasy - thanks for the tips.  We'll either buy the extra licenses and use the recommended approach ... or we'll just take this particular machine off of the SBS network and put it on our "dev" network so we can provide access without requiring the additional SBS license.  I'll split the points between the two of you.

manicsquirrel - thanks for fine tuning of the feedback.  I'll also put a small portion of points towards your answer.