Link to home
Start Free TrialLog in
Avatar of stpetetech
stpetetech

asked on

How do I allow remote users into Window 2000 server setup as a workgroup without AD installed?

Hello,

  We have a Wndows 2000 Server with SP4, setup as a workgroup(so Active directory is not installed).
We are looking to have remote users connect to access Outlook and some Word/Excel Docs etc...VIA RDP or VPN

Do we have to create a domain and install AD to do this? Also, how would we setup the remote acess? We would like the users to be able to Remote desktop into this box. It is connected to the internet via a wireles router using DSL. This is  home based business...

Thank you
Avatar of Don S.
Don S.
Flag of United States of America image

You do not need AD.  But with Windows 2000 server, you will need to install and license Terminal services and terminal server licensing.  You would also need to open the RDP port inbound to that server on the router.
You'll need to install terminal services on the server but I'm not sure you can still get terminal server licenses for 2000 anymore. When you install terminal services it will allow 2 concurrent administrative sessions and deny the 3rd attempt at simultaneous login. If you can come up with some terminal services licenses you can use RDP for all your clients. It will most likely work for 160 days with the initial install before it starts looking for licenses.
Avatar of stpetetech
stpetetech

ASKER

We also need to allow certain users only certain accesses to files/programs..
You can achieve that with specific NTFS permissions using the built-in accounts and groups. The users will need to be members of the remote desktop users group.
If AD is not installed how would I access these built in accounts and groups
right click on My Computer and go to Manage to access users and groups.
The remote desktop users group is not listed under groups...
When I setup routing and remote access, I lose internet connectivity to the server unless I delete the remote connctions icon in network connectons.
Actually, the incoming connections icon
If you don't have terminal services installed it may not include that group.

to setup RRAS when you only have a single nic you need to choose custom configuration when setting it up. Check this article : http://blogs.technet.com/rrasblog/archive/2006/06/19/437171.aspx
If we are not able to get licenses, is there a third party util that will work? Or can we achieve some of the file sharing/connectivity with VPN?
So, would this work?

Windows 2000 Terminal Server 5 User CALs only
 
SOLUTION
Avatar of Don S.
Don S.
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Great, thank you. I still get "When I setup routing and remote access, I lose internet connectivity to the server unless I delete the incoming connections icon. Maybe this is configured incorrectly?
Do both NIC's need to be configured? there is one that is disabled. it is only for a handful of remote users...
I got the Cal 5 license pack installed but still cannot access the server via RDP. The server is set with a static IP, and port forwarding is set in the router.
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
IIs is not setup and this ia workgroup, so I typed in telnet IP 3389
The cursor blinks for 20-30 seconds then goes back to the prompt, I am guessing that is a failure?

I did check the article you sent, but I never saw the custom confguration option. This server had been used by a different company before with Citrix( I just found out), we got the licesnses updated, but I am not sure what else they changed from a standard configuration. I have been doing this work mostly remotely via showmypc.com so I am not 100% sure if I can rdp from inside. I will check that reg key out.
The Reg key is 3389, I am thinking the telnet works, but I can still not RDP. When they try to RDP to it internally it says: The remote computer disconnected the session because of an error in the licensing protocol. It says the licensing pack (CAL) was installed successfully, I am confused.
Would this be a problem if IIs is configured? The guy there(from a local laptop)
put in: computer.MCSPRO.com and got to a login prompt. MCSPRO is the computer nameof the server.
Now when I type:  telnet 71.180.201.5 3389 I get:

Connecting To 71.180.201.5...Could not open connection to the host, on port 3389: Connect failed
C:\Documents and Settings\Administrator>netstat -p TCP

Active Connections

  Proto  Local Address          Foreign Address        State
  TCP    MCSPRO:1067            MCSPRO.MCSPRO:6900     ESTABLISHED
  TCP    MCSPRO:1068            MCSPRO.MCSPRO:31414    ESTABLISHED
  TCP    MCSPRO:1114            MCSPRO.MCSPRO:31413    CLOSE_WAIT
  TCP    MCSPRO:6900            MCSPRO.MCSPRO:1067     ESTABLISHED
  TCP    MCSPRO:31413           MCSPRO.MCSPRO:1114     FIN_WAIT_2
  TCP    MCSPRO:31414           MCSPRO.MCSPRO:1068     ESTABLISHED
  TCP    MCSPRO:1049            server.hakim-group.com:https  ESTABLISHED
BTW i am still getting The remote computer disconnected the session because of an error in the licensing protocol
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial