Solved

sbs 2008 remote desktop to a client computer

Posted on 2011-02-21
8
904 Views
Last Modified: 2012-05-11
SBS 2008 network with 25 XP Pro computers, Cisco PIX Firewall/VPN.  When I'm in the network I can RDP to any workstation and to the server no problem.  When I'm outside the network and VPN into the network I can't RDP to any workstation.  I can RDP to the server, but can't RDP to any workstation.   I have tried RDP using the machinename.domain.local and also by the IP address of the machine with no difference.  Also, as a side note I can ping the machinename.domain.local.  If I take an XP machine out of the domain I can RDP to the machine no problem.  I have had this VPN installed for several years and had no problems until I installed the SBS 2008 server and joined the machines to this new domain.

Really hope someone can give me insight into this problem.  Thanks in advance for any help.
0
Comment
Question by:tparrett
  • 3
  • 2
  • 2
  • +1
8 Comments
 
LVL 10

Expert Comment

by:jayasanker
Comment Utility
HI Do you have any firewall policy blocking VPN to LAN Traffic??

pls verify that,

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a0080093f6c.shtml
0
 

Author Comment

by:tparrett
Comment Utility
I don't have any firewall policies block VPN to LAN Traffic.  If I remove the machine from the domain I can RDP to it with no problems.
0
 
LVL 10

Expert Comment

by:jayasanker
Comment Utility
Let me know one thing, i believe you can RDP in to SBS Server, open sbs console, then click network icon> does your computer's listed there?? if so right click on computers and click connect to a computer using terminal services!!

Is that successful??

Thx
0
 

Author Comment

by:tparrett
Comment Utility
Yes - from the server I can connect to any computer.  I think this is because the server is in the same network address though.
0
IT, Stop Being Called Into Every Meeting

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

 
LVL 2

Expert Comment

by:BITCooler
Comment Utility
Here's a couple of things to check:

1) Users of the SBS domain that need to connect remotely should be added to the Mobile Users security group to have access permissions.

2) Check your VPN connection when you remote in and make sure your connection says "local and internet".  If your VPN connection is local only, then your VPN connection may not be working properly.
0
 
LVL 1

Accepted Solution

by:
Adi-IT-Works earned 500 total points
Comment Utility
It sounds like it's the local firewall on your clients - SBS 08 throws in AD Policies that will only allow RDP access from the local subnet. That explains how you can RDP into that machine when you take it out of the domain.

Disable windows firewall service and try to connect from outside to verify.
0
 

Author Comment

by:tparrett
Comment Utility
ADI-IT-Works - - I think you are on to something.  Going to the firewall on the machine I'm not able to turn it off.  Looked at the exceptions and RDP was listed, but only for the localsubnet.  Ran down this article that helped me make the change in the GPO on the server and I'm good to go now.  

http://www.petenetlive.com/KB/Article/0000193.htm

Thanks!
0
 
LVL 1

Expert Comment

by:Adi-IT-Works
Comment Utility
Right on, glad you got it!

FYI - yes the SBS AD policy will enable firewall policy and gray it out on the client so you can't tweak there, but you can always disable Windows Firewall service in Services applett, temporarily while troubleshooting. ;)
0

Featured Post

Enabling OSINT in Activity Based Intelligence

Activity based intelligence (ABI) requires access to all available sources of data. Recorded Future allows analysts to observe structured data on the open, deep, and dark web.

Join & Write a Comment

Written by Glen Knight (demazter) as part of a series of how-to articles. Introduction One of the biggest consumers of disk space with Small Business Server 2008(SBS) is Windows Server Update Services, more affectionately known as WSUS. For t…
If you are a user of the discontinued Microsoft Office Accounting 2008 (MSOA) and have to move to a new computer running Windows 8, you will be unhappy to discover that it won't install.  In particular, Microsoft SQL Server 2005 Express Edition (SSE…
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
This video explains how to create simple products associated to Magento configurable product and offers fast way of their generation with Store Manager for Magento tool.

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now