RE: SCW with Terminal Services Custom Port



I've said this before, and I'll say it again. Changing your listening port
from 3389 to something else does not make your servers more secure, as anyone
with tools (or skills) good enough to crack your system, has the ability to
find the listening port.

The most exploited TCP Ports are 25 (SMTP) & 80 (HTTP), not RDP, which to
recollection has not had an exploited secuity flaw in several years.

Require strong passwords and you'll be fine.

--
Patrick Rouse
Microsoft MVP - Terminal Server
http://www.workthin.com


"Parhez Sattar" wrote:

> In my attempts to apply SP1 and then configure the security of our Terminal
> Services server using the Security Configuration Wizard, it appears that the
> SCW is not compatible with customizing the RDP port on the server. We had
> changed that port number from 3389 to something else and after running the
> SCW, it seems like the server only accepts RDP connections using 3389.
> During the SCW, we did notice that the Network Security section mentioned
> that the RDP port was set to 3389 and I couldn't change that. I had just
> hoped that the registry key change would still take precedence.
> Unfortunately, that doesn't seem to be case.
>
>
> Does anybody know how to use SCW yet keep that custom RDP port on the
> Terminal Server?
>
>
>
.



Relevant Pages

  • Re: SCW with Terminal Services Custom Port
    ... I am not familiar with the SCW you're referring to, ... > I take it from your post that it is not possible to keep the port change ... >> Microsoft MVP - Terminal Server ...
    (microsoft.public.windows.terminal_services)
  • RE: Some technical errors
    ... If the SMTP server is not running on port 25 TCP it is not a public ... Manager - Computer Assurance Services BDO Chartered Accountants & ...
    (Security-Basics)
  • Re: SRV RRs support in Internet Explorer?
    ... The port number could be implicit (i.e. ... At any point in time, a server could fail ... can't effectively LB or backup because NSs cache the records for the TTL ... I still don't see how SRV records would help backup or LB. ...
    (microsoft.public.win2000.dns)
  • Re: Still cant connect to RWW or OWA remotely
    ... I get 'cannot find server or dns error' on both ... TCP [port number]> to open the ports. ... As for error messages when I fail to access RWW with the laptop, ... network, no connection seems possible. ...
    (microsoft.public.windows.server.sbs)
  • Re: cannot send mail from Windows mail
    ... When a username/password combination doesn't work in Windows Mail, ... I mean I dont use it but as outgoing address for my ISP account. ... youir username and password are correct for your mail server". ... Ask your home ISP if they support SMTP on a port other than 25. ...
    (microsoft.public.windows.vista.mail)