CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
spacer spacer

Remotedesktop and Firewall

 
Post new topic   Reply to topic       All -> FavForums -> Sunbelt KerioPF [del.icio.us!] [digg it!] [reddit!]
View previous topic :: View next topic  
Author Message
chrisonline

Cadet
Cadet


Joined: Nov 13, 2006
Posts: 5
Location: Austria

PostPosted: Mon Nov 13, 2006 9:03 pm    Post subject: Remotedesktop and Firewall
Reply with quote

Sorry for my bad english Smile

I want to connect from PC 3 - IP 192.168.0.4 - to PC 1 - IP 192.168.0.2 - but i get no connection. The Firewall ist shutdown it goes correctly....

I want also connect from outside my network.

Which setting must i set in the Firewall?

Please help Smile

thx...


_________________
cu chrisonline
------------------------------
www.chrisonline.at
Back to top
View users profile Send private message Visit posters website MSN Messenger
Graham1

Captain
Captain


Joined: Dec 21, 2005
Posts: 340


PostPosted: Tue Nov 14, 2006 8:40 am    Post subject:
Reply with quote

You will need to create a rule permitting port 3389. My guess is that you have installed SKPF4 in simple mode as this denies inbound connections by default (otherwise you would have been prompted).

Smile

Back to top
View users profile Send private message
chrisonline

Cadet
Cadet


Joined: Nov 13, 2006
Posts: 5
Location: Austria

PostPosted: Tue Nov 14, 2006 8:58 am    Post subject:
Reply with quote

I have it installed in Advanced Mode... I wonder why it not prompts ...
I cannot connect and it happens nothing at the PC1 .. No prompt or something...

Can you tell me exact the steps i must do, to create the rule for port 3389?

Thanks!

Back to top
View users profile Send private message Visit posters website MSN Messenger
Graham1

Captain
Captain


Joined: Dec 21, 2005
Posts: 340


PostPosted: Tue Nov 14, 2006 8:39 pm    Post subject:
Reply with quote

If your not being prompted, check your nips log incase it is being detected as an intrusion. If not, then goto the network security module and select the packet filter button. You can then create an inbound rule (local) allowing port 3389 (tcp). Btw, are you using application or packet filter rules?

Smile

Back to top
View users profile Send private message
chrisonline

Cadet
Cadet


Joined: Nov 13, 2006
Posts: 5
Location: Austria

PostPosted: Tue Nov 14, 2006 11:12 pm    Post subject:
Reply with quote

I see nothing in NIPS....

Hmm.. here is a Screenshot Smile I have the German Version...
I use the Application rules AND the Packt Filters i mean...

What i am using?


I have set a packet rule with 3389 and it works !!!

Thanks your great Wink




kpfw2.JPG
 Description:
 Filesize:  56.78 KB
 Viewed:  68 Time(s)

kpfw2.JPG



kpfw.JPG
 Description:
 Filesize:  176.11 KB
 Viewed:  64 Time(s)

kpfw.JPG


Back to top
View users profile Send private message Visit posters website MSN Messenger
Graham1

Captain
Captain


Joined: Dec 21, 2005
Posts: 340


PostPosted: Wed Nov 15, 2006 12:28 am    Post subject:
Reply with quote

Wow, you have alot of application rules Shocked. Now that you have got remote desktop working, you may want to create an ip group. In this ip group, you can add the ip addresses of the computers that can access your computer.

Smile

Back to top
View users profile Send private message
chrisonline

Cadet
Cadet


Joined: Nov 13, 2006
Posts: 5
Location: Austria

PostPosted: Wed Nov 15, 2006 9:18 pm    Post subject:
Reply with quote

Thanks but i have a IP-Group called "COL-Netz" see at the picture kpfw2!
Do you have a smaller application rule list?

Every program i start ask for internet access and the firewall creates an rule...

Back to top
View users profile Send private message Visit posters website MSN Messenger
Graham1

Captain
Captain


Joined: Dec 21, 2005
Posts: 340


PostPosted: Thu Nov 16, 2006 1:32 am    Post subject:
Reply with quote

chrisonline wrote:
Thanks but i have a IP-Group called "COL-Netz" see at the picture kpfw2!


I see Smile. Wouldn't your above rule (network) allow port 3389? (given that the required addresses were in that group).

Quote:
Do you have a smaller application rule list?


I tend to use only packet filter rules. Going by your ruleset, you use alot more applications than me.

Quote:
Every program i start ask for internet access and the firewall creates an rule...


My guess is that most are doing some kind of automatic update when you start them. To keep the list down, you could just permit (manually) when needed.

Smile

Back to top
View users profile Send private message
chrisonline

Cadet
Cadet


Joined: Nov 13, 2006
Posts: 5
Location: Austria

PostPosted: Thu Nov 16, 2006 9:23 am    Post subject:
Reply with quote

Graham1 wrote:

I see Smile. Wouldn't your above rule (network) allow port 3389? (given that the required addresses were in that group).


I have think so, but it doesnt allow?!?
Only the connection via Windows Explorer ...
Remotedesktop couldnt connect to the computer !?!?
Very strange ...


_________________
cu chrisonline
------------------------------
www.chrisonline.at
Back to top
View users profile Send private message Visit posters website MSN Messenger
Display posts from previous:   
Post new topic   Reply to topic       All -> FavForums -> Sunbelt KerioPF All times are GMT
Page 1 of 1

 
Quick Reply:
Username: 

Quote the last message
Attach signature (signatures can be changed in profile)
 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You can download files in this forum


Powered by phpBB © 2001 phpBB Group
spacer spacer