Help With Remote Desktop on Windows Server 2012

Soldato
Joined
19 Dec 2003
Posts
3,105
Location
UK
Hey folks, wonder if any of you could assist with a small dilemma!

I am assisting with a company set up, in short, they just need to remote on to a server from an external location (such as home, another site etc) to run a program.

Current set up =

Windows Small Business Server 2003 - Domain Controller - 13 Users

New purchase =

Windows Server 2012 R2 Foundation (this is purely just to be used as an 'access' PC - I was going to get a desktop but for the price of this server it was cheaper to just get this, and it will be on 24/7 so was a better idea I think.

I have added the 2k12 machine on to the domain, and set up Remote Desktop, however, the part I am struggling with, is how to access it remotely?
If I try to RDP from my home PC to the external IP address of the site that the server resides, it takes me to the login screen of their 2003 SBS rather than the 2k12 one.

I am thinking a couple of things;

1) Do I need to get another static external IP and assign it to the new server?

It is setup as;

gateway.companyhostname.biz

and of course I have full access to the web hosting for 'companyname.biz'

Is there any kind of forwarding/redirect I need to do behind the scenes so to speak?

Sorry if this is a jumble of words... I have been struggling with this one today! :(

Thanks for any help in advance!
 
Hi all firstly thank you for your help.

I managed to get it working using the advice provided, and set up like;

1) Changed RDP port on 2k12 box via registry
2) Added rule on router to allow inbound connections
3) Tested using a random PC offsite using the IP:Port method and worked fine using admin login credentials.

I didn't set up the original server, and the open 3389 port that it has is dodgy as you all mention, I guess potentially the 3390 port that I have open is also a security risk? It's a very basic setup, but security is a concern of course, are there any 'dirty' fixes I can use, basically the software developer of the program this whole thing is being used for (to RDP on to the machine with that software on) basically said to use Terminal Services and not VPN.

Could I set an outbound rule on the machine then to only allow certain web traffic to make it more secure? (The program they use will need to send email via Outlook and of course allow remote access via RDP and occasionally, Teamviewer)
 
Back
Top Bottom