Registered users    
MembershipMembership:
Latest New UserLatest:Chris Naylor
New TodayNew Today:11
New YesterdayNew Yesterday:11
User CountOverall:23325

Private messaging    
You must be logged in to use this module.
Top 10 posters    
NamePosts
Mariette Knap12894
Marina Roos12507
Eriq Neale2114
Stan Guinn1913
Michael Patrick1912
Robert Pearman1771
Nick Pieters1425
Stewart Brown616
william warren600
Kevin D.579
Welcome unauthorized visitor    
If you want to join us in the discussions on this forum you need to register first. Registration is free! If you are already a registered user please login to join the forum.
Small Business Server Support Forum    
Subject: VNC on a SBS2003 R2
Prev Next
You are not authorized to post a reply.

Author Messages
Jo Lambrecht User is Offline
Belgium
Member since
5/24/2005

Platinum Membership
Posts: 164

10/09/2007 02:50 PM  
Hi,
 
I had a question from the guys who develop the software, to allow VNC on the server. They use VNC to remotely update their software. As they say it is always the "client" who will initiat the link.
So they installed a little software on the server (wich i heavely protested but hi, customer is king) so make this work. it works over TCP 5500 outbound.
Ofcourse, as always, isa server is blocking the communication (wich means tha isa server is working), but sometimes it is working to good.  And the soft-developers blaim it on the administrator.
 
I created several rules to (try) to make it work but no succes.
 
Anyone any tips and tricks ?
 
Regards,
Jo
robert pearman User is Offline
United Kingdom
Member since
2/23/2007

Platinum Membership
Posts: 1771

10/09/2007 04:25 PM  
you would probably need to create a 'user defined' protocol for vnc( tcp 5500) (btw are you sure it isnt 5900)

then you can create your rules to allow your custom protocol outbound. to increase security you could limit the destinations isa will let this protocol go to to this developers IP.

of course for added security, tell your developer to stop using VNC and get a proper remote admin tool, i can reccomend netviewer, as very easy to use and bypasses firewalls as it works over SSL.
U M User is Offline
United States
Member since
7/13/2007

Registered Users
Posts: 84

10/09/2007 10:42 PM  
Why not just use an SSL VPN concentrator?

You have an authentican layer into the network and can still use VNP or RDP over SSL to connect to remote systems in the internal network.

SonicWall, Netgear both make them.
Fortigate/Fortinet also have one inside a UTM unit.

I still use RDP or VNP, but use the SSL VPN as an authentican layer.
You are not authorized to post a reply.



ActiveForums 3.7
Forum policy    
These Discussion Forums are dedicated to the discussion of the Small Business Server and related server and client software. For the benefit of the community please observe the following posting guidelines:
  1. No Advertising. This includes promotion of commercial products and non-commercial products which are not directly related to Small Business Server and related server and client software.
  2. No Flaming or Trolling.
  3. No Profanity, Racism, or Prejudice.
  4. Site Moderators have the final word on approving/removing a thread or post or comment.