and to really complement that and avoid hackers scanning that port look at
using firewall authentication off a radius server (in w2k/nt it is called
IAS). this requires the user to log in twice but then only exposes you to FW
hacks, which should be less prevalent than TS hacks...........

cheers
Dean

-----Original Message-----
From: Dennis Depp [mailto:[EMAIL PROTECTED]]
Sent: Saturday, 2 February 2002 9:55 a.m.
To: NT 2000 Discussions
Subject: Re: Terminal Server Security


Place it behind a firewall and only allow port 3389 thru.  Use High 
encryption.  Keep everything patched.

Denny

At 03:23 PM 2/1/2002 -0500, Phil wrote:
>I want to put a terminal server on the internet directly. What kind of
>precautions do I need to do in order to secure the box?
>I mean that I do not want to have people VPN into the network first.
>What are the security holes associated with doing this?
>When people lob in is it sent with plain text?
>
>Thanks!
>
>
>
>_________________________________________________________
>
>Do You Yahoo!?
>
>Get your free @yahoo.com address at http://mail.yahoo.com
>
>
>
>
>------
>You are subscribed as [EMAIL PROTECTED]
>Archives: http://www.swynk.com/sitesearch/search.asp
>To unsubscribe send a blank email to [EMAIL PROTECTED]


------
You are subscribed as [EMAIL PROTECTED]
Archives: http://www.swynk.com/sitesearch/search.asp
To unsubscribe send a blank email to [EMAIL PROTECTED]
***************************************************
This e-mail is  not an  official  statement of  the
Waikato  Regional  Council unless otherwise stated.
Visit our website http://www.ew.govt.nz
***************************************************

------
You are subscribed as [email protected]
Archives: http://www.swynk.com/sitesearch/search.asp
To unsubscribe send a blank email to [EMAIL PROTECTED]

Reply via email to