Networking Forums

Networking Forums > Computer Networking > Windows Networking > Traffic block by server

Reply
Thread Tools Display Modes

Traffic block by server

 
 
Nuno Gomex
Guest
Posts: n/a

 
      09-28-2006, 03:33 PM
Hi!

I have a w2003 server with AD running with a IIS server in my network, also
I have a alcatel router/proxy/firewall that manages the internet
conenction.

Every thing works fine, but I can't access the server from outside my
network, Ex: I've routed the port 3389 to point to the server, but I always
get connection time out, however if I point it to another pc on the network
it works fine!

I' ve run out of ideias,

thanks


 
Reply With Quote
 
 
 
 
Robert L [MVP - Networking]
Guest
Posts: n/a

 
      09-28-2006, 04:19 PM
Can you telnet server port 3389 internally?

Bob Lin, MS-MVP, MCSE & CNE
Networking, Internet, Routing, VPN Troubleshooting on http://www.ChicagoTech.net
How to Setup Windows, Network, VPN & Remote Access on http://www.HowToNetworking.com
"Nuno Gomex" <(E-Mail Removed)> wrote in message news:%(E-Mail Removed)...
Hi!

I have a w2003 server with AD running with a IIS server in my network, also
I have a alcatel router/proxy/firewall that manages the internet
conenction.

Every thing works fine, but I can't access the server from outside my
network, Ex: I've routed the port 3389 to point to the server, but I always
get connection time out, however if I point it to another pc on the network
it works fine!

I' ve run out of ideias,

thanks


 
Reply With Quote
 
Nuno Gomex
Guest
Posts: n/a

 
      09-28-2006, 04:53 PM
Thank's

Yes

"Robert L [MVP - Networking]" <(E-Mail Removed)> escreveu na mensagem news:(E-Mail Removed)...
Can you telnet server port 3389 internally?

Bob Lin, MS-MVP, MCSE & CNE
Networking, Internet, Routing, VPN Troubleshooting on http://www.ChicagoTech.net
How to Setup Windows, Network, VPN & Remote Access on http://www.HowToNetworking.com
"Nuno Gomex" <(E-Mail Removed)> wrote in message news:%(E-Mail Removed)...
Hi!

I have a w2003 server with AD running with a IIS server in my network, also
I have a alcatel router/proxy/firewall that manages the internet
conenction.

Every thing works fine, but I can't access the server from outside my
network, Ex: I've routed the port 3389 to point to the server, but I always
get connection time out, however if I point it to another pc on the network
it works fine!

I' ve run out of ideias,

thanks


 
Reply With Quote
 
Nuno Gomex
Guest
Posts: n/a

 
      09-28-2006, 05:01 PM
I forgot to said that the alcatel router works like a standard machine only in linux, and I suspect that it has something to do with that.
"Robert L [MVP - Networking]" <(E-Mail Removed)> escreveu na mensagem news:(E-Mail Removed)...
Can you telnet server port 3389 internally?

Bob Lin, MS-MVP, MCSE & CNE
Networking, Internet, Routing, VPN Troubleshooting on http://www.ChicagoTech.net
How to Setup Windows, Network, VPN & Remote Access on http://www.HowToNetworking.com
"Nuno Gomex" <(E-Mail Removed)> wrote in message news:%(E-Mail Removed)...
Hi!

I have a w2003 server with AD running with a IIS server in my network, also
I have a alcatel router/proxy/firewall that manages the internet
conenction.

Every thing works fine, but I can't access the server from outside my
network, Ex: I've routed the port 3389 to point to the server, but I always
get connection time out, however if I point it to another pc on the network
it works fine!

I' ve run out of ideias,

thanks


 
Reply With Quote
 
Phillip Windell
Guest
Posts: n/a

 
      09-29-2006, 12:14 AM
Forget connecting like that anyway. That is reallty bad to expose TS (RDP)
to the Internet anyway. Use VPN then do your work inside the VPN Tunnel.
Some Devices (like ISA Server) can even control what machine can be accessed
by a particular VPN user after they connect and what protocols they can use
when they do it.


--
Phillip Windell [MCP, MVP, CCNA]
www.wandtv.com
-----------------------------------------------------
Understanding the ISA 2004 Access Rule Processing
http://www.isaserver.org/articles/IS...cessRules.html

Troubleshooting Client Authentication on Access Rules in ISA Server 2004
http://download.microsoft.com/downlo...7/ts_rules.doc

Microsoft Internet Security & Acceleration Server: Guidance
http://www.microsoft.com/isaserver/t...dance/2004.asp
http://www.microsoft.com/isaserver/t...dance/2000.asp

Microsoft Internet Security & Acceleration Server: Partners
http://www.microsoft.com/isaserver/partners/default.asp

Deployment Guidelines for ISA Server 2004 Enterprise Edition
http://www.microsoft.com/technet/pro...isaserver.mspx
-----------------------------------------------------




"Nuno Gomex" <(E-Mail Removed)> wrote in message
news:%(E-Mail Removed)...
> Hi!
>
> I have a w2003 server with AD running with a IIS server in my network,
> also I have a alcatel router/proxy/firewall that manages the internet
> conenction.
>
> Every thing works fine, but I can't access the server from outside my
> network, Ex: I've routed the port 3389 to point to the server, but I
> always get connection time out, however if I point it to another pc on the
> network it works fine!
>
> I' ve run out of ideias,
>
> thanks
>



 
Reply With Quote
 
Nuno Gomex
Guest
Posts: n/a

 
      09-29-2006, 01:42 PM
Thanks,

but i really need to access the server, not to RDP but the mysql service,
the RDP is an example and a way to test that it isn't the mysql server
that's gone wrong.


"Phillip Windell" <@.> escreveu na mensagem
news:(E-Mail Removed)...
> Forget connecting like that anyway. That is reallty bad to expose TS
> (RDP) to the Internet anyway. Use VPN then do your work inside the VPN
> Tunnel. Some Devices (like ISA Server) can even control what machine can
> be accessed by a particular VPN user after they connect and what protocols
> they can use when they do it.
>
>
> --
> Phillip Windell [MCP, MVP, CCNA]
> www.wandtv.com
> -----------------------------------------------------
> Understanding the ISA 2004 Access Rule Processing
> http://www.isaserver.org/articles/IS...cessRules.html
>
> Troubleshooting Client Authentication on Access Rules in ISA Server 2004
> http://download.microsoft.com/downlo...7/ts_rules.doc
>
> Microsoft Internet Security & Acceleration Server: Guidance
> http://www.microsoft.com/isaserver/t...dance/2004.asp
> http://www.microsoft.com/isaserver/t...dance/2000.asp
>
> Microsoft Internet Security & Acceleration Server: Partners
> http://www.microsoft.com/isaserver/partners/default.asp
>
> Deployment Guidelines for ISA Server 2004 Enterprise Edition
> http://www.microsoft.com/technet/pro...isaserver.mspx
> -----------------------------------------------------
>
>
>
>
> "Nuno Gomex" <(E-Mail Removed)> wrote in message
> news:%(E-Mail Removed)...
>> Hi!
>>
>> I have a w2003 server with AD running with a IIS server in my network,
>> also I have a alcatel router/proxy/firewall that manages the internet
>> conenction.
>>
>> Every thing works fine, but I can't access the server from outside my
>> network, Ex: I've routed the port 3389 to point to the server, but I
>> always get connection time out, however if I point it to another pc on
>> the network it works fine!
>>
>> I' ve run out of ideias,
>>
>> thanks
>>

>
>



 
Reply With Quote
 
Phillip Windell
Guest
Posts: n/a

 
      09-29-2006, 09:34 PM
Ok, sorry, I though you were wanting RDP/TS.

--
Phillip Windell [MCP, MVP, CCNA]
www.wandtv.com

"Nuno Gomex" <(E-Mail Removed)> wrote in message
news:(E-Mail Removed)...
> Thanks,
>
> but i really need to access the server, not to RDP but the mysql service,
> the RDP is an example and a way to test that it isn't the mysql server
> that's gone wrong.
>
>
> "Phillip Windell" <@.> escreveu na mensagem
> news:(E-Mail Removed)...
>> Forget connecting like that anyway. That is reallty bad to expose TS
>> (RDP) to the Internet anyway. Use VPN then do your work inside the VPN
>> Tunnel. Some Devices (like ISA Server) can even control what machine can
>> be accessed by a particular VPN user after they connect and what
>> protocols they can use when they do it.
>>
>>
>> --
>> Phillip Windell [MCP, MVP, CCNA]
>> www.wandtv.com
>> -----------------------------------------------------
>> Understanding the ISA 2004 Access Rule Processing
>> http://www.isaserver.org/articles/IS...cessRules.html
>>
>> Troubleshooting Client Authentication on Access Rules in ISA Server 2004
>> http://download.microsoft.com/downlo...7/ts_rules.doc
>>
>> Microsoft Internet Security & Acceleration Server: Guidance
>> http://www.microsoft.com/isaserver/t...dance/2004.asp
>> http://www.microsoft.com/isaserver/t...dance/2000.asp
>>
>> Microsoft Internet Security & Acceleration Server: Partners
>> http://www.microsoft.com/isaserver/partners/default.asp
>>
>> Deployment Guidelines for ISA Server 2004 Enterprise Edition
>> http://www.microsoft.com/technet/pro...isaserver.mspx
>> -----------------------------------------------------
>>
>>
>>
>>
>> "Nuno Gomex" <(E-Mail Removed)> wrote in message
>> news:%(E-Mail Removed)...
>>> Hi!
>>>
>>> I have a w2003 server with AD running with a IIS server in my network,
>>> also I have a alcatel router/proxy/firewall that manages the internet
>>> conenction.
>>>
>>> Every thing works fine, but I can't access the server from outside my
>>> network, Ex: I've routed the port 3389 to point to the server, but I
>>> always get connection time out, however if I point it to another pc on
>>> the network it works fine!
>>>
>>> I' ve run out of ideias,
>>>
>>> thanks
>>>

>>
>>

>
>



 
Reply With Quote
 
Jeffrey Randow
Guest
Posts: n/a

 
      10-01-2006, 05:40 PM
You might want to double check the firewall on the 2K3 machine and
make sure that the port in questions (in your example, 3389) is
allowed to both the local subnet and the internet.

--
Jeffrey Randow
(E-Mail Removed)
Windows Networking MVP 2001-2006

http://www.networkblog.net

..On Thu, 28 Sep 2006 16:33:30 +0100, "Nuno Gomex"
<(E-Mail Removed)> wrote:

>Hi!
>
>I have a w2003 server with AD running with a IIS server in my network, also
>I have a alcatel router/proxy/firewall that manages the internet
>conenction.
>
>Every thing works fine, but I can't access the server from outside my
>network, Ex: I've routed the port 3389 to point to the server, but I always
>get connection time out, however if I point it to another pc on the network
>it works fine!
>
>I' ve run out of ideias,
>
>thanks
>

 
Reply With Quote
 
Nuno Gomex
Guest
Posts: n/a

 
      10-02-2006, 07:17 PM
Thanks

My windows firewall is disabled, the stange thing is that I set up another
dc and it works fine !


"Jeffrey Randow" <(E-Mail Removed)> escreveu na mensagem
news:(E-Mail Removed)...
> You might want to double check the firewall on the 2K3 machine and
> make sure that the port in questions (in your example, 3389) is
> allowed to both the local subnet and the internet.
>
> --
> Jeffrey Randow
> (E-Mail Removed)
> Windows Networking MVP 2001-2006
>
> http://www.networkblog.net
>
> .On Thu, 28 Sep 2006 16:33:30 +0100, "Nuno Gomex"
> <(E-Mail Removed)> wrote:
>
>>Hi!
>>
>>I have a w2003 server with AD running with a IIS server in my network,
>>also
>>I have a alcatel router/proxy/firewall that manages the internet
>>conenction.
>>
>>Every thing works fine, but I can't access the server from outside my
>>network, Ex: I've routed the port 3389 to point to the server, but I
>>always
>>get connection time out, however if I point it to another pc on the
>>network
>>it works fine!
>>
>>I' ve run out of ideias,
>>
>>thanks
>>



 
Reply With Quote
 
Jeffrey Randow
Guest
Posts: n/a

 
      10-03-2006, 12:43 AM
Glad you got it figured out...

--
Jeffrey Randow
(E-Mail Removed)
Windows Networking MVP 2001-2006

http://www.networkblog.net

..On Mon, 2 Oct 2006 20:17:30 +0100, "Nuno Gomex"
<(E-Mail Removed)> wrote:

>Thanks
>
>My windows firewall is disabled, the stange thing is that I set up another
>dc and it works fine !
>
>
>"Jeffrey Randow" <(E-Mail Removed)> escreveu na mensagem
>news:(E-Mail Removed).. .
>> You might want to double check the firewall on the 2K3 machine and
>> make sure that the port in questions (in your example, 3389) is
>> allowed to both the local subnet and the internet.
>>
>> --
>> Jeffrey Randow
>> (E-Mail Removed)
>> Windows Networking MVP 2001-2006
>>
>> http://www.networkblog.net
>>
>> .On Thu, 28 Sep 2006 16:33:30 +0100, "Nuno Gomex"
>> <(E-Mail Removed)> wrote:
>>
>>>Hi!
>>>
>>>I have a w2003 server with AD running with a IIS server in my network,
>>>also
>>>I have a alcatel router/proxy/firewall that manages the internet
>>>conenction.
>>>
>>>Every thing works fine, but I can't access the server from outside my
>>>network, Ex: I've routed the port 3389 to point to the server, but I
>>>always
>>>get connection time out, however if I point it to another pc on the
>>>network
>>>it works fine!
>>>
>>>I' ve run out of ideias,
>>>
>>>thanks
>>>

>

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
iptables rule to block FTP-NAT-Helper-Traffic Kevin Kempfer Linux Networking 5 11-29-2008 09:08 PM
Utility to block traffic to one specific IP address robpimentel@yahoo.com Windows Networking 4 10-15-2007 03:40 AM
how to block incoming traffic Adia Linux Networking 5 09-01-2006 09:10 PM
Block all NIC outgoing traffic in Windows XP SP2?? Yannick Drolet Windows Networking 1 10-23-2005 10:28 PM
2 NICs, same subnet for a 'gateway' that won't block traffic from 'outside' NIC freat Linux Networking 4 03-01-2004 01:43 PM



1 2 3 4 5 6 7 8 9 10 11