RDP Session, very unstable.. No changes on system or network


Recommended Posts

This is on my home network running Windows Server 2012. My firewall is a pFSense box configured to allow RDP.. I have had this setup for a couple of months with no RDP issues..Nothing has changed on my network or on the server. I use it just to remote in from work to manage things while I am away. I have done some goolging and found about 10000 different possible issues.. Didn't know if anyone here has ran into this.. Everything else on my network is working great.. No Bandwidth issues, good pings.. rebooted the server, modem, switch (managed) and pFsense.. Any ideas come off that might point me in the right direction?

Thanks!

Yes, I tried from my parents house last night and still same thing.. Sometimes it won't even let me login.. When it does, I have about a 1-2 minute window before it drops

Maybe I should use LogMeIn or Team Viewer.. Those are more secure anyway from what I read/been told.. I know there are exploits out there and a VPN + RDP is 1000x better.. maybe its a sign to change my ways at home..lol Suggestions on that?

Yes, I tried from my parents house last night and still same thing.. Sometimes it won't even let me login.. When it does, I have about a 1-2 minute window before it drops

Maybe I should use LogMeIn or Team Viewer.. Those are more secure anyway from what I read/been told.. I know there are exploits out there and a VPN + RDP is 1000x better.. maybe its a sign to change my ways at home..lol Suggestions on that?

RDP should be encrypted already, I wouldn't switch the way I do things because of a technical glitch. Any issues on the RDP Server machine in Event Viewer under System/Application that stand out? Windows Firewall turned off on that machine?

And is anything logged in the 2012 server for the drop?

I rdp to multiple boxes on my home network from work, but I do it over a vpn (openvpn) Problem I have with rdp open to the public net, unless you have it locked down to your work IP or other locations you might access it from in pfsense. Is its just a username password for protection. With my vpn, there is no way your guessing anything to get in - you have to have cert issued to by my CA, etc. And if for some reason I lost say my certs I store on my usb - then I could just revoke that cert and issue new ones.

Are you seeing any packet loss to your pfsense box? Can you get a running ping going, let it run for say 1000 or so pings - do you see drops? Increase the packet size of the pings to max.. Run the same test do you see any loss?

Move rdp to a different port. I had the standard 3389 set on my home network and it was getting constant attacks with attempted logins. This made it fragile to login remotely whereas on the lan it was fine.

The event viewer will show a load of failed authorisations if this is the case.

As of now, I can't even log in anymore..It ask me for my user/pass then drops. I will post logs and everything when I get home.. I can't ping the connection because I have that blocked. Thanks for everyone's help..

I was able to get in, and install Team Viewer.. I looked in the event log and there are a ton of,

TerminalServices-Printers

Driver Send To Microsoft OneNote 2010 Driver required for printer Send To OneNote 2010 is unknown. Contact the administrator to install the driver before you log in again.

Team Viewer is not crashing.. Hm...

Also getting a bunch of,

The Device Setup Manager service entered the running state.

The Device Setup Manager service entered the stopped state. Every two minutes..

Also getting these..

The Windows logon process has unexpectedly terminated.

For testing purposes only, bypass the router and directly connect the server to the internet. If you can RDP no problem, and over your internal LAN like you said with no problem, then it is your firewall hardware.

Instead of using any pre-programmed 'RDP' rules on the router, try forwarding an external port to internal port 3389. Then connect remotely using IPADDRESS:PORT. This will keep you safe from the RDP portscanner hack attempts and bypass the routers pre-programmed rules.

I was able to get in, and install Team Viewer.. I looked in the event log and there are a ton of,

TerminalServices-Printers

Driver Send To Microsoft OneNote 2010 Driver required for printer Send To OneNote 2010 is unknown. Contact the administrator to install the driver before you log in again.

Team Viewer is not crashing.. Hm...

Also getting a bunch of,

The Device Setup Manager service entered the running state.

The Device Setup Manager service entered the stopped state. Every two minutes..

Disable printer forwarding.

I was able to get in, and install Team Viewer.. I looked in the event log and there are a ton of,

TerminalServices-Printers

Driver Send To Microsoft OneNote 2010 Driver required for printer Send To OneNote 2010 is unknown. Contact the administrator to install the driver before you log in again.

Team Viewer is not crashing.. Hm...

Also getting a bunch of,

The Device Setup Manager service entered the running state.

The Device Setup Manager service entered the stopped state. Every two minutes..

Also getting these..

The Windows logon process has unexpectedly terminated.

Change your remote desktop connection to ignore printers under options | local resources.

it sounds like you have some troubleshooting to do on your server.

The Device Setup Manager service entered the running state.

The Device Setup Manager service entered the stopped state. Every two minutes..

Also getting these..

The Windows logon process has unexpectedly terminated.

^ if just a file server and other services that linux/bsd can do then sure pick your fav distro and run with it!

Just the other day I was looking to setup printing on my ipad I got for xmas, uses that stupid bonjour to find the printers. Well I had disabled most of the multicast on my windows box because just not having any need for it. And it was sending a bunch of noise that my gateway firewall was logging so just disabled it.

So since I have a linux VM running on my esxi host 24/7/365 anyway, just installed cups on it - connected it to the printer and there you go ipad can now see the printer being shared by cups ;) Took all of 10 minutes to setup vs having to turn mulicast back on my windows machine that would of generated a bunch of noise that isn't needed to be seen on my network.

linux can be a great solution for a bunch of stuff! Enjoy!

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • What people who support this position of LibreOffice do not understand is that EuroOffice is not made to appease the open source enthusiasts (I am also one) and evangelists. EuroOffice was made because some European companies wanted independence from Microsoft Office Suite, which is something installable on your computer. This move to independence was pushed by public institutions and governments in Europe, as well. Using a proprietary FORMAT as default, does not make you dependent on MS. The actual program does. A format can be changed with a simple update in the future in a dystopian world where MS would manipulate the format to lock others out. However, using MS Office proprietary format, guarantees that all the current documents used by companies, organizations, institutions, etc, will be compatible with EuroOffice and the suite will have the best chances at adoption, especially by slow moving organizations like governments and the public sector. It is as simple as that. For the same reason, even the UI is incredibly similar to MS Office. For the same reason (adoption) the choice was made to be open source. Not because EU particularly loves open source ideologically, but because it gives the best starting point to create trust in the project and amass developers and contributions to the project quickly, to catch up with proprietary projects like MS Office. I don't understand how people don't realize it.
    • How old is this tip? Seems 15-20 years old? Processor states for the CPU under Windows power options has been a thing for a long, long time. It certainly isn't new or hidden... Also, with laptops it doesn't make any difference what OS you are running, all of them are configured for battery longevity over performance, for obvious reasons.
    • I can't believe Starmer is still there...his party lost so big. He's a stubborn coot, but this is largely unenforceable, so I would imagine he'll be resigning soon. A key here is for parents to buy their kids phones sans Internet access--and set up the Internet at home, where mom and day can, you know, act like parents instead expecting the government to raise their kids.
    • EA launches in-game advertising platform for brands to "connect with audiences" by Pulasthi Ariyasinghe The gaming giant Electronic Arts is exploring more ways to inject real-life brands into its games. Announced today as EA Advertising, the new platform is attempting to make it easier for brands to reach out for deals with the company and put their products inside titles like EA Sports FC, Madden, NHL, Skate, or The Sims. EA revealed that its EA Sports side of the company brings in "hundreds of millions of players across console, PC, and mobile" every year. Fan engagement of these titles was also touted as being "extraordinary," with 23,000 NFL seasons worth of games being played in Madden NFL daily, while EA Sports FC sees over a billion matches a day. “Players come to EA’s games and live experiences every day to play, watch, create and connect,” said David Tinson, Chief Experiences Officer at Electronic Arts. “That gives brands a meaningful opportunity to show up in ways that add value and respect the player experience, while maintaining authenticity in the worlds our teams are building. With EA Advertising, we’re helping brands become part of those moments in ways that are relevant and built for players.” Using the new program EA Advertising, brands will be able to inject their products into games in real-time via dynamic placement. EA says partners will have access to everything from stadium signage in sports games and targeted adverts to in-game content custom-made for the brands. These are described as additions designed to "enhance, not disrupt" experiences. "In these interactive gameplay environments, brands become part of the game itself, reflecting how players engage with advertising in real-world contexts," adds the company "Brands can activate across live environments, tailoring placements to meet campaign objectives, and update campaigns with ongoing optimization informed by aggregated engagement insights." Current real-world brand partnerships EA has built into its games include Visa (EA Sports FC and College Football), Lowe's (EA Sports FC, Madden NFL, and College Football), Red Bull (EA SPORTS FC), Xfinity and Peacock (EA SPORTS FC), and Mountain Dew’s (College Football).
    • Will be surprised if there isn't a new ver of youtube just for labelled educational content
  • Recent Achievements

    • Week One Done
      Jeroen Wilms earned a badge
      Week One Done
    • Week One Done
      rolfus earned a badge
      Week One Done
    • One Month Later
      Leroy Jethro Gibbs earned a badge
      One Month Later
    • Conversation Starter
      flexorcist earned a badge
      Conversation Starter
    • One Month Later
      AndreaB earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      512
    2. 2
      +Edouard
      204
    3. 3
      PsYcHoKiLLa
      136
    4. 4
      ATLien_0
      91
    5. 5
      Steven P.
      85
  • Tell a friend

    Love Neowin? Tell a friend!