RDP Session, very unstable.. No changes on system or network


Recommended Posts

This is on my home network running Windows Server 2012. My firewall is a pFSense box configured to allow RDP.. I have had this setup for a couple of months with no RDP issues..Nothing has changed on my network or on the server. I use it just to remote in from work to manage things while I am away. I have done some goolging and found about 10000 different possible issues.. Didn't know if anyone here has ran into this.. Everything else on my network is working great.. No Bandwidth issues, good pings.. rebooted the server, modem, switch (managed) and pFsense.. Any ideas come off that might point me in the right direction?

Thanks!

Yes, I tried from my parents house last night and still same thing.. Sometimes it won't even let me login.. When it does, I have about a 1-2 minute window before it drops

Maybe I should use LogMeIn or Team Viewer.. Those are more secure anyway from what I read/been told.. I know there are exploits out there and a VPN + RDP is 1000x better.. maybe its a sign to change my ways at home..lol Suggestions on that?

Yes, I tried from my parents house last night and still same thing.. Sometimes it won't even let me login.. When it does, I have about a 1-2 minute window before it drops

Maybe I should use LogMeIn or Team Viewer.. Those are more secure anyway from what I read/been told.. I know there are exploits out there and a VPN + RDP is 1000x better.. maybe its a sign to change my ways at home..lol Suggestions on that?

RDP should be encrypted already, I wouldn't switch the way I do things because of a technical glitch. Any issues on the RDP Server machine in Event Viewer under System/Application that stand out? Windows Firewall turned off on that machine?

And is anything logged in the 2012 server for the drop?

I rdp to multiple boxes on my home network from work, but I do it over a vpn (openvpn) Problem I have with rdp open to the public net, unless you have it locked down to your work IP or other locations you might access it from in pfsense. Is its just a username password for protection. With my vpn, there is no way your guessing anything to get in - you have to have cert issued to by my CA, etc. And if for some reason I lost say my certs I store on my usb - then I could just revoke that cert and issue new ones.

Are you seeing any packet loss to your pfsense box? Can you get a running ping going, let it run for say 1000 or so pings - do you see drops? Increase the packet size of the pings to max.. Run the same test do you see any loss?

Move rdp to a different port. I had the standard 3389 set on my home network and it was getting constant attacks with attempted logins. This made it fragile to login remotely whereas on the lan it was fine.

The event viewer will show a load of failed authorisations if this is the case.

As of now, I can't even log in anymore..It ask me for my user/pass then drops. I will post logs and everything when I get home.. I can't ping the connection because I have that blocked. Thanks for everyone's help..

I was able to get in, and install Team Viewer.. I looked in the event log and there are a ton of,

TerminalServices-Printers

Driver Send To Microsoft OneNote 2010 Driver required for printer Send To OneNote 2010 is unknown. Contact the administrator to install the driver before you log in again.

Team Viewer is not crashing.. Hm...

Also getting a bunch of,

The Device Setup Manager service entered the running state.

The Device Setup Manager service entered the stopped state. Every two minutes..

Also getting these..

The Windows logon process has unexpectedly terminated.

For testing purposes only, bypass the router and directly connect the server to the internet. If you can RDP no problem, and over your internal LAN like you said with no problem, then it is your firewall hardware.

Instead of using any pre-programmed 'RDP' rules on the router, try forwarding an external port to internal port 3389. Then connect remotely using IPADDRESS:PORT. This will keep you safe from the RDP portscanner hack attempts and bypass the routers pre-programmed rules.

I was able to get in, and install Team Viewer.. I looked in the event log and there are a ton of,

TerminalServices-Printers

Driver Send To Microsoft OneNote 2010 Driver required for printer Send To OneNote 2010 is unknown. Contact the administrator to install the driver before you log in again.

Team Viewer is not crashing.. Hm...

Also getting a bunch of,

The Device Setup Manager service entered the running state.

The Device Setup Manager service entered the stopped state. Every two minutes..

Disable printer forwarding.

I was able to get in, and install Team Viewer.. I looked in the event log and there are a ton of,

TerminalServices-Printers

Driver Send To Microsoft OneNote 2010 Driver required for printer Send To OneNote 2010 is unknown. Contact the administrator to install the driver before you log in again.

Team Viewer is not crashing.. Hm...

Also getting a bunch of,

The Device Setup Manager service entered the running state.

The Device Setup Manager service entered the stopped state. Every two minutes..

Also getting these..

The Windows logon process has unexpectedly terminated.

Change your remote desktop connection to ignore printers under options | local resources.

it sounds like you have some troubleshooting to do on your server.

The Device Setup Manager service entered the running state.

The Device Setup Manager service entered the stopped state. Every two minutes..

Also getting these..

The Windows logon process has unexpectedly terminated.

^ if just a file server and other services that linux/bsd can do then sure pick your fav distro and run with it!

Just the other day I was looking to setup printing on my ipad I got for xmas, uses that stupid bonjour to find the printers. Well I had disabled most of the multicast on my windows box because just not having any need for it. And it was sending a bunch of noise that my gateway firewall was logging so just disabled it.

So since I have a linux VM running on my esxi host 24/7/365 anyway, just installed cups on it - connected it to the printer and there you go ipad can now see the printer being shared by cups ;) Took all of 10 minutes to setup vs having to turn mulicast back on my windows machine that would of generated a bunch of noise that isn't needed to be seen on my network.

linux can be a great solution for a bunch of stuff! Enjoy!

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Yeah, this is absolutely nothing new and EA have done it before. Burnout Paradise, released in 2008, had dynamic advertising billboards that were updated via the internet and targeted people based on location and what EA knew about them from their profile. It was particularly notable for the fact that the Obama presidential campaign ran ads in the game, in an attempt to reach a younger audience who didn't watch broadcast TV any more. It was by no means the first though. Battlefield 2142 from 2006 had the same thing. In fact, Neowin wrote a story about it back then. https://www.neowin.net/news/ba...-in-game-ads-clarification/
    • This is obviously aimed at the education where Apple has lost so much ground to Chromebooks in the last few years, but unless they come up with a comparable management system for education why would anyone switch back?
    • Here's how we arrived at that claim: Note that this is just Play Store downloads. The app is also available on the Galaxy App Store
    • Google Play states the app had more than 50 million downloads. What other metric do you suggest should be used?
    • MSN defined our generation in some ways, kind of like Snapchat and TikTok have done for future generations. I have great memories of the MSN era in the late 90s / early 2000s. In the UK everyone seemed to come home from School and go on MSN for the evening. We didn't really have mobile phones then, so other than going and knocking on your friends door it was a totally new way of interacting with people. I also loved how I could talk to people I’d met playing online games from around the world. Inviting people to NetMeeting and messing about with the shared white board and webcams was pretty fun, even if webcams only ran at a couple of fps over dial-up. All the random things you could do with MsgPlus! were really fun - I suspect that made a few people jump with /shello randomly blasting Mr Hankey out their speakers! Maybe I’m just nostalgic, however I do feel the internet and computers were more fun back then.
  • Recent Achievements

    • One Year In
      Console General earned a badge
      One Year In
    • One Year In
      Twozo Technologies earned a badge
      One Year In
    • One Month Later
      Twozo Technologies earned a badge
      One Month Later
    • Week One Done
      Twozo Technologies earned a badge
      Week One Done
    • Veteran
      branfont went up a rank
      Veteran
  • Popular Contributors

    1. 1
      +primortal
      517
    2. 2
      +Edouard
      200
    3. 3
      PsYcHoKiLLa
      131
    4. 4
      Steven P.
      89
    5. 5
      neufuse
      76
  • Tell a friend

    Love Neowin? Tell a friend!