Recommended Posts

I have a Windows Server 2012 r2 Essentials box that is running AD, remote web access, and application server. I have about 15 machines joined. I am only trying to connect to the built in administrator RDP session. I am not running Remote Desktop Services other than what is required to use RWW. All my firewall points are open. Forwarded TCP/UDP to port 3389 to it, and made sure Windows Firewall had the correct rules. I have ESET File Security running also. 

 

I am unable to connect. Not even from RWW.

 

Please help. 

Link to comment
https://www.neowin.net/forum/topic/1325040-remote-desktop-is-hosed/
Share on other sites

I have a Windows Server 2012 r2 Essentials box that is running AD, remote web access, and application server. I have about 15 machines joined. I am only trying to connect to the built in administrator RDP session. I am not running Remote Desktop Services other than what is required to use RWW. All my firewall points are open. Forwarded TCP/UDP to port 3389 to it, and made sure Windows Firewall had the correct rules. I have ESET File Security running also. 
 
I am unable to connect. Not even from RWW.
 
Please help. 

Sounds like either Remote Desktop isn't enabled properly or a windows/eset firewall issue.

Are you in the UK using Virgin Media? There is a strange issue at the moment (Ongoing I think) Where services like RDP/VPN just simply don't work in very odd occasions. Last I heard they were working with the equipment vendors to resolve it. We need more information though....

8 hours ago, bledd said:

Tried connecting via the IP instead of the hostname?

 

What happens when you try to connect?

Yes. I tried connecting by IP. Same error I get when using HOSTNAME.

Quote

Remote Desktop Cant connect to the remote computer for one of these reasons:

1) Remote access to the server is not enabled
2) The remote computer is turned off
3) The remote computer is not available on the network

Make sure the remote computer is turned on and connected to the network, and that remote access is enabled

 

 

 

8 hours ago, John Teacake said:

Are you in the UK using Virgin Media? There is a strange issue at the moment (Ongoing I think) Where services like RDP/VPN just simply don't work in very odd occasions. Last I heard they were working with the equipment vendors to resolve it. We need more information though....

No, I am firstly trying to connect locally. 

 

 

8 hours ago, xendrome said:

Can you connect locally over the LAN, if so, then RDP isn't hosed. Then you've got a AV/Firewall/Router/ISP issue going on. Double check your static IP and port match in the router forwarding.

 

No, not locally. I am only trying to connect locally before attempting to connect remotely. I dropped the Firewall and all AV. Still no joy.

 

8 hours ago, TheReaperMan said:

can you connect using a local desktop and also try using the ip instead of the host

 

Are you sure the remote connection is enabled in "System Properties" > Remote tab on the server?

Cant connect locally. Tried IP and HOSTNAME

Remote access is checked in the system properties. Administrator has automatic access

rdp-error.jpg

not to doubt you but have the basics been checked?

 

IP hasn't been changed on the server for some reason?

router has not lost any port forwarding entries?

 

odd that you're having trouble connecting on the local network too

21 minutes ago, Brandon H said:

not to doubt you but have the basics been checked?

 

IP hasn't been changed on the server for some reason?

router has not lost any port forwarding entries?

 

odd that you're having trouble connecting on the local network too

ip is static and has not changed. I am just trying to connect locally. THIS IS CRAZY!!!!!

sc302 is my hero of the day. 

 

I changed the listening port in the past.. and when I changed it back to 3389, I entered it into the wrong box in the regedit editor..

 

Just went down for a reboot.. lets see. Thanks so much again sc302

 

 

----------

RDP IS NOT HOSED ANYMORE

Edited by astralbaby
15 hours ago, Jason S. said:

maybe i missed something here, but why did you change the listening port from 3389?

 

What's RWW?

Initially, I deployed a single server where I changed the listening port for RDP. It is an obscure way of keeping outsiders from brute-forcing the login. I used this session to perform remote maintenance on this server. 

 

RWW = Remote Web Workplace, or, Remote Web Access

6 hours ago, astralbaby said:

Initially, I deployed a single server where I changed the listening port for RDP. It is an obscure way of keeping outsiders from brute-forcing the login. I used this session to perform remote maintenance on this server. 

 

RWW = Remote Web Workplace, or, Remote Web Access

You could just use port triggering (whatever port outside - forwards to internal 3389 when accessed)

 

But it literally takes 5 minutes to use a port scanner on an outside IP to scan 1-65536 so it does nothing for brute-force. You really should have your network behind a VPN and not open-facing to internet connections.

 

EDIT: Actually if you can't do a VPN right now, you'd probably be more secure using TeamViewer on that server with 2FA turned on, at least that's an extra layer.

Right, so perhaps im confused, but you said "All my firewall points are open" which, to me, means that you dont really have a firewall. as Xendrome said, a port scanner would take care of that pretty fast, so why change the RDP port at all?

I didn't go into his router/Asa to determine what was or wasn't open at that level, software firewall is enabled.

 

But anytime you have a port open on the firewall and a service listening it can be scanned. The next part is a little harder, identifying exactly what is communicating across esp if the transmission is encrypted.

  • 2 weeks later...
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • I've not seen any controlled testing and, judging by Microsoft's mentality, within a year, they'll have added so much more bloat, it'll undo any perceptible latency benefit and we'll have boosted the CPU clocks for nothing.
    • It depends: heat soak is a thing. Initially on cold boot-up, the heatsinks & heatpipes are at ambient temp. After heatsinks & heatpipes warm up (through normal usage), they don't immediately cool to ambient temp when the load goes away. So their baseline is higher and the trigger point for fans is much less stress. Add a few more CPU spikes → it's too hot to stay at the same fan RPM → fans get triggered to start up up much sooner / get triggered to ramp much more quickly.
    • Can LibreOffice just shut up and worry about themselves and stop comparing themselves? Do we see Microsoft complaining about euro office?
    • Why should simply opening the Action Center ... require any significant amount of CPU cycles? Too many are ignoring the elephant in the room: today's CPUs may have similar clock frequencies to CPUs from a decade ago (~4 to 5 GHz), but they run with far higher performance per clock, even on the smallest E-cores. The Action Center is a static, minor desktop element. It ought to open instantly on any CPU made in the past 2.5 decades at even low clocks. Opening a program? Boost away. Unzipping a file? Boost to your heart's content. Right-clicking the notification area? This should be an ultra-efficient, low-impact event that opens instantly. Compare today's UI elements to Windows 7 UI elements. Today's UI elements hardly do anything more substantial or important or critical, yet now require modern-day processors to jump half a GHz to reduce their latency.
    • This is not an option lmao: it is part of the KB5094126 update, pushed to all users. There is no GUI to configure it. Reading the article should be required for commenting.
  • Recent Achievements

    • One Year In
      slackerzz earned a badge
      One Year In
    • One Year In
      highriskpaym earned a badge
      One Year In
    • One Month Later
      highriskpaym earned a badge
      One Month Later
    • Week One Done
      highriskpaym earned a badge
      Week One Done
    • Week One Done
      FBSPL earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      501
    2. 2
      PsYcHoKiLLa
      198
    3. 3
      +Edouard
      156
    4. 4
      Steven P.
      84
    5. 5
      ATLien_0
      71
  • Tell a friend

    Love Neowin? Tell a friend!