Koozali.org: home of the SME Server

Legacy Forums => Experienced User Forum => Topic started by: Tim on October 07, 2003, 08:04:57 PM

Title: Port Forward
Post by: Tim on October 07, 2003, 08:04:57 PM
I have my e-smith box set up as  server and gateway, and am trying to work out how to get a port forward so that any incoming connections to port 5900 will get sent to 192.168.0.2 5900
Has anyone got any ideas? The computer behind the firewall is at this stage a windows box with no ssh set up on it, hence the problem.
Thanks,
Tim
Title: Re: Port Forward
Post by: Bob King on October 08, 2003, 04:30:56 AM
Try the Port Forwarding panel located at the link below.

http://mirror.contribs.org/smeserver/contribs/dmay/mitel/contrib/portforwarding/
Title: Re: Port Forward
Post by: Damien Ryan on October 08, 2003, 03:09:57 PM
Is it possible to use a VPN connection ?

When using tightvnc I VPN onto the client then connect from there.

I don't think tightvnc (is that what you want port 5900 open for ) is
properly secure.

Damien
Title: Re: Port Forward
Post by: bob on October 08, 2003, 04:17:53 PM
It is possible to use VPN. Once you have the vpn connection, use the ip and the VNC password of the computer you are trying to connect to. I have tried to use the port forwarding with mixed results, but vnc over vpn works


Bob
Title: Re: Port Forward
Post by: ryan on October 12, 2003, 10:28:07 PM
VNC can be portforwarded with SME port forwarding addon.

As mentioned, you should be take precaution as your vnc password can be sniffed or captured.

1.  Set up VNC server system to use a locking screen saver password with a short time out.  I use 10 minutes.

2.  VNC password should be different than system passwords.  Windows login passwords should be tough as well.  

3.  Always logout or lock a system after using VNC.

If someone where to capture your vnc password and open a connection, they would still have to get past the Windows login.  

I use VNC through port forward rather than VPN because it is much faster, especially if the destination lan is connected by dialup.

If you need more security, look into netmeeting or remote desktop which 'might' be more secure.  PC anywhere is also an option.

hope that helps,

ryan
Title: Re: Port Forward
Post by: Alejandro Lengua on October 18, 2003, 03:22:46 AM
I installed that contrib as well as the packetfilter.rpm in my SME 5.6 box however it seems to be doing nothing. I am trying to forward ports 25,110 and 80.