Remote Desktop Failed With Port Open & Listening And Allowed Through Firewall

0

1

Windows Server 2008 R2 with Remote Desktop allowed using less secure option. Firewall is allowing port 3389 through firewall. Group policy is set to Allow for Remote Desktop exceptions. It is also allowing from Remote Terminal Services. CMD netstat shows that 3389 is LISTENING.

When I try to connect to the system from any computer on my network it will not connect and fail to initialize. I can ping the server. I can get to the file shares. I cannot Remote to it. Is there a setting I missed?

JukEboX

Posted 2016-10-06T16:02:32.873

Reputation: 371

1internal or external to your network? – Ramhound – 2016-10-06T16:09:27.883

@Ramhound Internal – JukEboX – 2016-10-06T16:22:07.357

If you are connecting to a PC within your network from another PC within you network then why did you forward the port? – Ramhound – 2016-10-06T16:26:57.987

@Ramhound I am allowing the port through the local firewall not the router firewall. – JukEboX – 2016-10-06T16:29:57.920

Answers

0

Located the answer.

The following policy was set

Computer Configuration > Administrative Templates > Network > Windows Firewall > Domain Policy > Windows Firewall: Allow Remote Desktop exception

Found that it was set to 192.168.0.0/100

Deleted the whole value but still enabled the policy. Reconnected and it now works.

JukEboX

Posted 2016-10-06T16:02:32.873

Reputation: 371

1

try adding a user to Remote Desktop Users.

To provide users with remote desktop access, open the Control Panel -> System and Maintenance -> System -> Remote settings and click on the Select Users button to invoke the Remote Desktop Users dialog

stackmalux

Posted 2016-10-06T16:02:32.873

Reputation: 11

I am administrator and they are allowed per default. – JukEboX – 2016-10-06T16:22:20.867

@JukEboX You are local administrator? Or in a domain group for server admins, and that group is added to the local administrator's group? You may need your administrator's domain group added to the local remote desktop group. I recognize that the default policy is for administrators to have the right to log on remotely using RDP. But you have other policies in place. Are you positive one of those is not modifying that policy? Also, try connecting with the firewall disabled to confirm that firewall is not blocking. – Xalorous – 2016-10-06T18:41:19.527