Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

REMOTE ASSISTANCE - Notons Internet Security 2003 Firewall 1

Status
Not open for further replies.

fallyhag

Technical User
Mar 31, 2001
78
GB
MS Windows XP Pro

I have just been remoting to a friends PC to help them out and all went very well indeed. In fact, I was quite impressed with the Remote Assistance provided with XP.

However, I anticipated that there would be a firewall problem and switched mine off and got my friend to disable hers too.

After my work was done I just tested the Remote Connection again with Firewalls enabled and as I first thought it just wouldnt connect. I was left with the message "connecting to......." for ages.

I am running Nortons and she had ZoneAlarm.

I wouldnt like to think that I would have to do this each time so I am seeking a solution. Can anyone help please?

Thank you in advance

Fallyhag
 
Extract from
Internet Connection Firewall (ICF)

Windows XP ICF is designed to allow novice or expert requests to work. Remote Assistance works if either the novice or the expert is behind ICF.

Other Firewalls

The Remote Assistance connection is dependant on how the firewall is configured. When Windows Messenger is used, both the novice and expert are making outbound connections on port 3389. Most firewalls are configured to allow all outbound traffic but to restrict incoming traffic. In this case, if either the novice or the client is behind a firewall, Remote Assistance works as expected. If both the novice and the expert are behind firewalls, the connection depends on the inbound configuration of the firewall. In these situations, it is recommended that you use Windows Messenger to establish the Remote Assistance session. When either the Save Invitation as a File or Send Invitation as an E-mail method is used, the expert makes an outbound connection to the novice. The novice must be able to receive an inbound connection on port 3389; this port is the listening port that Remote Assistance uses. Most firewalls are configured to block incoming connections to this port; therefore, you must configure the firewall to open this port when you use Remote Assistance. These connections usually fail in scenarios where the novice is behind a firewall. In these cases, if the firewall cannot be opened, it is recommended that you use the Windows Messenger method when you use Remote Assistance.
 
Thanks MasterofNone

With this in mind, and understanding that this is now common knowledge, is this a safe thing to do?

I mean if I set up port 3389, wouldnt this be the entry door for hackers/probes who also know of this?

Please advise.

Thank you.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top