> I'd like to connect to my home Vista machine from my work using remote
> desktop. However, I'm quite concerned security and being able to access
> all my personal files using just a password (even if it is a complex one).
>
> How can I lock down remote desktop so that it is as close to being 100%
> hack proof as humanly possible?
Alan Jarvi has put togther some good info on configuring and securing RDP,
here:
http://theillustratednetwork.mvps.or...endations.html
Some of Alan's XP info is also useful for Vista:
http://theillustratednetwork.mvps.or...eshooting.html
I have RDP'ed into my home machine from work for a few years now. The most
important issue I have found is just making sure my Internet Router at home
is well-secured. I have port forwarding enabled in the router, so I RDP to
my public IP address, and the router forwards the traffic to my desktop
machine (based on the RDP Port number). As a security measure - possibly
excessive, but like you I'm paranoid - I changed the RDP Port from 3389 to
another number. The router emails me the firewall logs, and I occasionally
grep them for port activity on my customised RDP port. Just to make sure
nothing untoward has happened.
So far, I don't think I've been compromised ... or if they have, they're
beeing very discreet about it :-)
You can get some background info on RDP client security at the Terminal
Services Team blog:
http://blogs.msdn.com/ts/archive/tag...e/default.aspx
Hope it helps,
--
Andrew McLaren
amclar (at) optusnet dot com dot au