Because of the work required, you often use Remote Desktop to connect to a Windows server. Windows has a default Remote Desktop port number of 3389, to increase server security, in addition to the hardware device rules, you can also use the Windows-brought policy to increase the security of Windows Server.
Below take windows2008r2 as an example, set up two kinds of strategies:(two kinds of any one, can not be effective at the same time)
The first way: Remote Desktop port number changes
Registry to change two places, the first path is as follows
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Terminal server\wds\rdpwd\tds\tcp----PortNumber |
(1) Enter the registration form, according to the above path, find PortNumber, the default of 3389 to other
650) this.width=650; "Src=" Http://s1.51cto.com/wyfs02/M00/8A/2A/wKioL1gpsfHh2-deAAMOIG238B8993.jpg-wh_500x0-wm_3 -wmp_4-s_451591427.jpg "title=" 1.jpg "alt=" Wkiol1gpsfhh2-deaamoig238b8993.jpg-wh_50 "/>
(2) Change the port number to 52113
650) this.width=650; "Src=" Http://s2.51cto.com/wyfs02/M01/8A/2A/wKioL1gpsjDR_DnFAABcr-a11Qk183.jpg-wh_500x0-wm_3 -wmp_4-s_3225696594.jpg "title=" 2.jpg "alt=" Wkiol1gpsjdr_dnfaabcr-a11qk183.jpg-wh_50 "/>
The second path is as follows
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Terminal server\winstations\rdp-tcp----PortNumber
|
The same port number is changed here and above
650) this.width=650; "Src=" Http://s1.51cto.com/wyfs02/M00/8A/2A/wKioL1gpuNCCU3ZxAAM82P52vuc362.jpg-wh_500x0-wm_3 -wmp_4-s_466529538.jpg "title=" 7.jpg "alt=" Wkiol1gpunccu3zxaam82p52vuc362.jpg-wh_50 "/>
Second way: Firewall settings allow only one IP connection
(1) Open firewall, start-run (win+r key), enter "Wf.msc"
650) this.width=650; "Src=" Http://s1.51cto.com/wyfs02/M02/8A/2A/wKioL1gpsv2ikvU5AALnVH7l-GA171.jpg-wh_500x0-wm_3 -wmp_4-s_2509811406.jpg "title=" 4.jpg "alt=" Wkiol1gpsv2ikvu5aalnvh7l-ga171.jpg-wh_50 "/>
(2) also configure the "public network", such as
650) this.width=650; "Src=" Http://s4.51cto.com/wyfs02/M02/8A/2A/wKioL1gps3_SoMSXAALyivehKeU580.jpg-wh_500x0-wm_3 -wmp_4-s_2183404008.jpg "title=" 6.jpg "alt=" Wkiol1gps3_somsxaalyivehkeu580.jpg-wh_50 "/>
At this point, the server is set to allow only 10.3.20.36 through Remote Desktop access. No other machines can connect
This article is from the "Zhao Dongwei blog" blog, make sure to keep this source http://zhaodongwei.blog.51cto.com/4233742/1872793
Windows Remote Desktop: Port number Change & Specify IP connection