This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Terminal Server through DMZ

We have a client running a simple DMZ setup on an XG125w, we separate the DMZ and LAN using a physical switch. The WiFi network is running on the DMZ.

There is a Terminal Server on the LAN which needs to be accessed from the DMZ. I have created a firewall rule to open port 3389 to the Terminal Server, and this works without issue

 

However, the Terminal Server is setup to use RDGateway for their remote employees. 

When one of these employees is in the office, they connect to the DMZ network. If they try to use their RDP icon to access the Terminal Server, it attempts to connect via RDGateway, which results in an immediate certificate error.

If I remove the RDGateway configuration from their RDP icon, the connection works properly.

 

The immediate workaround is that we've created a second RDP icon for these users, but this isn't going to fix the issue.

 

Does anyone have any suggestions or ideas? I think a Static Route might be what I need, but I can't seem to find any settings that work.



This thread was automatically locked due to age.
Parents
  • Hello,

     

    I am not sure but I think RD Gateway works on Remote Procedure call over HTTP/S protocol on port 80 and 443.

     

    if you have you enabled "Decrypt & Scan HTTPS" on your firewall rule, you will need to import the certificate [HTTPS scanning certificate authority (CA)] in you system else add the Public DNS in the Web > Exception to skip the HTTPS decrypt and scan.

     

    Regards, Ronak.

Reply
  • Hello,

     

    I am not sure but I think RD Gateway works on Remote Procedure call over HTTP/S protocol on port 80 and 443.

     

    if you have you enabled "Decrypt & Scan HTTPS" on your firewall rule, you will need to import the certificate [HTTPS scanning certificate authority (CA)] in you system else add the Public DNS in the Web > Exception to skip the HTTPS decrypt and scan.

     

    Regards, Ronak.

Children
No Data