Originally posted by SeanT
View Post
- Visitors can check out the Forum FAQ by clicking this link. You have to register before you can post: click the REGISTER link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below. View our Forum Privacy Policy.
- Want to receive the latest contracting news and advice straight to your inbox? Sign up to the ContractorUK newsletter here. Every sign up will also be entered into a draw to WIN £100 Amazon vouchers!
Azure hosting or similar
Collapse
X
-
Originally posted by Spoiler View PostJust trying to figure out exactly how that would work ...
Spin up a Linux box in Lightsail, and run OpenVPN server on it.
Install OpenVPN client on the Lightsail Windows server and connect to the OpenVPN server.
Then, connect to VPN Server from home PC and run RDP over it.
If the admin account was secured with 2FA, then I'm still reliant on that working okay.
If the admin account isn't 2FA, then this leaves it open to brute force type attacks using direct RDP (not over the VPN).
Unless ... I can restrict an account to only permit logins over the VPN (not sure if that's possible) ???
RD Gateway on 443 open to the world.
RD service itself on 3389 open to localhost (i.e. the gateway service running on the same machine) and to the OpenVPN box.
Normal user access: RD via RD Gateway and Duo
Admin user backdoor: VPN auth with certificate / key, RDP direct to serverLeave a comment:
-
Originally posted by SeanT View PostI'd want an admin back door though (so a free VPN appliance, just for the genuinely administrative users, can be a Linux box for an extra fiver a month or something).
Spin up a Linux box in Lightsail, and run OpenVPN server on it.
Install OpenVPN client on the Lightsail Windows server and connect to the OpenVPN server.
Then, connect to VPN Server from home PC and run RDP over it.
If the admin account was secured with 2FA, then I'm still reliant on that working okay.
If the admin account isn't 2FA, then this leaves it open to brute force type attacks using direct RDP (not over the VPN).
Unless ... I can restrict an account to only permit logins over the VPN (not sure if that's possible) ???Leave a comment:
-
Potential sticking point: https://forums.aws.amazon.com/thread...hreadID=252542Leave a comment:
-
Originally posted by Spoiler View PostThis looks interesting, thanks. Will give it a spin. Pretty sure the app i need to use will work with 2012, possibly 2016. Will test it out.
Main concern now is to secure RDP, but still keep the login process simple(ish) - looking at DUO's 2FA option for RDP ...Leave a comment:
-
Originally posted by Dante View Posthttps://amazonlightsail.com/
Windows Server:
2 GB Memory
1 Core Processor
50 GB SSD Disk
3 TB Data Transfer*
$30 / £22.95 a month
EDIT: It's Windows 2012 and 2016 only,so you'll have to ensure your s/w runs on it (or go down the Linux + VM route).
Main concern now is to secure RDP, but still keep the login process simple(ish) - looking at DUO's 2FA option for RDP ...Leave a comment:
-
https://amazonlightsail.com/
Windows Server:
2 GB Memory
1 Core Processor
50 GB SSD Disk
3 TB Data Transfer*
$30 / £22.95 a month
EDIT: It's Windows 2012 and 2016 only,so you'll have to ensure your s/w runs on it (or go down the Linux + VM route).Last edited by Dante; 3 November 2017, 15:54.Leave a comment:
-
Originally posted by stek View PostAnyway I didn't assume, I presumed....Leave a comment:
-
Originally posted by SeanT View PostWhy would you assume this? It's just as likely to be ASP or PHP or worse.
Perhaps a bit of a leap of faith...
Anyway I didn't assume, I presumed....Leave a comment:
-
BTW Spoiler, just what is the application, could I get it to run in a container for you?Leave a comment:
- Home
- News & Features
- First Timers
- IR35 / S660 / BN66
- Employee Benefit Trusts
- Agency Workers Regulations
- MSC Legislation
- Limited Companies
- Dividends
- Umbrella Company
- VAT / Flat Rate VAT
- Job News & Guides
- Money News & Guides
- Guide to Contracts
- Successful Contracting
- Contracting Overseas
- Contractor Calculators
- MVL
- Contractor Expenses
Advertisers
Contractor Services
CUK News
- Streamline Your Retirement with iSIPP: A Solution for Contractor Pensions Sep 1 09:13
- Making the most of pension lump sums: overview for contractors Sep 1 08:36
- Umbrella company tribunal cases are opening up; are your wages subject to unlawful deductions, too? Aug 31 08:38
- Contractors, relabelling 'labour' as 'services' to appear 'fully contracted out' won't dupe IR35 inspectors Aug 31 08:30
- How often does HMRC check tax returns? Aug 30 08:27
- Work-life balance as an IT contractor: 5 top tips from a tech recruiter Aug 30 08:20
- Autumn Statement 2023 tipped to prioritise mental health, in a boost for UK workplaces Aug 29 08:33
- Final reminder for contractors to respond to the umbrella consultation (closing today) Aug 29 08:09
- Top 5 most in demand cyber security contract roles Aug 25 08:38
- Changes to the right to request flexible working are incoming, but how will contractors be affected? Aug 24 08:25
Leave a comment: