Disable File Sharing Except When Rdp'ing

mojo123

New member
Joined
Apr 3, 2010
Messages
1
Hi,

Running server 2008 R2 64Bit and a VPN. users are mostly working the server using TS over the VPN.

Users mostly view and modify files on the server, and there's a need to make sure they don't take out files from the server as much as possible.

Therefore Internet connection out was blocked, FTP ports were disabled, and clipboard was disabled using group policy.

However, since users are creating VPN, they can simply access the server files from their own machine through file sharing (without using TS).

Any ideas how to prevent this?

Also, any other ideas how to implement better the need to keep the files on the server without allowing the users to take them out?

Thanks!
 
Is your VPN a part of your firewall, or are you running in through RAS on a Windows server?

If it is a part of your firewall, you should be able to filter incoming connections and only allow the incoming port 3389 traffic to the rdp server.

If you are running the vpn on a windows server, you could move the server to a dmz on your firewall; allow only vpn connections to that server, then only allow rdp from that server into your network.
 
Back
Top