HodgeHi Posted May 15, 2009 Posted May 15, 2009 We have a server located externally now instead of in school. I would like to be able to manage/control it from my home in case of any issues that are raised. The problem for me as far as i am concerned though is that i don't have a static IP address at my home. I am with Virgin Media who have stated they do not do this sort of thing and if I wanted it i would have to go to their business package. So how do you guys get around this sort of thing?
AngryITGuy Posted May 15, 2009 Posted May 15, 2009 I use LogMeIn to control my school servers from home. Its free and work really well, details of it can be found here 2
Jamman960 Posted May 15, 2009 Posted May 15, 2009 I always found my ip with NTL/Virgin to be fairly static unless I disconnected for more than a day or so. Logmein is probably the best way to go 1
maniac Posted May 15, 2009 Posted May 15, 2009 We use the Cisco VPN client provided to all Kent schools as part of their KCN subscription to connect into the school, then I can use Remopte desktop connection to connect to my work PC, and then in turn to my Servers. Works a treat, but obviously only if your LEA offers a service like this. Mike.
AndyD Posted May 15, 2009 Posted May 15, 2009 Another vote for LogMeIn. Secure, easy to setup and works well
OutToLunch Posted May 15, 2009 Posted May 15, 2009 VPN + RDP as standard, backup of SSH server/tunnel + RDP if VPN is playing up.
HodgeHi Posted May 15, 2009 Author Posted May 15, 2009 All those that use SSH, how do you get around the non-static IP? I was thinking of getting the services set up on the firewall so that only my IP address was allowed. Obviously if my IP changed then i would be up the creek.
powdarrmonkey Posted May 15, 2009 Posted May 15, 2009 Three pronged approach: SSHGuard, configured for three strikes (three failed attempts to log in firewalls the address off for an increasing amount of time), firewall off non-uk addresses, and good password practice (you do that already, right?)
HodgeHi Posted May 15, 2009 Author Posted May 15, 2009 Well it's not me in charge of the firewall rules or ports, so no i don't do it. How would you firewall off non-UK addresses? Where would yo go for that sort of information? I'm just getting into the network side of things at the moment
AntiThesis Posted May 15, 2009 Posted May 15, 2009 You could use DynDNS or similar to map your home IP to a hostname and authenticate using that. Set up a VPN and/or use RDP or even UltraVNC etc. And yes - strong passwords!
powdarrmonkey Posted May 15, 2009 Posted May 15, 2009 (edited) You could use DynDNS or similar to map your home IP to a hostname and authenticate using that. I'd be wary of putting that much trust in DNS, especially dynamic reverse addressing. Imagine: your reverse zone has a 24 hour expiry, you're right in the middle of some critical thing and the line drops. When you're reconnected, you've got a different address, but can't do anything else until ((time you started)+24) o'clock the next day. As for walling off except a range: ask your provider what range they use for dynamic addresses, and restrict to that. Edited May 15, 2009 by powdarrmonkey 1
AntiThesis Posted May 15, 2009 Posted May 15, 2009 mmm good points Yah your ISP should be able to provide you with addresses you can restrict to pretty easily.
powdarrmonkey Posted May 15, 2009 Posted May 15, 2009 Afterthought: using DNS for firewalling anything is risky, because it operates at a comparatively high level in the OSI model. If your DNS lookups break, you can't get in to fix that either - same kind of problem, but more serious. 1
HodgeHi Posted May 15, 2009 Author Posted May 15, 2009 Does the logmein.net use a client application on the remote server that you connect to? I can't access their site here since it's blocked by RMs filter.
BatchFile Posted May 15, 2009 Posted May 15, 2009 Another vote for LogMeIn here. here too, until CLEO blocked it
HodgeHi Posted May 15, 2009 Author Posted May 15, 2009 You probably mean logmein.com Whichever one does the remote logging in But both are blocked anyhow
Heebeejeebee Posted May 15, 2009 Posted May 15, 2009 Does the logmein.net use a client application on the remote server that you connect to? I can't access their site here since it's blocked by RMs filter. *logmein.com in the allowed list fixes this (for me anyway - SWGfL). BTW that one more vote for Log Me In. HBJB
Sylv3r Posted May 15, 2009 Posted May 15, 2009 I use the free version here of logmein on all of my servers apart from one. Which I purchased one licence of the pro version. This lets me copy documents to and from the servers and also maps my local printer to the server.
Jobos Posted May 15, 2009 Posted May 15, 2009 Forgive my ignorance but what’s wrong with using vanilla remote desktop connection
mossj Posted May 15, 2009 Posted May 15, 2009 Does the logmein.net use a client application on the remote server that you connect to? I can't access their site here since it's blocked by RMs filter. Yes it does. p.s another vote for it
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now