The remote terminal service in the Windows 2000 system is a very powerful service, but also the channel of the invader, the invader can use some means to get the administrator account and password and invade the host. Below, let's take a look at how to prevent hacker invasion by modifying the default port.
It is well known that the remote terminal service is based on port 3389. Intrusioners generally scan the host open port. Once it is found to open 3389 port, it will perform the next invasion, so we only need to modify the default port to avoid most intruders' eyes.
Steps: Open "Start → Run", enter "regedit", open the registry, go to the following path: [HKEY_LOCAL_MACHINE / SYSTEM / CURRENTCONTROLSET / CONTROL / TERMINAL Server / WDS / RDPWD / TDS / TCP] See the portnamber value? Its default is 3389, modified to the desired port, for example 6111. Open [HKEY_LOCAL_MACHINE / SYSTEM / CURRENTCONTRO1SET / CONTROL / TENNINAL Server / WINSTATIONS / RDP / TCP] to modify the value of portNumber (default 3389) to port 6111.
After the modification is completed, restart the computer, and the port 6111 can be used remotely.
1. The client uses the client connector:
Open the client management connector, click a connection already entered, click File (File "→" Export (Export) "...
Use the recordbook or other text editing software to find this .cns file, find "Server Port = 3389"?
This default 3389 is changed to the same port number as the server.
Changes under Windows XP / 2003
Using the clients of XP or 2003, it can display colorful, but also sound, more powerful. However, the modification method of the terminal client connection port is a certain difference from Win2000:
According to the original change of the 2000 client, save the default configuration of XP and 2003 (click "Save As" on the connection interface, and 2000 is different: XP, 2003 configuration file suffix is .rdp, win2000 Is .cns
Use Notepad to open this DEFAULT.RDP file, there is no 3389 in Dong (2000 configuration file), there is no such port to configure us, assume that the current port is 8933, As follows: Server Port: I: 8933 Save, exiting.
2, the client is using the remote desktop
Just fill ports behind the IP bar, such as: 222.208.168.255: 3389