[KB7938] Create or edit a firewall rule to allow RDP connections for devices running ESET Endpoint Security through ESET PROTECT or ESET PROTECT On-Prem

Issue

  • Configure the ESET Endpoint Security firewall on managed devices to allow Remote Desktop Protocol (RDP) connections
  • Enable Remote Desktop Protocol (RDP) access for managed devices by adjusting the ESET Endpoint Security firewall rules

Solution

Required user permissions

This article assumes that you have the appropriate access rights and permissions to perform the tasks below.

If you are unable to perform the tasks below (the option is unavailable), create a second administrator user in ESET PROTECT or ESET PROTECT On-Prem with all access rights.

Security recommendations
  • Allow Remote Desktop Protocol (RDP) connections only within the local network. Remote users should first connect using a VPN before initiating a Remote Desktop Protocol (RDP) session.
  • Enable multi-factor authentication (for example, using ESET Secure Authentication).
  • Limit login attempts through Group Policy (GPO).
  1. Create or edit a firewall rule for managed devices running ESET Endpoint Security through ESET PROTECT or ESET PROTECT On-Prem.

  2. In the Add rule dialog box, configure the rule as indicated below. When you are finished, click Save.

    • If needed, modify the rule name and ensure that the Enabled toggle is enabled.
    • In the Action section, select Allow.
    • In the Direction section, select In.
    • In the Protocol section, select TCP.
    • In the Local port section, type 3389.
    • Optionally, in the Remote host section, type or copy/paste the appropriate IP addresses, address ranges or subnets.

      For more information, see Adding or editing Firewall rules.