[KB7938] Create or edit a firewall rule to allow RDP connections in ESET PROTECT or ESET PROTECT On-Prem

Issue

  • You are unable to connect to workstations via Remote Desktop Protocol (RDP) with the ESET Endpoint Security firewall enabled

Details

Security Recommendations

  • Allow RDP connections only over the local area network. The recommended action would be to have employees VPN into the network first before establishing the RDP connection.
  • Harden RDP access by adding multi-factor authentication to RDP (ESET Secure Authentication can accomplish this).
  • Harden RDP access by limiting RDP login attempts via Group Policy Object (GPO).

Solution

Required user permissions

This article assumes that you have the appropriate access rights and permissions to perform the tasks below.

If you use the default Administrator user or are unable to perform the tasks below (the option is unavailable), create a second administrator user with all access rights.

  1. Open ESET PROTECT in your web browser and log in.
  2. Click Policies, select the desired Built-in policy, then select the policy that you want to modify and click Actions Edit

    Figure 1-1
  1. To apply a rule, click Settings ProtectionsNetwork access protection → expand Firewall → and then click Edit next to Rules.
Figure 1-2
  1. Click Add.
Editing and removing rules
  • To edit a rule: Select the rule you want to modify and click Edit.
  • To remove a rule: Select the rule you want to remove and click Remove.
Figure 1-3
  1. Type a name for a rule and ensure that the Enabled toggle is enabled. Set the parameters in the Action section and expand the rest of the sections to set parameters to define your new rule. When you are finished setting the parameters for a rule, click Save. See the detailed description of the Firewall rules parameters
Figure 1-4
  1. When you are finished making changes to rule parameters, click OK. Your new rule will appear in the Rules window. Click Save again to close the Rules window.
Figure 1-5
  1. Click Assign Assign.
Figure 1-6
  1. Select the check box next to each static or dynamic group you want this policy assigned to and click OK.
Figure 1-7
  1. Click Finish to save your policy. Your policy settings will be applied to the target groups or client computers.
Figure 1-8


To see the policies that are assigned to each group, click Computers, click the gear icon  next to the group, and then select Manage Policies from the drop-down menu.

For more information about policies, read Online Help.

Figure 1-9