Can anyone help please with Total Security - Remote Desktop local lockdown

Options

Hi,

I have a server that this running internally on a public IP address, on IP B and a development PC that is running on IP A. The Server is port forwarding only port 8043 but its still a risk for ingress.
I want to isolate the server so that svchost.exe can only be connected to incoming (not outgoing) through remote desktop from IP A. However i can't see to get the firewall to do this, here is what i have done:

1. Initially the RD cannot connect at all
- Added a rule to svchost.exe to allow
- Protocol: Any, Network: Any, Direction: Both
- Good i can now connect

2. Enhanced the rule
- Added a restriction as follows:
- Custom Local Address, IP: IPA, Port: 3380-3393
- AT WHICH POINT I CAN NO LONGER CONNECT

Any help greatly appreciated.

Dave

Answers