On these both computers, please also accept the TCP port used by VNC. This message could also appears if a software running at the moment on. UltraVNC Server Configuration. Should be activated for normal operation. The display number and ports to use can be configured or set to Auto which defaults to. In the "normal" case, VNC Viewer (on the administration machine) communicates with VNC Server (on the administered machine) via a local TCP port.

After you had clicked on the custom. Click on the SAVE button. After clicking on SAVE you will be prompted to select a download location, ensure you folder path is your desktop and click on SAVE to save the config.

There are many around on the market. On the desktop right click on custom. Double left click to open this folder and after opening this folder you will see the following files. Congratulation's you have successfully unpacked the files in a folder. You only need setting up your router, there is no need to setup a clients router as Ultr VNC SC does a look back connection out of their system. By default most routers are the gateway on your network and are mostly accessible via a HTTP a web page to find your router you may need to ask your administrator or do the following.

In the run bar type CMD as indicated below. Or ask the person who had setup your router or read the documentation of the router or perhaps the router came with software. After connecting to your router via a web page you will need to enter a Username and Password.

If your router has no Username and Password or still is using the default Username and Password i suggest you change it to something secure before you find your self hacked out of your router. When changing your password ensure you don't lock yourself out with mistakes, Most routers have a reset button what will reset to defaults but it does mean you will loose all your information and configuration on the router.

You need to find the port forwarding setting on this router it uses NAT to forward ports. On the router setup page click on NAT Setup as indicated below. On the next page click on Configure Port Redirection Table. Under Service Name enter anything you want.

Now lets look at a different router and its setup. Same as before we connect to the router via Internet Explorer and enter the Default Gateway as indicated below. We now will need to enter a password only as this kind of router does not require a Username Enter your password and login to the router as indicated below.

On this router you now will need to click on the Forwarding rules as indicated below and then click on the Virtual Server link. On the Virtual Server link you will be able to do your port forwarding. This is not a problem because vncviewer. So on the support computer you would run vncviewer with the following parameters. Under Service Port enter the port the router should forward from the Internet side.

There are many different router with different setups, most of them basically use the same technology in port forwarding. Below is a links from Ultr VNC website for you to with more router setups to look at. Dynamic IP is a IP what changes allot If you do have a Static IP you could associate a Domain name to it, but in any case many people opt to use a Dynamic DNS name because there are so many company's whom offer these services for free.

Most routers today can automatically update Dynamic DNS service provides. Choose a domain name with a supplied extension and keep the name professional. The Dynamic DNS service providers will delete you domain if its not been used for a certain time period.

If you have more than one you can enter more in the other Index sections. Under Domain Name enter the domain name you chose and then the extension in the drop down. Very useful for dial up modems You can download them here. Congratulation's you have hopefully successfully understand port forwarding and have setup your own router. Section 4: Configure the helpdesk. You now will need to configure the helpdesk.

The helpdesk. Since this configuration is meant to run on the clients computer, the client computer The Computer you wish to control via remote connection will need to know how to find your vncviewer. To do this we need to tell the helpdesk.

After the client has run the EXE they will see something similar to below. There is Two main ways of setting up the helpdesk. Anyone in possession of the password would then be able to take control of the client machine and gain access to all its data, including confidential data. The improvements take the form of an encrypted password stored in the Windows registry and increased display speed on low throughput networks when taking control via a modem, ISDN line, WAN, etc.

The principle is roughly the following: one of the machines generates a random number, sends it to the other, encrypts it using the password, recovers the result of the same encryption done by the other machine, then compares the two results. If the results match, then the password is correct; otherwise it isn't! Henceforth, the password never travels over the network. To cure the second potential security problem, Pointdev has altered TightVNC 's standard way of working.

You can now configure IA so that the "VNC Server" service is shut down when you have finished taking control remotely. From now on, in order to enable remote control, the "VNC Server" service must first be started on the remote machine. Lastly, as far as network connections are concerned, communications between the administration and administered machines may from now on pass through an encrypted tunnel.

From then on, any packets exchanged between these two machines are virtually uncrackable! The principle behind tunneling is as follows:. See Picture at the end. Data transiting between the two machines the twin red arrow is unencrypted at this stage. If a tunnel is being used the twin green arrow , local TCP port will be redirected for example to local TCP port tunnel entry , and the remote TCP port will be redirected for example to remote TCP port tunnel exit.

Since the tunnel is encrypted, our mission is accomplished! Practically, here's what has to be done:. You will find the source code of Pointdev's modified version of TightVNC, along with a link to Zebedee source code, the text of the GPL and other free tools made available by Pointdev, at. Nevertheless, given that TightVNC also uses compression algorithms, we strongly advise against setting Zebedee's compression value to its top limit 9.

The numerous tests we've carried out show that the default value of 6 is more than adequate! From the moment there are switches on the network - which is becoming more and more frequent - packet sniffing is no longer possible except on a single section that is still controlled by one or more hubs.

To do this, please refer directly to the Zebedee documentation file zebedee. Once this is done, any attempt at taking control directly i. Due to its listening port numbers being configurable, you could quite easily configure it to use, say, port , and then open this port on your firewall. As this port is not assigned to any specific application see list of assigned TCP and UDP ports , it draws less attention to itself from "pirates" than ports in the or range, which are reserved for VNC family tools.

Having said that, it doesn't take long to find the information out using Google or some other search engine. The way this is done is as follows: open port say on the firewall and translate it to port say on a machine on the internal network on which Zebedee is installed; this machine will act as a relay. In the Zebedee configuration on this machine, the serverport, target, and redirect parameters will need to be defined as follows: serverport redirect target This tunnel's departure port on the administration machine will be and its arrival port on the relaying machine behind the firewall will be Since in our command we requested port on machine

