Okay everyone knows that 3389 is the port used for a remote desktop connection. For security purposes I change the port to something else unless it is to one of our remote locations through a pix to pix tunnel. Well we have a vendor that will not change the port to something else. We have to allow it (government) so my question is even though it is from 1 ip directly to ours would you recommend only allowing the access when they call or just leave it open since it is only 1 ip to ip.
Thanks