I am looking at needing to expose my Remote Desktop Server (Terminal Services) to be accessed from outside our network. Right now, it can only be accessed from inside our network.
I know it's easy enough to open up the firewall and forward the port.
However, how do I secure the machine itself and what are the best practices around this? My concern is hackers being able to work at breaking into it.
Any best practice guidelines/recommendations would be much appreciated.
Edit:
Question about a product I found:
Filter Incoming RDP Connections by IP, MAC Address, Computer Name and More
Can anyone comment on the security of this? Looks like I could also use it to limit access by machine name/mac? Anyone else used it?