[KLUG Members] Reverse VNC connection (Connecting to a VNC server behind a NAT'd FW)

Adam Williams members@kalamazoolinux.org
Thu, 04 Sep 2003 21:51:38 -0400


> I have a VNC server that is on a LAN with all privat IP'S.  With outgoing acces
> to the Internet only.  Is there any networking GURU that can figure if this is
> possible with some what simple solution.  

It might be simplest just to install a VPN service.

> I know that this is technically possible I thought there was some company (WEBX
> may be) that would allow you to connect to your pc at eork from any where with
> Internet access even behind a firewall, but for a cost of course.  I think how
> it worked is the work PC would act as a server/client.  It would first act as a
> client to make the connection and then turn around as a server with the same
> connection.  I know PCanywhere has a feature like this and there are hackers
> that can and will do this with some trojans.

It is just an issue of a little port forwarding,  but it is also REALLY
insecure.  VNC assumes a trusted network.

> I know Netcat can work like this but can it be used in conjunction with vnc and
> or ssh?

You probably could rig up the appropriate port forwards via SSH, but
grabbing an old PC and making a VPN service would be the easier
meta-solution.