How to establish a secure connection to a Windows VPS using SSH and VMWare
Things You’ll Need:
VMWare Server (free version)
copSSH, or added SSH Server
BitVise Tunnelier, or added SSH client
A excess ape of Windows (2000/XP/2003)
Login to your VPS. Typically, you bequeath do this by Remote Desktop above the internet. Once logged in, download and ensconce the absolve copSSH server.
Open up the firewall on your VPS to accede arriving desires to cpSSH. By default, copSSH listens on Anchorage 22. For collateral reasons, I would closely advise altering this Anchorage to anything else.
Configure the abuser you bequeath use to adjoin to cpSSH. For abuser authentication, I would advise by certificates. cpSSH comes among utilities to bear a base CA as of which you can self-sign certs. If background up certificate-based verification is foreign to you, you can even use username-password authentication. It is dispassionate a diminutive below secure.
On the civic processor to you bequeath use to adjoin to the VPS, download and ensconce the absolve VMWare Server software. Use account 1.0 if stil accessible as it is further light than account 2.0.
Create a relative appliance among concerning 256MB RAM and 8GB of circle space. The relative lattice adapter on the VM can too be Bridged or NAT’ed. However, to avert certain budding difficulty (that I won’t descibe here) use a NAT’ed relative adapter. Install a unclothed along ape of Windows (2000/XP/2003 Web) in this VM. Turn off all services, counting Workstation, Server, Remote Desktp and NetBIOS above TCP/IP. Basically, you don’t absence the VM to be listening on any Anchorage to you absence to burrow to the VPS. It too helps if you allot your VM the similar Windows omputer autograph as your VPS.
Log in to the VM and download and ensconce BitVise Tunnelier, an SSH customer to is accessible for absolve for non-business use. In my opinion, this is one the most excellent SSH consumers available. Configure the customer to adjoin to the CopSSH headwaiter on your VPS.
Configuring client-to-server forwarding of desirable ports by SSH tunnel
Determine the IP abode of the VM. By default, this is active and assigned by VMWare’s DHCP server, but almost it on no account changes if not you add extra VMs and/or adapters. Once you bear the IP, on the C2S tab of BitVise address any ports to you absence as of the VM’s IP abode to the VPS’s IP address. Some excamples:139 – Windows binder sharing,1433 – SQL Server,3389 – Remote Desktop
Once C2S forwarding is setup, you can right of entry folks ports as although they were defenseless on the civic VM’s relative adapter. For the examples I provided in the bygone step, you don’t addiction to configure S2C forwarding. For further advanced setups anyplace you bear an appliance on your civic crowd listening for acquaintances as of the VPS, you bequeath too addiction to configure S2C forwarding.