• Different port NAT?

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    Z

    [FIXED]

    Uggg, At the moment, Im feeling really dumb.

    It was my fault, I had the digi's default gateway configured for the old router before I switched over to pfSense.

    Sorry about that.

  • How to redirect email for pptp users?

    Locked
    12
    0 Votes
    12 Posts
    6k Views
    D

    No, it still does not pass email according to the rule in port forwarding in the port forward nat section. (does port forward work for outbound??)  On outbound NAT there is no pptp to choose from in the inteface drop down.  I guess this would be analagous to using squid and forwarding those packets somewhere.  Should I try editing the config file?

  • Port forward problems, help me please :0)

    Locked
    5
    0 Votes
    5 Posts
    4k Views
    M

    Usually you change portrange for every computer.

    EX:
    Lets say i have 5 computers behind a NAT router i usually forward mabye 10 ports to every singel one.

    forward to ->PC1 portrange->50000-50009
    forward to ->PC2 portrange->50010-50019
    forward to ->PC3 portrange->50020-50029
    forward to ->PC4 portrange->50030-50039
    forward to ->PC5 portrange->50040-50049

    And then i configure all applications on every pc to uses that dedicated portrange.
    EX: all p2p programs listen to those portranges and icq,msn and souch.
    I  have never run inte problems by doing this, if the range is to narrow then open/forward maby 20 ports.

    But if you cant change listening range in the application in question then you get into trouble.
    Can you say what application it is? (easier to do any recomendation or find solution like special scripts and souch).

  • Ftp Server inside firewall. Not working.

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    D

    Have found the problem.
    every user has to put ftp://ip adress:21/ to connect.
    this problem is solved. and finaly…

  • Minor strange behavor of pftpx when i reconfigure something.

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    S

    Well changing the FTP helper status on or off will alter pftpx from running.  I'll check into the bogons piece.

  • Switch from symmetric NAT to cone NAT

    Locked
    2
    0 Votes
    2 Posts
    6k Views
    S

    http://forum.pfsense.org/index.php?topic=104.0

  • NAT is not working NAT 1:1 for IP subnet LAN

    Locked
    2
    0 Votes
    2 Posts
    3k Views
    H

    Did you create firewallrules to allow the incoming traffic? Only 1:1 NAT is not automatically passing all traffic (which would be a bad idea anyway).

    Let's say one of your IPs is a webserver for example you need a pass rule like this:

    protocol tcp
    source IP any
    sourceport any
    destination IP <lan-ip of="" mailserver="">(NAT comes first, then firewallrules are applied so you have to use the internal IP as destination)
    destinationport http (80)</lan-ip>

  • Port redirection, FROM parameter

    Locked
    2
    0 Votes
    2 Posts
    3k Views
    S

    Not likely, we are not adding features.  We are only adding a new option when it corrects a bug.  Unfortunately this is not a bug and you can control it more tightly with firewall rules.

  • ADSL PPPOA/VC

    Locked
    16
    0 Votes
    16 Posts
    11k Views
    H

    Help with docs is always appreciated. Good luck.

    http://doc.pfsense.org

  • DMZ and FTP Out

    Locked
    15
    0 Votes
    15 Posts
    12k Views
    S

    Add the rules to allow ftp to talk to localhost.

  • Weird…. Can't access certain sites

    Locked
    7
    0 Votes
    7 Posts
    5k Views
    B

    @josmo:

    Ok here's the deal and it's got me very confused (By the way great job on this PFsense team so far this is great).

    My Config.

    LAN IP 192.161.10.1 with DCHP enabled
    WAN 70.89.221.233 / 8
    wan gateway 70.89.221.238

    now from internally I can view and ping most sites.  But There are a few I can't like.  stumbleupon.com (70.85.3.132) and suvault.com (70.84.208.122)
    I know this is an issue with pfsense or the way I have it set up because when I plug in the old linksys with the same wan ip and lan ip it goes to these sites just fine and I can ping them.  Anyone have any clue why this is going on?????

    Thanks,

    This looks like a Comcast business connection.  I guarantee that WAN is supposed to be /29.  I'm in the same 70.0.0.0/8 CIDR block (on two seperate connections) and /8 is NOT the correct netmask for machines attached to it.

    –Bill

  • To NAT or not to NAT thats the question !

    Locked
    8
    0 Votes
    8 Posts
    5k Views
    P

    OK … its working now in PREBETA2 ... so it should be working in the upcome release (whenever that will be)

    Thanks guys!!!

  • SIP VoIP Provider

    Locked
    1
    0 Votes
    1 Posts
    3k Views
    No one has replied
  • NAT to 2 LAN/Subnet?

    Locked
    4
    0 Votes
    4 Posts
    5k Views
    H

    exactly.

  • Routed Subnet on LAN

    Locked
    11
    0 Votes
    11 Posts
    10k Views
    P

    Fair enough.  Thanks for all of your help Hoba.

  • Creating Nat rule for bittorrent for two people.

    Locked
    3
    0 Votes
    3 Posts
    4k Views
    J

    Cool thanks.

  • NAT port 80 kills web GUI == BIG PROBLEM

    Locked
    6
    0 Votes
    6 Posts
    5k Views
    B

    thanks, for the fast reply hoba,  exactly what i thought it did,  and gladly not important at all for me since it doesn't seem to work without disrupting that port on the lan interface  ;)

  • Internal Web Server

    Locked
    10
    0 Votes
    10 Posts
    8k Views
    B

    nat reflection should only take effect for packets that are destined to the wan interface right ?

    additionally,  if nat reflection was forwarding those packets to my web server, i would have gotten the page that is hosted on it…

    let me know if there is anything i can do as well to help with this.

  • Redirection of http traficc to web-proxy DMZ server

    Locked
    1
    0 Votes
    1 Posts
    5k Views
    No one has replied
  • Adding an proxy machine

    Locked
    4
    0 Votes
    4 Posts
    5k Views
    S

    @sirocco:

    I tried, but in 0.94.12 it doesn't work.

    I have three interfaces WAN, LAN, OPT - port forward on LAN to proxy on LAN not work, the IF field on screen is empty.
    Any ideas?

    Proxy is connected to LAN and to OPT1 to avoid loop with port forward.

    There is a known problem with this feature.  I still need to fix it.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.