• Problem with forwarding (nat reflection)

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    F
    Getting from the inside. No luck :/ :/ why redirect goes to 127.. ?? tcp 127.0.0.1:19004 <- 87.205.173.90:3000 <- 10.0.209.55:1797 FIN_WAIT_2:FIN_WAIT_2 tcp 127.0.0.1:19004 <- 87.205.173.90:3000 <- 10.0.209.55:1800 FIN_WAIT_2:FIN_WAIT_2 Getting from the outside (everything OK - ShieldsUP test) Redirection OK. tcp 10.0.209.5:3000 <- 87.205.173.90:3000 <- 4.79.142.206:40384 SYN_SENT:ESTABLISHED I have Nat Reflection Unchecked. Does not work with checked either :( Before updating to 1.2rc2 It worked without unchecking that option.
  • An odd (NAT?) problem, could use some help figuring this one out!

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    GruensFroeschliG
    I set it up that i only have the ports unscrambled that i need unscrambled. For that let the default scrambling rule be and create above the default rule a rule for your single port you want to have unscrambled. rules are processed from top to down and if one rule catches the rest is no longer considered. Do you mean it does not scramble them when you NAT them to be accessed from the outside? This is a different matter. This is about OUTBOUND NAT. All ports on outgoing connections get scrambled (even Bittorrent, look at the state tables while you are downloading). But some Programms get their destination to send the reply to, from the source port out of the header of the packets they recieve (with the correct scrambled port) and thus work.
  • Carp type vip and nat

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Multiple WAN addresses

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    GruensFroeschliG
    You dont have an AON rule for your global scope. I dont think that you can route out the WAN without NAT.
  • Help w/ NAT for FTP

    Locked
    8
    0 Votes
    8 Posts
    6k Views
    N
    Thanks :) It's works here too :p Thanks tlsail for your screenshots :)
  • Can't ping from OPT1 to internet, but can resolve names

    Locked
    9
    0 Votes
    9 Posts
    4k Views
    N
    OK, I think I got it!  Through setting my outbound advanced NAT mappings for each interface with a rule of source any, * * *, etc.. and enabling the filtering bridge in the advanced setup, it all worked!  Granted, traffic seems to be flowing through my LAN interface rather than WAN, but I can sort that out later (this is on a test network with a software router on my mac so… ;) ).  So thanks!!! NickZ P.S. I've attached a screen-shot of my routes-table here. [image: routes.png] [image: routes.png_thumb]
  • Fios Static IP and pfsense - Can't access internet.

    Locked
    5
    0 Votes
    5 Posts
    4k Views
    G
    Well I took your advice and verified that I was told to use the wrong IP for my gateway.  I'm still trying to wrap my head around the fact that my Linksys running dd-wrt worked regardless of the improper settings.
  • I can't ping my OPT1 interface

    Locked
    6
    0 Votes
    6 Posts
    10k Views
    C
    I don't know exactly why but everything is ok:) Now I can ping the OPT1 interface from the laptop and the nat working too. I think a reboot needed. First I didn't reboot the pFsense. But when I turn on the pFsense the existing config everithing is works fine! Thanks your help!
  • NAT Reflection (timeout problem)

    Locked
    30
    0 Votes
    30 Posts
    19k Views
    F
    Thx. for info.
  • 0 Votes
    3 Posts
    2k Views
    L
    The connection on the external is a 100mb cable modem connection from Shaw Bigpipe.  I have changed the IP's so they dont reflect my ip's.  Basicaly I have the Bigpipe modem going into the pfsense external interface and the secondary pfsense interface going into a hardware router.  The hardware router will be configured with the 69.244.194.146 address.  I need to be able to ping this from the outside world going through the pfsense router.
  • Ftp issues

    Locked
    11
    0 Votes
    11 Posts
    5k Views
    S
    it worked ;D ;D :D :D
  • Incoming Load Balancing without SNAT?

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • High bandwidth, low latency and NAT

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • OPT1 Nating Problem

    Locked
    10
    0 Votes
    10 Posts
    4k Views
    GruensFroeschliG
    wtf O_o i tried the exact same thing but didnt get it to work. i've read some stuff about you cannot bridge WLAN because multiple MAC's on the same device in a WLAN lead to discarded frames. maybe i should try once more :) did you find somewhere a howto? i have the regedit-changes i need to do. possible that i did something completly wrong >_>
  • ESP NATing

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    GruensFroeschliG
    pfSense does not provide NAT-T support. but you can use the Cisco VPN client through pfSense and it should work without a problem. (at least i never had any problems with cisco vpn client)
  • Failover with NAT only to one ADSL connection

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    A
    Thanks a lot for your interest anyways…  ;)
  • Simple nat problem.. SOLVED

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    H
    If you only serve incoming requests the state will handle the returning traffic as well, so you don't need outbound nat. Try VIPs type proxyARP or CARP if you need layer2 traffic for these IPs. If you ISP is routing these IPs to you anyway type other will work too.
  • Is Name-Based Port Forwarding possible?

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    GruensFroeschliG
    no. but you can create an alias.
  • NAT-T Support

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    S
    long waited?  It's been answered many times. pfSense does not have NAT-T support.
  • Werid nat issue

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    F
    I changed the setting in the firewall.  It looks like IIS7.0 on my Vista workstation needs to be reloaded.  It looks like I killed it.  I will give you a update after I reload IIS. RC
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.