• Need help understanding GUI creation of rdr rules

    Locked
    6
    0 Votes
    6 Posts
    4k Views
    S
    pfSense operates on the packet incoming to an interface which creates a state. So think of it as incoming to a interface initially (SYN).
  • Strange problem

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    H
    "other" won't generate any layer2 messages. This can be useful if the IPs are routed to you anyway. If you need to answer with ARP for your VIPs you have to use ProxyARP or CARP.
  • FTP time out

    Locked
    8
    0 Votes
    8 Posts
    3k Views
    S
    This does not make any sense. Are you on the latest snapshot?    If so please remove all ftp port forwards and firewall rules for 21 and readd. Then do this from the console or ssh: ps awwux | grep pftpx I would like to understand why this work for you when clearly it should not (port 20).
  • Performance question

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    H
    Btw, portforwards work with natreflection, 1:1 nat not, only in case you need that feature.
  • Port forwarding question.

    Locked
    17
    0 Votes
    17 Posts
    13k Views
    C
    Try a recent snapshot, FTP should work out of the box now. seems to fix all the problems people were having. http://snapshots.pfsense.com/FreeBSD6/RELENG_1/
  • Is 1:1 NAT good for my setup…plz a lil hlp im newbie

    Locked
    6
    0 Votes
    6 Posts
    4k Views
    C
    As hoba said, 1:1 NAT is not a security issue unless you want to make it one. If you have as many IP's as internal servers, it's usually preferable to use 1:1 NAT over port forwarding.
  • Where do I set PAT ?

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    S
    Firewall -> NAT -> Port Forward
  • Odd Port problem

    Locked
    8
    0 Votes
    8 Posts
    3k Views
    C
    From pm discussion, I've confirmed those ports aren't really open on his firewall, and it's behaving as his shown firewall ruleset should, proving it was something to do with the network of the person who scanned him originally.
  • NAT - newbie question

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    H
    There is an ftp-helper build in that you can enable/disable per interface for these kind if situations. Besides that no other protocol is proxied to rewrite IPs.
  • NAT LAN through IPSec tunnel

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    C
    Others have asked about this a few times in the past, and numerous times on the m0n0wall list, and nobody has ever been able to find a solution. It's certainly a desirable feature, if you can find a way to implement it I'm sure patches would be accepted.
  • Two app problems

    Locked
    8
    0 Votes
    8 Posts
    3k Views
    H
    Nice. Thanks for the feedback  :)
  • IChat without extensive port forwarding?

    Locked
    15
    0 Votes
    15 Posts
    9k Views
    R
    Now, i know what the problem is. My brother's isp is using SIP and ichat is also using SIP so there's conflict. I don'y know if someone have a solution ? Thanks!!
  • Nat problem

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    H
    Please have a look at http://forum.pfsense.org/index.php/topic,4215.0.html
  • Problem with NAT and 3/23/07 Snapshot

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    N
    4/03 SNAPSHOT seems to have everything good to go.  Been working fine! Thanks
  • Transparent Squid behind pfSense

    Locked
    18
    0 Votes
    18 Posts
    13k Views
    H
    You can manually edit the config.xml and exchange the interfacename with the IP-Adress and reupload the config. Just don't touch this pool with the gui again and it should work with the newer versions.
  • Reversed port forward

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    F
    That would be great if you found that solution for me. Of course changing the internal modem IP to be the same network range as the LAN, eg 10.0.209.2 is not a problem… Best regards!!
  • Transparent redirect to a separate Squid proxy

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    D
    Think I solved my own problem: http://forum.pfsense.org/index.php/topic,4225.msg25915.html#msg25915
  • H323 Videoconference

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    H
    Search the forum for "static port". H323 can be as tricky as SIP.
  • AppleTalk compatibility

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    dotdashD
    I try to stay as far away from Appletalk as possible, but AFAIK trying to to encapsulate it in IP and route it somewhere is much more trouble than it's worth. Most of the old Laserwriters I have seen support IP/LPR printing. Just my 2c, but I think you would be better off getting rid of any Appletalk only devices and getting something made in the last fifteen or so years…
  • SOLVED : accessing internal network from wan side

    Locked
    28
    0 Votes
    28 Posts
    10k Views
    H
    It works now with the latest snapshot (23-03-2007) !! but any chance to have a NAT 1:1 with apple talk compatibility ?
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.