• "Accessing a CPE/Modem from Inside the Firewall"

    3
    0 Votes
    3 Posts
    330 Views
    provelsP
    You should be able to get that from your manufacturer's docs. Since it's on the far side of the FW, it's no different than going to any external website. My last 2 modems, Motorola and Netgear) used 192.168.100.1 while I use 192.168.0.0/24 inside.
  • 127.0.0.1/localhost ports refuse to connect

    1
    0 Votes
    1 Posts
    169 Views
    No one has replied
  • Unable to get NAT + Proxy port forward working

    4
    0 Votes
    4 Posts
    560 Views
    V
    @jkiel Yes, but this is only true for NAT reflection. And as I stated in my first sentence above, NAT reflection just reflects the NAT rule to other interfaces. So the proxy is only applied to traffic coming from OTHER interface, not from WAN, where the real NAT rule is defined on. Traffic forwarded from WAN still keeps its origin source address. Simply sniff the traffic on the LAN to verify this.
  • Different NAT with TCP/UDP

    2
    0 Votes
    2 Posts
    283 Views
    N
    @eeebbune Port forwarding is typically used for inbound connections natting is for outbound It is not clear what the issue is and what is inside HM_PBX_DESK_phone too
  • Outbound NAT for OpenVPN Tunnel IP working in 2.7.2 but not in 2.6.0 - why?

    16
    0 Votes
    16 Posts
    2k Views
    J
    @viragomann Hi again, I believe I have made it work now. The only thing I did was to push a route from the server side, like push "route 192.168.123.0 255.255.255.0" (this is a route to a LAN on the VPN server). I am not using this subnet in any way seen from the client side, so kind of strange that just adding a route made the NAT setup work. That made the client side use the ovpnc interface instead of lo0. Now both the internal monitor pings and the DNS lookups via the ovpnc interface translates correctly. Thanks again for the assistance, viragomann.
  • First time setup with private WAN

    4
    0 Votes
    4 Posts
    544 Views
    N
    @nerdile In case anyone is struggling with a similar issue in the future, one thing I noticed that could indicate this issue is that the firewall shows allowing the SYN packets from the LAN client but never shows any responses later. (You have to turn on logging of your default allow rule to see this traffic flowing.)
  • 0 Votes
    1 Posts
    220 Views
    No one has replied
  • 1:1 NAT does not work properly behind a Site2Site IPsec tunnel

    1
    0 Votes
    1 Posts
    213 Views
    No one has replied
  • pfSense maybe blocking Tailscale on local LAN?

    1
    0 Votes
    1 Posts
    234 Views
    No one has replied
  • Avaya ip office 5000 no audio issues

    1
    0 Votes
    1 Posts
    195 Views
    No one has replied
  • 0 Votes
    1 Posts
    154 Views
    No one has replied
  • Not able to open Odoo required ports and allow through the firewall.

    22
    0 Votes
    22 Posts
    3k Views
    johnpozJ
    @noreast-it said in Not able to open Odoo required ports and allow through the firewall.: a virtual IoT box running on a windows server 2019 VM in order to connect to all needed printers via ethernet. Well any firewall rules you need to do would be on that VM host then, not on pfsense. But nowhere do I see any talk of opening a port forward in your firewall allowing any ports inbound unsolicited from the internet. You clearly see the virtual iot box in their system.. Why it can't print would be on that box or their system.. Has nothing to do with firewall rules or port forwarding on pfsense.
  • Netgate 4100 and LAN1 <--> LAN2

    3
    0 Votes
    3 Posts
    277 Views
    A
    Very helpful, thank you.
  • 0 Votes
    1 Posts
    392 Views
    No one has replied
  • 0 Votes
    4 Posts
    397 Views
    johnpozJ
    @sogorman well you don't really need to do a 1:1, you could do simple port forwards for the ports you want vs all of them ;) So you want this fqdn to resolve to the internal IP? Just setup a host override so your local.redacted.com resolves to the 192.168.0.7 What your seeing now is WAD, Works As Designed.
  • Slow upload with pfSense (download is ok)

    2
    0 Votes
    2 Posts
    488 Views
    B
    @paulvanduijn I have the exact same problem on two pfSense VMs running in KVM with VirtIO drivers. So far I cannot find a solution online. I tried to Disable hardware checksum offload and Disable hardware TCP segmentation offload and it did NOT work. My download speed is 500-600 Mbits but upload speed is 0.1 Mbit. This happens on the latest pfSense 2.7.2 and pfSense Plus 23.09.1
  • NAT, Rules, and VPN

    8
    0 Votes
    8 Posts
    465 Views
    A
    As in, Halt System. Then push the power button to turn back on.
  • Dns intercept logging

    4
    0 Votes
    4 Posts
    413 Views
    GPz1100G
    In reviewing the same concern in opnsense, it appears commits were made some 3 years back to enable this exact functionality. https://github.com/opnsense/core/issues/5005 Any chance of this getting ported to pfsense?
  • NAT port forwarding to VLAN / WAN to VLAN routing issue

    1
    0 Votes
    1 Posts
    155 Views
    No one has replied
  • Added a second WAN, no way to get forwarfing NAT working on the 2nd

    20
    0 Votes
    20 Posts
    958 Views
    V
    @viragomann Thanks to your explanations, I understood and cleaned all pfSense rules and configs! Thanks you so much Viragomann !
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.