• Dual-Stack NAT Port-Forward Mess

    8
    0 Votes
    8 Posts
    395 Views
    johnpozJ
    @phipac it is possible to do reverse proxy with tcp ports - I haven't had a need to do such a thing. but why would you not just have munin.domain.tld for that service and other.domain.tld for whatever other services your trying to talk to.. they could resolve to the same IPv6 or different. edit: or if you happy with how IPv4 is working - why throw ipv6 into it at all.. There is nothing saying you have to use IPv6, unless your behind a cgnat and that is the only way to get unsolicited inbound into your network. Just because IPv6 is the future, doesn't mean that future for you is now ;) Could be 20 some years before IPv6 is the main protocol to be honest. My isp doesn't even provide it - I have had ipv6 from like 2011 or something via HE tunnel.. I sure don't use it for any services I provide or use while I am remote to get into my network. As you said IPv4 with nat and port forwards work just fine. ;) Providing those services via IPv6 gets me nothing other than more complexity. Shoot most of my users of my plex server don't have IPv6, or even know what IPv4 is let alone IPv6 ;) Not sure what all services you want to provide to the internet - but any services I need to access on my network while I am about I just vpn in - via IPv4 ;)
  • 1:1 nat

    10
    0 Votes
    10 Posts
    436 Views
    E
    @SteveITS Thank you so much. Let me take a look at this article.
  • 0 Votes
    6 Posts
    1k Views
    johnpozJ
    @negeji8010 yeah I hear yeah.. oh btw IT make this nonsense work.. Yeah we didn't bother to ask you if we "could" do such a thing - just make it work! To make it work.. You will need to nat them, and will need different natting devices.. The "cheapest" way to do it is find some small little router.. Some little travel router or soho router going to be the easy cheapest solution. Sure you could do it as vm, etc. But that is going to cost more for sure.. Unless you have something laying around to use as the host were you could run multiple natting something - wouldn't have to be pfsense doing the natting. If you go the soho or travel router I would make sure it runs some 3rd party firmware (openwrt for example) vs native like linksys or netgear router OS.. Maybe tiny router from Mikrotik, they have something like the hex lite for like $40 that can be powered via poe, etc.
  • ipsec / source nat

    1
    0 Votes
    1 Posts
    173 Views
    No one has replied
  • pfSense Firewall Configuration Help: Web Servers Inaccessible Remotely

    5
    0 Votes
    5 Posts
    325 Views
    A
    @viragomann Thank you.n Problem solved
  • NAT para servidor atrás da VPN - NAT para rede remota com OpenVPN

    1
    0 Votes
    1 Posts
    154 Views
    No one has replied
  • Tailscale NAT Outbound

    1
    1 Votes
    1 Posts
    240 Views
    No one has replied
  • [Solved] Need help to figure out Port Forward/Outbound NAT vs UPnP

    4
    2
    0 Votes
    4 Posts
    873 Views
    G
    I wanted to give an update to this since I have been going back to this problem and believe I have finally found a working solution. My experimenting has involved a few different firewalls and setups, and all the time I have been able to get Open NAT on MW2 (2009 version) only when the game has been "seeing" UPnP. Regardless if there has been a second firewall upstream that only had "traditional" port forwarding set up. I'm writing "seeing" UPnP as I recently did some packet capture and started noticing some similarities between the scenarios with and without UPnP active. When not having UPnP I have manually set up port forwards for 28960-63, which are the ports showing up in the UPnP status page when this game is running. What I found was that regardless if the game reports Open or Strict NAT, I always have the following "pattern" showing up in the pcap data: [image: 1720109675357-e61ff4f5-1a6b-42dc-83ca-5e20cf7109ae-image.png] The only difference when UPnP is active, is that before this communication starts, I also see the following nat-pmp request and response sequence. [image: 1720110610065-15bbeb55-5dac-409a-bf01-8988f2e68b0e-image.png] So I started thinking that the communication actually seems to be working on port 28960 and the game's reporting of Strict NAT might not be accurate? So I got some help from my friends to do some further testing and sure enough, I am able to host a game as well as connect to any other party hosting a game without issues! So, I'm guessing that this particular game is actually reporting NAT status solely based on getting a response on it's nat-pmp request, and not based on actually doing a communication test... which in my case is giving me incorrect information and has had me chasing a nonexistent problem for quite a while... So all I have now are ports 3074-79 and 28960-63 opened towards my game PC... And for port 3074 I have to make sure to use static port.
  • 3CX & NAT (Again)

    25
    4
    0 Votes
    25 Posts
    3k Views
    A
    @SteveITS yes, that is correct and it is written everywhere. The problem is that, 99% of the cases, you cannot reinstall and that was my case :)
  • Recent GUI issue with Chrome (minor but annoying)

    1
    0 Votes
    1 Posts
    125 Views
    No one has replied
  • Allowing random IP/PORT into LAN

    54
    0 Votes
    54 Posts
    4k Views
    W
    @johnpoz STILL WORKING!! Thank you again for all of your help. How can I help your status? I am new to the forums.
  • Access Modem GUI Behind Firewall

    firewall rules nat rules interface gui access modem
    107
    3
    0 Votes
    107 Posts
    22k Views
    JonathanLeeJ
    Great job, and you also learned port forwarding, ACL ordering, alias creation and much more. I love this forum you can learn so much. Now you just need a OpenVPN configured with a NAS server for private cloud use
  • 0 Votes
    5 Posts
    1k Views
    H
    @Bob-Dig thanks for your feedback again! Yeah, I think they are assigned properly, unless I'm missing something here and PPPoE actually requires a different assignment. [image: 1719260898527-assigments.png] [image: 1719260903240-gateways.png] Thank you!
  • LAN Clients cannot see OPT1 Client

    6
    1
    0 Votes
    6 Posts
    493 Views
    M
    @Gertjan Oof, also a typo. The desktop actually ends with 100, not 1. I'll make an edit. That WOULD be a disaster.
  • Use Public IP site A for server on site B

    5
    0 Votes
    5 Posts
    545 Views
    L
    @viragomann Thanks for your help.Its work now. In fact its was my openvpn interface that not handle ip address.
  • 0 Votes
    2 Posts
    571 Views
    D
    Problem 2 fixed by adding route to 192.168.5.0/24 on Mikrotik side
  • Multiple NordVPN with 1:1 NAT

    7
    0 Votes
    7 Posts
    921 Views
    J
    The thing is that even if I can get different addresses for TCP and UDP, it would still only work with 2 connections. Better if I can get the routing solved with 1:1 NAT somehow?
  • NORDVPN OpenVPN UDP Client / LAN Traffic.

    5
    0 Votes
    5 Posts
    722 Views
    P
    @NogBadTheBad [image: 1717934316221-openvpn-client.png] The local address in the screenshot is the isp router's lan network. The virtual address is 10.100.0.2. I am assuming its a /24 network (10.100.0.1 - 10.100.0.254). If it is then there should be no overlap of network ip ranges.
  • NAT - Port Forwarding UI - Port Range not displayed

    4
    1
    0 Votes
    4 Posts
    268 Views
    johnpozJ
    @muiredised said in NAT - Port Forwarding UI - Port Range not displayed: Blind to something obvious your protocole is set to any, which would not need ports... If you want to use a "port" then set the protocol to a specific protocol that uses ports like tcp or udp. or both.. [image: 1717707135734-ports.jpg]
  • 0 Votes
    4 Posts
    727 Views
    V
    @asodipo Console Menu Basics Using the PHP Shell
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.