• Port forwarding to non-LAN subnet

    2
    0 Votes
    2 Posts
    542 Views
    V
    @thomaspsimon I guess, you're using a policy-based IPSec tunnel. If so this is not going to work, unless you route the whole upstream traffic from the branch over the VPN, which might not be desirable. It would be doable with any other VPN solution, however, which gives you real routing capability.
  • pfSense IPSec + Manual Outbound NAT - No Traffic via VIP

    3
    0 Votes
    3 Posts
    578 Views
    E
    Big thanks @viragomann Your BINAT insight was the missing puzzle piece, tunnel’s up, traffic’s flowing, and packets are happy. Much appreciated!
  • New port forwards not working

    9
    0 Votes
    9 Posts
    747 Views
    F
    @enthu19 thank you so much, that worked! I learnt something new :) Thank you again enthu19!!!
  • ZTE ZXHN F6600P as bridge

    1
    0 Votes
    1 Posts
    607 Views
    No one has replied
  • Multiple outgoing IP, NAT/Routing not 100% working

    1
    0 Votes
    1 Posts
    297 Views
    No one has replied
  • [Tutorial] How to Secure and Imeplement Internal IPv6 NAT66/NPt

    2
    0 Votes
    2 Posts
    352 Views
    No one has replied
  • unable to get firewall to route traffic

    52
    0 Votes
    52 Posts
    6k Views
    Z
    @Bob-Dig if I use cloudflared docker container then I can get to the sites no issue so not sure why it isn't working normally okay thanks will poke around more
  • PORT FORWARDING NOT WORKING AFTER UPGRADE TO BETA 25.03

    12
    0 Votes
    12 Posts
    1k Views
    johnpozJ
    @Gertjan said in PORT FORWARDING NOT WORKING AFTER UPGRADE TO BETA 25.03: Anyway, very soon we can ditch IPv4 and Natting and things become easy for everybody Yeah soon ;) they have been saying that for 20+ years already.. Soon ;)
  • Port forwarding not working on fresh install of 2.8.0

    4
    0 Votes
    4 Posts
    882 Views
    SpunkThingS
    @SteveITS Yes, by "lockout" I mean exactly that. Couldn't access the web interface, connect through SSH or even ping the machine until packet filtering was manually disabled. At that time there weren't any firewall rules except for the anti-lockout rule which is present on the LAN interface by default if I remember correctly. It was only after everything finally worked as intended that I started creating my own firewall rules, and from then onwards everything's been working fine. :-) My best (and honestly a little uneducated...) guess would be that my self created interface mismatch prevented me from connecting to the pfSense machine. I suppose the lesson here is that taking shortcuts such as the one described here can't be relied on. No more trying to rename interfaces on pfSense / FreeBSD. On the bright side, no interfaces have gone down since performing a fresh installation and I sure gave it something to chew on. That's with the default RealTek kernel driver, by the way, the same one that kept acting up in the past and which prompted me to try the alternative v1.98 driver. For lack of a logical explanation I suppose we can call that a lucky coincidence.
  • NAT public IP through multi way

    3
    0 Votes
    3 Posts
    910 Views
    L
    @viragomann thanks a lot. From lan to wan works right. I must test how it works for some internal exposed services.
  • No "ports" in Port Forwarding

    3
    0 Votes
    3 Posts
    809 Views
    U
    @SteveITS , Thank you! Small oversight between chair and keyboard. I see it now. -JB
  • Outbound NAT over IPSEC tunnel not working

    outbound nat ipsec ipsec routing meraki
    7
    0 Votes
    7 Posts
    1k Views
    S
    @viragomann said in Outbound NAT over IPSEC tunnel not working: @shaunmccloud said in Outbound NAT over IPSEC tunnel not working: And the minute I add a P2 entry in my pfSense box for a remote network of 0.0.0.0/0, all network traffic but local dies. So I'd assume, that the traffic is routed over the VPN, but not out on WAN. But this is only the half of the battle. The traffic must be natted on the remote site If the Meraki doesn't masquerade your subnets there is no way to go out to the internet through it. I decided to cheat, and throw a virtual pfSense box in the data center to connect to. I'll see how that works tomorrow.
  • Simple port forward error default deny rule ipv4

    6
    0 Votes
    6 Posts
    1k Views
    johnpozJ
    @TheCalvinator glad to hear finally sorted. Thanks.
  • Local DMZ to filter traffic for game server.(Category may be wrong)

    1
    0 Votes
    1 Posts
    188 Views
    No one has replied
  • SNAT IPsec not work

    13
    0 Votes
    13 Posts
    2k Views
    A
    @viragomann Morning my friend, some news about topic?
  • Upnp issue

    6
    0 Votes
    6 Posts
    1k Views
    G
    @Yasir Yeah, well unfortunately that's the way it's implemented so unless you can push for and get an update/improvement of the implementation, a script is the only other solution.
  • "NAT Reflection mode for port forwards" option

    1
    0 Votes
    1 Posts
    389 Views
    No one has replied
  • Cant DNAT to ovpn client

    3
    0 Votes
    3 Posts
    831 Views
    A
    @viragomann Thank you very much. you helped me understand very good whats going on. Moreover i managed to to make it wotk bu adding an snat outbound rule to the openvpn interface. thanks again.
  • SIP client on LAN ignoring 401 Unauthorized packet

    5
    0 Votes
    5 Posts
    662 Views
    w0wW
    @Zak-McKracken If the issue is suspected to be with the external IP and the Ricoh firmware, then it might be worth trying siproxd.
  • Host Website over IPsec to a QNAP

    3
    0 Votes
    3 Posts
    878 Views
    N
    @viragomann Thanks. going to do some reading up on this before I kills my pfselnse.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.