• Problem trying to disable NAT

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    GruensFroeschliG
    Did you add a static route on the ADSL-Modem pointing to 10.1.0.1 for the 10.0.0.0/16 subnet? Because if you dont add a static route your modem has no clue that this subnet even exists and thus will always send the data to it's default gateway. –> To your ISP which will just drop these packets.
  • Port forwarding breaks after IP address change

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    H
    I have added this, but unfortunately it doesn't appear to make any difference. A reboot of pfSense is still required to restore functionality of the VPN.
  • How to configure src.nat ?

    Locked
    5
    0 Votes
    5 Posts
    4k Views
    D
    My problem is thet I didnt add static route. Scenario: 1. I add  static route, bat everything is the same. 2. reboot pfsense end internet is stop working. 3. delete every nat end rules. 4. add nat end rules the same thet I add before delete. 5. everything is OK !!!!!! ;) I dont have Courage to reboot Pfsense again ! The reason for everything is thet I want to limits numbers of connection subnet 10.100.206.0/24 . What is default in Firewall: Rules: Edit Simultaneous client connection limit Maximum state entries per host Maximum new connections / per second State Timeout in seconds
  • 1:1 NAT issues with asterisk box and phones.

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    C
    Have you made the adjustments to your sip.conf file that are detailed in the following link? http://forum.pfsense.org/index.php/topic,8682.msg50287.html#msg50287 These changes help tell asterisk what its local network address is so that it is less likely to give the wrong internal address in the SIP packets.
  • Back to my Mac (UPnP) setup

    Locked
    2
    0 Votes
    2 Posts
    12k Views
    H
    First of all, UPnP and PMP is not the same. Those are different protocols for more or less the same thing. Currently pfSense only supports UPnP. Enable UPnP at the interface that your MAC is sitting behind (probably LAN) and don't use any restrictions for now (unless you feel/fear that you have some untrusted hosts inside your lan). Basically you have to enable it at the interface on which the host will communicate with pfSense. It will create firewallrules and portforwards at the lan interface for you automatically, so you don't have to configure something there. That's what UPnP is doing. Not sure if BTMM supports UPnP. Though I have Mac's (and love them) I never have used that feature yet as I use VPN-connections for this purpose and more. http://www.codingmonkeys.de/portmap/index.html is a free tool to easily test if UPnP is working.
  • (NOOB) Some Block Web Access

    Locked
    6
    0 Votes
    6 Posts
    4k Views
    Y
    Hi, Hoba, My problem Solved!!!  :D :D :D Yeah, the MTU figure problem. I put 1500 initially. Wow, thanks so much for this. Thank you so much. Kelvin
  • Bug in RDP port forward with /console option set : pfsense stop reponding

    Locked
    5
    0 Votes
    5 Posts
    4k Views
    H
    Maybe this is another thread which will come to the conclusion that running a firewall in a virtual machine is not a good idea  ;)
  • How can I use public IP's on the LAN?

    Locked
    24
    0 Votes
    24 Posts
    26k Views
    GruensFroeschliG
    You tried it wrong Did you read this thread: http://forum.pfsense.org/index.php/topic,8700.msg48871.html#msg48871 ? You have an entry to redirect http://zenstudios.blogdns.org.zenstudios.blogdns.org right now. you need more something along the lines of this: <hosts><host><domain>psymia.mine.nu</domain>   <ip>10.0.0.10</ip></host></hosts> <hosts><host>www</host>   <domain>psymia.mine.nu</domain>   <ip>10.0.0.10</ip></hosts>
  • One server two 1:1 Nats? One for failover…

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    H
    You don't need additional boxes. Hint: What is a carpcluster consisting of 2 machines with 1 dead machine? Yep, still working  ;D
  • Reg Sip Phones

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    K
    Hi My setup is i have 2 nos of Linksys PAP2 adaptors, 2 nos of Polycom, 4nos of Grandstream phones in my office. My network id is 192.168.1.0 I have installed pfsense 1.2 in my system with Lan IP 192.168.1.1 One wan connection with static IP My trixbox server located in remote place i mean not in our office. i Have given pfsense ip as gateway for all phones. regards Krishna
  • Nat with public IP on LAN

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    L
    Thanks Hoba! That's good news!
  • 1:1 NAT Concept

    Locked
    5
    0 Votes
    5 Posts
    4k Views
    H
    Yes, just that tickbos. Will work with portforwards but not with 1:1 nat.
  • 1:1 nat problem

    Locked
    10
    0 Votes
    10 Posts
    4k Views
    GruensFroeschliG
    Test-system: WAN: 192.168.20.5/29 LAN: 10.0.0.0/24 Server: 10.0.0.12 1: create VIP. 2: create 1:1 mapping 3: create firewall rules on LAN and WAN to allow traffic from and to the server IP. [image: carp.jpg] [image: 1to1.jpg]
  • Secure FTP

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    GruensFroeschliG
    The standard command port is 22. You will need to look at your cerberus config to find out which range it uses for data.
  • Port forward - possible this?

    Locked
    15
    0 Votes
    15 Posts
    5k Views
    I
    But if you already have multiple names, shouldnt you be able to distinguish them by this name(IP?), and just make some destination-based rule decisions? Yep, the trick is ascertaining the hostname that the client is requesting.  (We can't turn the problem around and do it based on the client IP as these people travel).  If it were simple HTTP then we could use the inbound load-balancer (I think) but since it's direct RDP we're trying to extract the same data from the RDP session instead.
  • If HOST= then X Else Y NAT rule.

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    H
    This is sourcebased nat. This is not possible currently.
  • NAT to an internal PPTP server

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    D
    Comcast is blocking pptp.  I went to the customer remote site and connected perfectly. Thanks for the help
  • Connecting with external IP to servers in DMZ

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    H
    Turned off ftp-helper on all interfaces and added a port forward on the lan inteface for ftp port and a passive range and it works great :), thx.
  • Help me settle the routing problem

    Locked
    17
    0 Votes
    17 Posts
    6k Views
    S
    0.0.0.0 & 10.122.17.x - external to your network?
  • Redirect smtp traffic to ISP's mailserver

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    L
    Looks like that will solve the problem just fine. Thanks hoba!
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.