• NAT not working after update from 2.x.x to 2.1.4

    2
    0 Votes
    2 Posts
    716 Views
    V
    This can occur if the overall table entries exceeds the configured maximum table entries. pfBlocker uses some huge tables, so it will be required to increase this value. You can do this in System: Advanced: Firewall and NAT.
  • /29 ip pool internet is not working

    1
    0 Votes
    1 Posts
    668 Views
    No one has replied
  • Yes Another Port Forwarding Issue.

    6
    0 Votes
    6 Posts
    2k Views
    V
    Glad to hear that I was of some help :)
  • 1:1 NAT and NAT Reflection Advice

    4
    0 Votes
    4 Posts
    1k Views
    D
    I went through something very similar recently. It was regular NAT, not 1:1 NAT, but the same principle. My internal users couldn't access our email server or web server using the public server names.  I too ended up using Split DNS just as KOM describes it. While I would like to know why NAT Reflection didn't work for me, I am very happy I went with the Split DNS setup. In fact, it took less time to convert to Split DNS using BIND than I spent on messing around with NAT Reflection.
  • Problemas con NAT

    2
    0 Votes
    2 Posts
    729 Views
    KOMK
    What do you have in your port forward list?
  • Multi LAN Subnets

    7
    0 Votes
    7 Posts
    2k Views
    DerelictD
    http://pubs.vmware.com/vsphere-51/index.jsp?topic=%2Fcom.vmware.vsphere.networking.doc%2FGUID-A9287D46-FDE0-4D64-9348-3905FEAC7FAE.html
  • Voip one way audio on incoming calls and drops after 30 seconds

    7
    0 Votes
    7 Posts
    10k Views
    A
    Hi, mattb253, you've mentioned you're quite good in asterisk. I'm new to asterisk and have an issue, I wonder whether I can run it by you and see whether you can help. Regards, Aldulaimi
  • Massive headache!

    2
    0 Votes
    2 Posts
    795 Views
    KOMK
    In general, you need to enable NAT reflection to access internal serves through the firewall's external interface, or run split DNS (you run an internal DNS server that resolves everything to local LAN addresses). As for Minecraft, if you can't seem to figure out what's going then do a packet capture when trying to connect and see what gets blocked.  I also run a Minecraft server but I do it via Linode.
  • Outbout NAT At My Limit

    17
    0 Votes
    17 Posts
    3k Views
    S
    Workstation on LAN accesses Webserver on VLAN by way of domain.com, dns call goes out to determine IP of domain.com = 24.111.111.111. Server should think request is from IP 24.111.111.110 (pub IP of LAN). Perhaps this should be accomplished with a static route?
  • vpn only on direction, but i need both direction: makes me mad!

    2
    0 Votes
    2 Posts
    801 Views
    C
    no body?  :-[
  • VOIP with NAT

    16
    0 Votes
    16 Posts
    6k Views
    R
    I am finally able to call in both directions,  :), the final problem was the STUN which is needed in my case; without STUN the phone registers with its private IP. Unfortunately the forward is not working as yet. I'm not sure if I should open a new thread for that or not. Here is the description: Cisco phone is configured to forward all calls to a cell phone calling the Cisco phone redirects to the cell phone, but it's either   - not ringing, instead I get the "switched off behaviour", which is voice-mail in this case   -  ringing once, then goes to voice-mail. If voice-mail is not activated, the message is the "The phone.. is currently switched off". My ISP says the call get redirected correctly to the cell number.
  • Nat is not working.

    1
    0 Votes
    1 Posts
    779 Views
    No one has replied
  • Port forwarding problems

    15
    0 Votes
    15 Posts
    4k Views
    J
    You also need a firewall rule on your WAN port allowing that traffic to traverse from outside in.  Do you have that? If you do have the rule turn logging on for that rule then check the firewall logs to see if the connection shows there.
  • VLAN's and NAT

    1
    0 Votes
    1 Posts
    641 Views
    No one has replied
  • [Solved] Port forward problem - in but not out

    4
    0 Votes
    4 Posts
    1k Views
    V
    Sometimes topic owners edits the subject (or a moderator does it), and adds [Solved] to the beginning, but I don't think it's a written rule that says you must do so.
  • Can i nat a public ip on local pfsense lan gateway?

    15
    0 Votes
    15 Posts
    4k Views
    DerelictD
    4.5 edit manual outbound nat rules setting both LAN3 rules to "NAT Address" of ippublic2.
  • Set specific NAT Timers

    2
    0 Votes
    2 Posts
    975 Views
    T
    I also have some more questions that I'm hoping someone can help with (in particular i'm interested in UDP behaviour, but if you know of TCP based behaviour and any differences with UDP, that would be much appreciated!): 1. What is the behaviour of the NAT timer resets? (i.e. are timers reset only by outbound packets using a specific NAT binding or, only by inbound packets, or packets in either direction?) 2. Would I be correct in saying that by default, pfSense implements Symmetric NAT? 3. If yes to question 2, can it be changed to a restricted, port restricted or full cone variant of NAT? 4. If not, does it use a port restricted NAT? (From it's behaviour, I'm guessing it does not implement restricted or full cone NAT) 5. Does the NAT used in pfSense attempt to preserve the local host port during the binding process, if so, how rigorously? (i.e. does only the most recent request from of two local hosts on the same port bound, or does it produce separate bindings for each host?) 6. Is the NAT behaviour the same for all bindings (i.e. primary, secondary and tertiary bindings)?
  • 1.2.3 to 2.1.4 activesync/owa port 443 redirect being blocked?

    3
    0 Votes
    3 Posts
    980 Views
    L
    ok its a certificate issue, i had to spoof the old wan's mac address onto the new wan interface card
  • Racoon –-- IPSec----and NAT or How to twist its Tail

    1
    0 Votes
    1 Posts
    860 Views
    No one has replied
  • UPnP not working correctly with XBox One [solved?]

    2
    0 Votes
    2 Posts
    3k Views
    Z
    Hate to talk to myself, but I just realized this could be potentially moved to the gaming forum. It also sounds like they have the solution over there.  Apparently the default pfSense behavior of "dynamic port" outbound NAT causes the problem.  UPnP still needs to be enabled, but it isn't the magic bullet that it was with the 360; the static port NAT option has to be turned on for the XBone. https://doc.pfsense.org/index.php/Static_Port Why the XBox One has problems with this and the XB360 does not, I have no idea (or maybe the 360 does, but the NAT tests it performs are just less thorough). I'm probably going to enable it for all of my Xboxen just to be thorough.  :)
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.