That's more matter of personal choice but I like to see, directly in this interface, ports handled by FW rules.
This said, "it's not working" is not very helpful.
Did you check, e.g. from your workstation, that you can reach target server. This means to be able to resolve name (I suppose pfSense is your DNS) then to access it, f.i. using telnet.
In case of error, you should be able to tack it directly using pfSense, looking at firewall log in status/system logs/firewall tab.
This will tell you if this is blocked at FW level.