Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Blue Iris Remote access?

    NAT
    4
    47
    9.2k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      Jarhead @Elmojo
      last edited by

      @elmojo In the rule, you have destination as wan. Should be single host, then the BI address.

      E 1 Reply Last reply Reply Quote 0
      • E
        Elmojo @Jarhead
        last edited by

        @jarhead Please read back through the thread, we've covered this already.
        Thanks for the input, though. :)

        J 2 Replies Last reply Reply Quote 0
        • J
          Jarhead @Elmojo
          last edited by

          @elmojo Look at your rule. You have the destination as the wan address. You're forwarding port 81 back to the wan. It needs to forward to BI.

          E 1 Reply Last reply Reply Quote 0
          • J
            Jarhead @Elmojo
            last edited by Jarhead

            @elmojo This is what your NAT and Rule should look like. Insert your IP's and ports.
            NAT.jpg

            Rule.jpg

            E 1 Reply Last reply Reply Quote 0
            • E
              Elmojo @Jarhead
              last edited by

              @jarhead I've tried it that way as well, and it still just times out or refuses the connection outright, depending on if I use the WAN or LAN IP. If you scroll back through the thread, you'll see the various configs I've tried, and that none of them seem to make any difference.

              J 1 Reply Last reply Reply Quote 0
              • E
                Elmojo @Jarhead
                last edited by

                @jarhead See, this is how I have it set up now, which unless I've missed something obvious is the same as your example. When I try to connect from my phone (cellular), I get an immediate "connection refused".

                NAT rule2.jpg

                J 1 Reply Last reply Reply Quote 0
                • J
                  Jarhead @Elmojo
                  last edited by

                  @elmojo You're saying you did but there's no images with it like that.
                  The guess is you had something wrong, that's why you're here now.
                  So why not try it again?

                  1 Reply Last reply Reply Quote 0
                  • J
                    Jarhead @Elmojo
                    last edited by

                    @elmojo Posted when you did..

                    The NAT is good. In the RULE you had WAN as destination. It needs to be the BI address. Can you check that it is?

                    E 1 Reply Last reply Reply Quote 0
                    • E
                      Elmojo @Jarhead
                      last edited by

                      @jarhead So the rule is being automatically set up by the NAT. Are you saying that I need to override it and manually change it to the LAN IP of my BI server?

                      J 1 Reply Last reply Reply Quote 0
                      • J
                        Jarhead @Elmojo
                        last edited by

                        @elmojo No, I'm saying in the picture you posted it's wrong.

                        E 1 Reply Last reply Reply Quote 0
                        • E
                          Elmojo @Jarhead
                          last edited by

                          @jarhead I don't understand, it looks exactly like yours, other than the ports and IPs being different...
                          Please tell me where you see a difference, and I'll be happy to fix it.
                          I'll be back in a bit, time to eat! :)

                          J 1 Reply Last reply Reply Quote 0
                          • J
                            Jarhead @Elmojo
                            last edited by Jarhead

                            @elmojo
                            This is mine.
                            mine.jpg

                            This is yours.
                            Yours.jpg

                            The destination is not the WAN, it's the BI box.

                            chpalmerC E 2 Replies Last reply Reply Quote 0
                            • chpalmerC
                              chpalmer @Jarhead
                              last edited by

                              The WAN Firewall rule should be built correctly when you make a Port Forward. If it is not then something is up.

                              This is what your "NAT rule should look like.
                              https://forum.netgate.com/assets/uploads/files/1653600958727-natrule.jpg

                              Can you post a screenshot of Firewall / Rules / WAN Please include the title of the page as I have done.

                              rulespage.jpg

                              Triggering snowflakes one by one..
                              Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

                              E 1 Reply Last reply Reply Quote 0
                              • E
                                Elmojo @Jarhead
                                last edited by

                                @jarhead But that's the rules screen. I have no control over the settings there. They're linked to the NAT and locked.

                                chpalmerC 1 Reply Last reply Reply Quote 0
                                • E
                                  Elmojo @chpalmer
                                  last edited by

                                  @chpalmer said in Blue Iris Remote access?:

                                  The WAN Firewall rule should be built correctly when you make a Port Forward. If it is not then something is up.
                                  This is what your "NAT rule should look like.
                                  https://forum.netgate.com/assets/uploads/files/1653600958727-natrule.jpg
                                  Can you post a screenshot of Firewall / Rules / WAN Please include the title of the page as I have done.

                                  Yeah, this ^ lol
                                  Your first image didn't load, so I'm not sure what I was meant to see, sorry.
                                  Here's my WAN rules page:
                                  WAN Rules.jpg

                                  J 2 Replies Last reply Reply Quote 0
                                  • J
                                    Jarhead @Elmojo
                                    last edited by Jarhead

                                    @elmojo Then delete the NAT and recreate it.

                                    Edit: And use the picture I posted as a template.

                                    E 1 Reply Last reply Reply Quote 0
                                    • chpalmerC
                                      chpalmer @Elmojo
                                      last edited by

                                      @elmojo Go to the bottom of the NAT page and disassociate the rule from the NAT. Then you will be able to change it.

                                      Notice your other firewall rules go to the LAN address of the server.. Your Blue Iris should be similar.

                                      Triggering snowflakes one by one..
                                      Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

                                      1 Reply Last reply Reply Quote 0
                                      • J
                                        Jarhead @Elmojo
                                        last edited by

                                        @elmojo I would delete the NAT and recreate it.
                                        Just to see if it does the same thing.
                                        But my guess is you originally created the NAT wrong, then changed it and the rule didn't change.

                                        1 Reply Last reply Reply Quote 0
                                        • E
                                          Elmojo @Jarhead
                                          last edited by

                                          @jarhead Done... and I'm in!
                                          Everything is set exactly as it was before, but maybe there was something hosed up in the backend somewhere. Who knows?
                                          I never would have thought of just 'rebooting' the NAT entry. Thanks! :)

                                          J 1 Reply Last reply Reply Quote 0
                                          • J
                                            Jarhead @Elmojo
                                            last edited by

                                            @elmojo Glad to hear but I doubt it's the same. Look at the rule it created, the destination is gonna be the BI ip.

                                            But anyway... it's working.
                                            Now delete the NAT and set yourself up a VPN so you don't have to open ports!! ๐Ÿ˜‰

                                            Also, this was fixed with my second post, so remember the old saying, "You can type a thousand words or just post a picture!"
                                            or something like that. ๐Ÿ˜€

                                            E 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.