Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Port forwarding from WAN to LAN on Pfsense ESXI not working

    NAT
    4
    20
    1.3k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      gulzoa712
      last edited by gulzoa712

      I am trying to redirect traffic coming to the WAN interface to a speicifc LAN ip in my internal network. I am adding NAT forwarding rules, but it is not working and has me really stressed out. The second screen shot is the firewall rules that i have to allow all kind of traffic to this WAN interface. WAN interface is a live IP address.
      6782bc0b-e12e-449d-8666-c0c68a44196f-image.png

      Here is a screen shot attached
      945f7efc-dd51-4bbe-bbec-983fbc0ed6bb-image.png

      J 1 Reply Last reply Reply Quote 0
      • Cool_CoronaC
        Cool_Corona
        last edited by

        Youre doing it wrong....

        Right now everybody has access to your LAN from WAN.

        G 2 Replies Last reply Reply Quote 0
        • G
          gulzoa712 @Cool_Corona
          last edited by

          @cool_corona Then what should be the correct scenario brother?
          Can you at least guide me in the correct direction

          1 Reply Last reply Reply Quote 0
          • G
            gulzoa712 @Cool_Corona
            last edited by

            @cool_corona What i need to achieve is that if anyone comes on my WAN via port 80 he should be redirected as per NAT port forwarding rules to a specific LAN IP at port 80.

            Cool_CoronaC V G 4 Replies Last reply Reply Quote 0
            • Cool_CoronaC
              Cool_Corona @gulzoa712
              last edited by

              @gulzoa712 Give me a teamviewer and I will help you.

              1 Reply Last reply Reply Quote 0
              • V
                viragomann @gulzoa712
                last edited by

                @gulzoa712 said in Port forwarding from WAN to LAN on Pfsense ESXI not working:

                What i need to achieve is that if anyone comes on my WAN via port 80 he should be redirected as per NAT port forwarding rules to a specific LAN IP at port 80.

                But you stated the LAN address in the port forwarding rule.
                It has to be the WAN address then.

                G 1 Reply Last reply Reply Quote 0
                • G
                  gulzoa712 @gulzoa712
                  last edited by

                  @gulzoa712 Ok brother send me ur email id?

                  1 Reply Last reply Reply Quote 0
                  • G
                    gulzoa712 @viragomann
                    last edited by

                    @viragomann Yes bro i tried this as well but it did not worked.

                    1 Reply Last reply Reply Quote 0
                    • G
                      gulzoa712 @gulzoa712
                      last edited by

                      @gulzoa712 Bro i'm waiting for your response. We can set up a anydesk session.

                      Cool_CoronaC G 2 Replies Last reply Reply Quote 0
                      • Cool_CoronaC
                        Cool_Corona @gulzoa712
                        last edited by

                        @gulzoa712 Sure you have the wrong guy....

                        Teamviewer?

                        1 Reply Last reply Reply Quote 0
                        • J
                          Jarhead @gulzoa712
                          last edited by

                          @gulzoa712 said in Port forwarding from WAN to LAN on Pfsense ESXI not working:

                          I am trying to redirect traffic coming to the WAN interface to a speicifc LAN ip in my internal network. I am adding NAT forwarding rules, but it is not working and has me really stressed out. The second screen shot is the firewall rules that i have to allow all kind of traffic to this WAN interface. WAN interface is a live IP address.
                          6782bc0b-e12e-449d-8666-c0c68a44196f-image.png

                          Here is a screen shot attached
                          945f7efc-dd51-4bbe-bbec-983fbc0ed6bb-image.png

                          Delete the top 4 rules.
                          Change the destination to Wan Address in the NAT.

                          G 1 Reply Last reply Reply Quote 0
                          • G
                            gulzoa712 @gulzoa712
                            last edited by

                            @gulzoa712 Sure bro let's set up team viewer this is my email id share me details here please, i'll wait for your reply
                            :

                            gulzk@live.com

                            1 Reply Last reply Reply Quote 0
                            • G
                              gulzoa712 @Jarhead
                              last edited by

                              @jarhead Ok thanks for your response i will exactly try that and let you know :(

                              1 Reply Last reply Reply Quote 0
                              • G
                                gulzoa712
                                last edited by

                                I made the change as you suggested bro, but still no change. As yo u can see in the image, the destination to redirect is the LAN ip.
                                1a324a5f-2cff-45e6-b72b-d49f19655723-image.png
                                and this is my latest updated rule on NAT port forwarding, still the wan
                                446fc7c5-959f-4405-8623-bc777f65b2d6-image.png ip is not redirecting to the lan address.

                                1 Reply Last reply Reply Quote 0
                                • G
                                  gulzoa712
                                  last edited by

                                  I made the change as you suggested bro, but still no change. As yo u can see in the image, the destination to redirect is the LAN ip.
                                  1a324a5f-2cff-45e6-b72b-d49f19655723-image.png
                                  and this is my latest updated rule on NAT port forwarding, still the wanip is not redirecting to the lan address.
                                  446fc7c5-959f-4405-8623-bc777f65b2d6-image.png

                                  J 1 Reply Last reply Reply Quote 0
                                  • J
                                    Jarhead @gulzoa712
                                    last edited by

                                    @gulzoa712
                                    Rules work in order, from the top down. First rule that fits wins. It doesn't process any more rules.
                                    See the allow all rule you have? It wins.
                                    Delete it!
                                    It's allowing everyone on the internet access to your LAN.
                                    Why would you want an allow all on the WAN???
                                    You don't need any of those rules. Delete them as I said.

                                    G 1 Reply Last reply Reply Quote 0
                                    • G
                                      gulzoa712 @Jarhead
                                      last edited by

                                      @jarhead ok i have deleted what shall i do next?

                                      J 1 Reply Last reply Reply Quote 0
                                      • J
                                        Jarhead @gulzoa712
                                        last edited by

                                        @gulzoa712
                                        Use it. It'll work now.

                                        G 1 Reply Last reply Reply Quote 0
                                        • G
                                          gulzoa712 @Jarhead
                                          last edited by

                                          @jarhead Thank you but what about the NAT port forwarding rules buddy, can you kindly look into that? I need that WAN to redirect to LAN ip address.

                                          J 1 Reply Last reply Reply Quote 0
                                          • J
                                            Jarhead @gulzoa712
                                            last edited by

                                            @gulzoa712 That's what your NAT rule does.
                                            Any source, meaning the internet, on port 80 goes to your internal address of 192.168.15.213 on port 80.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.