Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PortForward Not woking no matter what i do

    Scheduled Pinned Locked Moved Firewalling
    59 Posts 4 Posters 3.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      Dark_Prophet
      last edited by

      output.png

      johnpozJ 1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator @Dark_Prophet
        last edited by

        @dark_prophet what advanced thing did you do on that 2302 rule - see the gear on it.. Also I see no hits on that rule.. see the 0/0 B in the states - if you had sent traffic from the outside that rule matched on it would be something other than 0/0 like see your plex rule above it.

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

        1 Reply Last reply Reply Quote 0
        • D
          Dark_Prophet
          last edited by

          LAn.png

          there it shows MasterPC

          johnpozJ 1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator @Dark_Prophet
            last edited by johnpoz

            @dark_prophet all good info.. But what is that Gear Settings on that rule - means you did some sort of advanced filter on it.. Also it shows 0/0 hits on it - do you have something in floating rules that would prevent traffic from ever hitting the interface (wan) rule..

            Also that shows its on a vlan, not your lan - if you sniffed on lan you wouldn't see traffic going to it..

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.7.2, 24.11

            1 Reply Last reply Reply Quote 0
            • D
              Dark_Prophet
              last edited by Dark_Prophet

              that's the sloppy state that i was trying to make it work lol
              i did have something on flotting rules but i deleted everything and started from scratch

              johnpozJ 1 Reply Last reply Reply Quote 0
              • johnpozJ
                johnpoz LAYER 8 Global Moderator @Dark_Prophet
                last edited by

                @dark_prophet

                problem LAN interface is not getting anything

                Did you do the packet capture on the correct interface - your lan would never see anything because from your arp table that IP is on your main_vlan interface.

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                1 Reply Last reply Reply Quote 0
                • D
                  Dark_Prophet
                  last edited by

                  When i capture in MAIN_VLAN not output
                  when i capture on WAN i see traffic

                  my Plex server is on the same interface and i see output on all interfaces

                  johnpozJ 1 Reply Last reply Reply Quote 0
                  • johnpozJ
                    johnpoz LAYER 8 Global Moderator @Dark_Prophet
                    last edited by

                    @dark_prophet well that doesn't make a lot of sense.. Are you showing that wan rule trigger when you send traffic - or is it still at 0/0

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                    1 Reply Last reply Reply Quote 0
                    • D
                      Dark_Prophet
                      last edited by

                      thats why im scratching my head here lol
                      still showing 0/0 on everything

                      i wonder if the Main_vlan might be conflicting with something else.

                      johnpozJ 1 Reply Last reply Reply Quote 0
                      • johnpozJ
                        johnpoz LAYER 8 Global Moderator @Dark_Prophet
                        last edited by johnpoz

                        @dark_prophet said in PortForward Not woking no matter what i do:

                        i wonder if the Main_vlan might be conflicting with something else.

                        No that has nothing to do with it... I just sent traffic to 2302 on your IP.. Does the rule show any evaluations?

                        traffic.jpg

                        Les see your port forward rules not the individual rules - all of them, want to see the order, did you place anything in the advanced source for that 2302 rule?

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                        1 Reply Last reply Reply Quote 0
                        • D
                          Dark_Prophet
                          last edited by

                          still nothing

                          where did i forgot to cover my ip address lol 😬

                          johnpozJ 1 Reply Last reply Reply Quote 0
                          • johnpozJ
                            johnpoz LAYER 8 Global Moderator @Dark_Prophet
                            last edited by johnpoz

                            @dark_prophet you covered the last octet, but I got it from the ip you talked to the forum from.. As mod I can see that.

                            I had to assume that was your IP, since the first 3 octets matched.

                            So you still don't see any evaluations on that rule - shows 0/0 then yeah something is wrong.. You sure you have no rules in floating... You sure your rules reloaded after changing say floating - you say you removed stuff.. Do a reload of your filters..

                            An intelligent man is sometimes forced to be drunk to spend time with his fools
                            If you get confused: Listen to the Music Play
                            Please don't Chat/PM me for help, unless mod related
                            SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                            1 Reply Last reply Reply Quote 0
                            • D
                              Dark_Prophet
                              last edited by

                              lol forgot

                              im taking all the pictures now

                              johnpozJ 1 Reply Last reply Reply Quote 0
                              • johnpozJ
                                johnpoz LAYER 8 Global Moderator @Dark_Prophet
                                last edited by johnpoz

                                @dark_prophet

                                do a reload

                                reload.jpg

                                Did you copy and paste any rules - there was some issue going around where rules that were copied got the same ID..

                                An intelligent man is sometimes forced to be drunk to spend time with his fools
                                If you get confused: Listen to the Music Play
                                Please don't Chat/PM me for help, unless mod related
                                SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                                1 Reply Last reply Reply Quote 0
                                • D
                                  Dark_Prophet
                                  last edited by

                                  ok i did filter reload now

                                  WAN2.png WAN.png Main2.png Main.png LAN.png LAN 2.png Filter Reload.png

                                  johnpozJ 1 Reply Last reply Reply Quote 0
                                  • D
                                    Dark_Prophet
                                    last edited by

                                    i deleted every rules and started clean again

                                    1 Reply Last reply Reply Quote 0
                                    • johnpozJ
                                      johnpoz LAYER 8 Global Moderator @Dark_Prophet
                                      last edited by

                                      @dark_prophet that rule on your main_vlan with destination 2302 is pointless.

                                      And you send traffic to that port from can you see me, and the counter never goes up.. But you say you see it on a wan sniff to that port..

                                      Can you post your port forwards, do you have something that would trigger on that port other than matching up with this firewall is what I am looking for.

                                      You let your port forward create the firewall rule..

                                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                                      If you get confused: Listen to the Music Play
                                      Please don't Chat/PM me for help, unless mod related
                                      SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                                      1 Reply Last reply Reply Quote 0
                                      • D
                                        Dark_Prophet
                                        last edited by Dark_Prophet

                                        yes on WAN interface sniff shows this
                                        Wan Sniff.png

                                        i have created some firewall rules and some were created by windows firewall when i uninstall my antivirus

                                        Firewwall2.png Firewall.png

                                        johnpozJ 1 Reply Last reply Reply Quote 0
                                        • D
                                          Dark_Prophet
                                          last edited by

                                          do you of any app i can download that can listen on a specific port and try it out just to see
                                          cause is just crazy that Plex works with no problem . seems like the problem here is that my PC and windows firewall are not listening on that port at all?

                                          1 Reply Last reply Reply Quote 0
                                          • johnpozJ
                                            johnpoz LAYER 8 Global Moderator @Dark_Prophet
                                            last edited by johnpoz

                                            @dark_prophet the firewall rules on the destination have nothing to do with seeing if pfsense sends the traffic on.

                                            But if you send traffic to that port, and the firewall rule to allow it never goes up from 0/0 then your port forward is not triggering.. For that firewall rule to allow the traffic.

                                            So you maybe have a port forward that includes that port that sends it to a different firewall rule?

                                            PC and windows firewall are not listening on that port at all?

                                            Has zero to do with the destination device listening or having it firewalled.. If your port forward triggers and pfsense sends the traffic on - has nothing to do with if your device actually listening on that port..

                                            You would see the traffic get sent on when you sniff on the main_vlan interface and send a test from outside.. But clearly something is not working for pfsense to send it on, because the firewall rule that allows the traffic from the port forward is never being triggered.. Its staying at 0/0

                                            Please post up all your port forwards, like this..

                                            allofthem.jpg

                                            And you have NOTHING in floating.

                                            An intelligent man is sometimes forced to be drunk to spend time with his fools
                                            If you get confused: Listen to the Music Play
                                            Please don't Chat/PM me for help, unless mod related
                                            SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.