Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PortForward Not woking no matter what i do

    Scheduled Pinned Locked Moved Firewalling
    59 Posts 4 Posters 3.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • johnpozJ
      johnpoz LAYER 8 Global Moderator @Dark_Prophet
      last edited by johnpoz

      @dark_prophet all good info.. But what is that Gear Settings on that rule - means you did some sort of advanced filter on it.. Also it shows 0/0 hits on it - do you have something in floating rules that would prevent traffic from ever hitting the interface (wan) rule..

      Also that shows its on a vlan, not your lan - if you sniffed on lan you wouldn't see traffic going to it..

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.8, 24.11

      1 Reply Last reply Reply Quote 0
      • D
        Dark_Prophet
        last edited by Dark_Prophet

        that's the sloppy state that i was trying to make it work lol
        i did have something on flotting rules but i deleted everything and started from scratch

        johnpozJ 1 Reply Last reply Reply Quote 0
        • johnpozJ
          johnpoz LAYER 8 Global Moderator @Dark_Prophet
          last edited by

          @dark_prophet

          problem LAN interface is not getting anything

          Did you do the packet capture on the correct interface - your lan would never see anything because from your arp table that IP is on your main_vlan interface.

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          1 Reply Last reply Reply Quote 0
          • D
            Dark_Prophet
            last edited by

            When i capture in MAIN_VLAN not output
            when i capture on WAN i see traffic

            my Plex server is on the same interface and i see output on all interfaces

            johnpozJ 1 Reply Last reply Reply Quote 0
            • johnpozJ
              johnpoz LAYER 8 Global Moderator @Dark_Prophet
              last edited by

              @dark_prophet well that doesn't make a lot of sense.. Are you showing that wan rule trigger when you send traffic - or is it still at 0/0

              An intelligent man is sometimes forced to be drunk to spend time with his fools
              If you get confused: Listen to the Music Play
              Please don't Chat/PM me for help, unless mod related
              SG-4860 24.11 | Lab VMs 2.8, 24.11

              1 Reply Last reply Reply Quote 0
              • D
                Dark_Prophet
                last edited by

                thats why im scratching my head here lol
                still showing 0/0 on everything

                i wonder if the Main_vlan might be conflicting with something else.

                johnpozJ 1 Reply Last reply Reply Quote 0
                • johnpozJ
                  johnpoz LAYER 8 Global Moderator @Dark_Prophet
                  last edited by johnpoz

                  @dark_prophet said in PortForward Not woking no matter what i do:

                  i wonder if the Main_vlan might be conflicting with something else.

                  No that has nothing to do with it... I just sent traffic to 2302 on your IP.. Does the rule show any evaluations?

                  traffic.jpg

                  Les see your port forward rules not the individual rules - all of them, want to see the order, did you place anything in the advanced source for that 2302 rule?

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 24.11 | Lab VMs 2.8, 24.11

                  1 Reply Last reply Reply Quote 0
                  • D
                    Dark_Prophet
                    last edited by

                    still nothing

                    where did i forgot to cover my ip address lol 😬

                    johnpozJ 1 Reply Last reply Reply Quote 0
                    • johnpozJ
                      johnpoz LAYER 8 Global Moderator @Dark_Prophet
                      last edited by johnpoz

                      @dark_prophet you covered the last octet, but I got it from the ip you talked to the forum from.. As mod I can see that.

                      I had to assume that was your IP, since the first 3 octets matched.

                      So you still don't see any evaluations on that rule - shows 0/0 then yeah something is wrong.. You sure you have no rules in floating... You sure your rules reloaded after changing say floating - you say you removed stuff.. Do a reload of your filters..

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 24.11 | Lab VMs 2.8, 24.11

                      1 Reply Last reply Reply Quote 0
                      • D
                        Dark_Prophet
                        last edited by

                        lol forgot

                        im taking all the pictures now

                        johnpozJ 1 Reply Last reply Reply Quote 0
                        • johnpozJ
                          johnpoz LAYER 8 Global Moderator @Dark_Prophet
                          last edited by johnpoz

                          @dark_prophet

                          do a reload

                          reload.jpg

                          Did you copy and paste any rules - there was some issue going around where rules that were copied got the same ID..

                          An intelligent man is sometimes forced to be drunk to spend time with his fools
                          If you get confused: Listen to the Music Play
                          Please don't Chat/PM me for help, unless mod related
                          SG-4860 24.11 | Lab VMs 2.8, 24.11

                          1 Reply Last reply Reply Quote 0
                          • D
                            Dark_Prophet
                            last edited by

                            ok i did filter reload now

                            WAN2.png WAN.png Main2.png Main.png LAN.png LAN 2.png Filter Reload.png

                            johnpozJ 1 Reply Last reply Reply Quote 0
                            • D
                              Dark_Prophet
                              last edited by

                              i deleted every rules and started clean again

                              1 Reply Last reply Reply Quote 0
                              • johnpozJ
                                johnpoz LAYER 8 Global Moderator @Dark_Prophet
                                last edited by

                                @dark_prophet that rule on your main_vlan with destination 2302 is pointless.

                                And you send traffic to that port from can you see me, and the counter never goes up.. But you say you see it on a wan sniff to that port..

                                Can you post your port forwards, do you have something that would trigger on that port other than matching up with this firewall is what I am looking for.

                                You let your port forward create the firewall rule..

                                An intelligent man is sometimes forced to be drunk to spend time with his fools
                                If you get confused: Listen to the Music Play
                                Please don't Chat/PM me for help, unless mod related
                                SG-4860 24.11 | Lab VMs 2.8, 24.11

                                1 Reply Last reply Reply Quote 0
                                • D
                                  Dark_Prophet
                                  last edited by Dark_Prophet

                                  yes on WAN interface sniff shows this
                                  Wan Sniff.png

                                  i have created some firewall rules and some were created by windows firewall when i uninstall my antivirus

                                  Firewwall2.png Firewall.png

                                  johnpozJ 1 Reply Last reply Reply Quote 0
                                  • D
                                    Dark_Prophet
                                    last edited by

                                    do you of any app i can download that can listen on a specific port and try it out just to see
                                    cause is just crazy that Plex works with no problem . seems like the problem here is that my PC and windows firewall are not listening on that port at all?

                                    1 Reply Last reply Reply Quote 0
                                    • johnpozJ
                                      johnpoz LAYER 8 Global Moderator @Dark_Prophet
                                      last edited by johnpoz

                                      @dark_prophet the firewall rules on the destination have nothing to do with seeing if pfsense sends the traffic on.

                                      But if you send traffic to that port, and the firewall rule to allow it never goes up from 0/0 then your port forward is not triggering.. For that firewall rule to allow the traffic.

                                      So you maybe have a port forward that includes that port that sends it to a different firewall rule?

                                      PC and windows firewall are not listening on that port at all?

                                      Has zero to do with the destination device listening or having it firewalled.. If your port forward triggers and pfsense sends the traffic on - has nothing to do with if your device actually listening on that port..

                                      You would see the traffic get sent on when you sniff on the main_vlan interface and send a test from outside.. But clearly something is not working for pfsense to send it on, because the firewall rule that allows the traffic from the port forward is never being triggered.. Its staying at 0/0

                                      Please post up all your port forwards, like this..

                                      allofthem.jpg

                                      And you have NOTHING in floating.

                                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                                      If you get confused: Listen to the Music Play
                                      Please don't Chat/PM me for help, unless mod related
                                      SG-4860 24.11 | Lab VMs 2.8, 24.11

                                      1 Reply Last reply Reply Quote 0
                                      • D
                                        Dark_Prophet
                                        last edited by

                                        correct

                                        😔

                                        johnpozJ 1 Reply Last reply Reply Quote 0
                                        • johnpozJ
                                          johnpoz LAYER 8 Global Moderator @Dark_Prophet
                                          last edited by

                                          @dark_prophet pleas post up your port forwarding tab..

                                          An intelligent man is sometimes forced to be drunk to spend time with his fools
                                          If you get confused: Listen to the Music Play
                                          Please don't Chat/PM me for help, unless mod related
                                          SG-4860 24.11 | Lab VMs 2.8, 24.11

                                          1 Reply Last reply Reply Quote 0
                                          • D
                                            Dark_Prophet
                                            last edited by Dark_Prophet

                                            ok give me one second

                                            Port.png

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.