Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PortForward Not woking no matter what i do

    Scheduled Pinned Locked Moved Firewalling
    59 Posts 4 Posters 3.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • johnpozJ
      johnpoz LAYER 8 Global Moderator @Dark_Prophet
      last edited by johnpoz

      @dark_prophet

      do a reload

      reload.jpg

      Did you copy and paste any rules - there was some issue going around where rules that were copied got the same ID..

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.8, 24.11

      1 Reply Last reply Reply Quote 0
      • D
        Dark_Prophet
        last edited by

        ok i did filter reload now

        WAN2.png WAN.png Main2.png Main.png LAN.png LAN 2.png Filter Reload.png

        johnpozJ 1 Reply Last reply Reply Quote 0
        • D
          Dark_Prophet
          last edited by

          i deleted every rules and started clean again

          1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator @Dark_Prophet
            last edited by

            @dark_prophet that rule on your main_vlan with destination 2302 is pointless.

            And you send traffic to that port from can you see me, and the counter never goes up.. But you say you see it on a wan sniff to that port..

            Can you post your port forwards, do you have something that would trigger on that port other than matching up with this firewall is what I am looking for.

            You let your port forward create the firewall rule..

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            1 Reply Last reply Reply Quote 0
            • D
              Dark_Prophet
              last edited by Dark_Prophet

              yes on WAN interface sniff shows this
              Wan Sniff.png

              i have created some firewall rules and some were created by windows firewall when i uninstall my antivirus

              Firewwall2.png Firewall.png

              johnpozJ 1 Reply Last reply Reply Quote 0
              • D
                Dark_Prophet
                last edited by

                do you of any app i can download that can listen on a specific port and try it out just to see
                cause is just crazy that Plex works with no problem . seems like the problem here is that my PC and windows firewall are not listening on that port at all?

                1 Reply Last reply Reply Quote 0
                • johnpozJ
                  johnpoz LAYER 8 Global Moderator @Dark_Prophet
                  last edited by johnpoz

                  @dark_prophet the firewall rules on the destination have nothing to do with seeing if pfsense sends the traffic on.

                  But if you send traffic to that port, and the firewall rule to allow it never goes up from 0/0 then your port forward is not triggering.. For that firewall rule to allow the traffic.

                  So you maybe have a port forward that includes that port that sends it to a different firewall rule?

                  PC and windows firewall are not listening on that port at all?

                  Has zero to do with the destination device listening or having it firewalled.. If your port forward triggers and pfsense sends the traffic on - has nothing to do with if your device actually listening on that port..

                  You would see the traffic get sent on when you sniff on the main_vlan interface and send a test from outside.. But clearly something is not working for pfsense to send it on, because the firewall rule that allows the traffic from the port forward is never being triggered.. Its staying at 0/0

                  Please post up all your port forwards, like this..

                  allofthem.jpg

                  And you have NOTHING in floating.

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 24.11 | Lab VMs 2.8, 24.11

                  1 Reply Last reply Reply Quote 0
                  • D
                    Dark_Prophet
                    last edited by

                    correct

                    😔

                    johnpozJ 1 Reply Last reply Reply Quote 0
                    • johnpozJ
                      johnpoz LAYER 8 Global Moderator @Dark_Prophet
                      last edited by

                      @dark_prophet pleas post up your port forwarding tab..

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 24.11 | Lab VMs 2.8, 24.11

                      1 Reply Last reply Reply Quote 0
                      • D
                        Dark_Prophet
                        last edited by Dark_Prophet

                        ok give me one second

                        Port.png

                        1 Reply Last reply Reply Quote 0
                        • D
                          Dark_Prophet
                          last edited by Dark_Prophet

                          ok not sure what the hell i did deleted everything im getting some stuff back on MAIN_VLAN

                          YES YES showing 2/645 now

                          still showing is close but i guess thats a start lol

                          problem is is only showing on WAN nothing on LAN and MAIN_VLAN STILL 0/0 ON them 2

                          johnpozJ 2 Replies Last reply Reply Quote 0
                          • johnpozJ
                            johnpoz LAYER 8 Global Moderator @Dark_Prophet
                            last edited by

                            @dark_prophet these port forwards are not linked to firewall rules

                            notlinked.jpg

                            Did you redo them and now they show the linked to firewall rule?

                            if you show pfsense sending the traffic to the destination IP when you sniff on the main_vlan interface and send test traffic - then the issue is with the destination.

                            An intelligent man is sometimes forced to be drunk to spend time with his fools
                            If you get confused: Listen to the Music Play
                            Please don't Chat/PM me for help, unless mod related
                            SG-4860 24.11 | Lab VMs 2.8, 24.11

                            1 Reply Last reply Reply Quote 0
                            • johnpozJ
                              johnpoz LAYER 8 Global Moderator @Dark_Prophet
                              last edited by

                              @dark_prophet said in PortForward Not woking no matter what i do:

                              nothing on LAN

                              Your never going to see anything on lan if your sending to an IP on main_vlan

                              An intelligent man is sometimes forced to be drunk to spend time with his fools
                              If you get confused: Listen to the Music Play
                              Please don't Chat/PM me for help, unless mod related
                              SG-4860 24.11 | Lab VMs 2.8, 24.11

                              1 Reply Last reply Reply Quote 0
                              • D
                                Dark_Prophet
                                last edited by

                                i have not touched them not even sure what they do

                                johnpozJ 1 Reply Last reply Reply Quote 0
                                • johnpozJ
                                  johnpoz LAYER 8 Global Moderator @Dark_Prophet
                                  last edited by

                                  @dark_prophet said in PortForward Not woking no matter what i do:

                                  ot even sure what they do

                                  touched what?? When you create a port forward it will auto create the firewall rule to allow the traffic. Unless you tell it not too. Or you delete the firewall rule.

                                  Those port forwards are not linked to any firewall rule.

                                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                                  If you get confused: Listen to the Music Play
                                  Please don't Chat/PM me for help, unless mod related
                                  SG-4860 24.11 | Lab VMs 2.8, 24.11

                                  1 Reply Last reply Reply Quote 0
                                  • D
                                    Dark_Prophet
                                    last edited by

                                    How do i link them up ?

                                    johnpozJ 1 Reply Last reply Reply Quote 0
                                    • johnpozJ
                                      johnpoz LAYER 8 Global Moderator @Dark_Prophet
                                      last edited by

                                      @dark_prophet delete it.. And create it again... And when you create it at the bottom you will see this

                                      add.jpg

                                      This is the default.

                                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                                      If you get confused: Listen to the Music Play
                                      Please don't Chat/PM me for help, unless mod related
                                      SG-4860 24.11 | Lab VMs 2.8, 24.11

                                      1 Reply Last reply Reply Quote 0
                                      • D
                                        Dark_Prophet
                                        last edited by

                                        I dont have that one

                                        One have
                                        None
                                        Pass
                                        Rule NAT Frame
                                        Create new associated filter rule

                                        johnpozJ 1 Reply Last reply Reply Quote 0
                                        • johnpozJ
                                          johnpoz LAYER 8 Global Moderator @Dark_Prophet
                                          last edited by

                                          @dark_prophet well yeah if your looking at an existing rule.. Looks like your looking at one of your frame port forwards..

                                          An intelligent man is sometimes forced to be drunk to spend time with his fools
                                          If you get confused: Listen to the Music Play
                                          Please don't Chat/PM me for help, unless mod related
                                          SG-4860 24.11 | Lab VMs 2.8, 24.11

                                          1 Reply Last reply Reply Quote 0
                                          • D
                                            Dark_Prophet
                                            last edited by

                                            i can see now using wire shark UPD cause i guess it only affects TCP sniff.png

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.