Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    possible problem or misconfiguration

    Scheduled Pinned Locked Moved General pfSense Questions
    11 Posts 3 Posters 419 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S
      stephenw10 Netgate Administrator
      last edited by

      If you mouse-over that it shows you the linked firewall rules created by that port forward.

      The two lower rules don't have that because you selected not to create a linked firewall rule when you created them.

      See: Filter Rule Association here: https://docs.netgate.com/pfsense/en/latest/nat/port-forwards.html

      johnpozJ markdudovM 2 Replies Last reply Reply Quote 1
      • johnpozJ
        johnpoz LAYER 8 Global Moderator @stephenw10
        last edited by

        @stephenw10 beat me to it ;)

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.8, 24.11

        1 Reply Last reply Reply Quote 0
        • markdudovM
          markdudov @stephenw10
          last edited by

          @stephenw10

          How come I chose not to create an associated firewall rule?
          As I only created one rule and duplicated it several times then corrected it?
          Is there anything that can be pressed to connect and if so where is it located?

          Also does it matter if they are related or not? Are there any advantages when they are connected or is it just a guideline?

          Sorry for the dumb questions just trying to understand exactly how it works and thank you for your time.

          johnpozJ 1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator @markdudov
            last edited by johnpoz

            @markdudov said in possible problem or misconfiguration:

            and duplicated it several times then corrected it?

            And there is your answer.. I don't even think it lets you copy a nat rule.. Maybe on the new 24.03? But to create linked rule, the nat rule would have to be created.

            It lets you create a new one based on an old one.. That would should create the new association, if you left that selected.. And changed the interface to wan 2.

            does here via test just did

            test.jpg

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            1 Reply Last reply Reply Quote 0
            • stephenw10S
              stephenw10 Netgate Administrator
              last edited by

              Hmm, I would expect that to work.

              However it's easy to fix. Edit the port forward and set the 'Filter Rule Association' to 'Create associated firewall rule' and resave.

              markdudovM 2 Replies Last reply Reply Quote 1
              • stephenw10S
                stephenw10 Netgate Administrator
                last edited by

                Mmm, there's a bug here. Shows something odd.

                1 Reply Last reply Reply Quote 0
                • markdudovM
                  markdudov @stephenw10
                  last edited by

                  @stephenw10

                  that's it

                  1 Reply Last reply Reply Quote 0
                  • markdudovM
                    markdudov @stephenw10
                    last edited by

                    @stephenw10

                    And what is the meaning of Filter rule association? What actually happens when a new Filter rule association is created?

                    1 Reply Last reply Reply Quote 0
                    • stephenw10S
                      stephenw10 Netgate Administrator
                      last edited by

                      It adds a rule to pass traffic to the forward. It's explained in the doc I linked above.

                      1 Reply Last reply Reply Quote 0
                      • stephenw10S
                        stephenw10 Netgate Administrator
                        last edited by

                        Opened bug report: https://redmine.pfsense.org/issues/15547

                        Appears to be mostly cosmetic though.

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.