Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Re: New to pfsense need help on port forwarding

    Scheduled Pinned Locked Moved NAT
    20 Posts 4 Posters 8.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      nocer
      last edited by

      Hi

      @Tib, you at least provide useful info for us to understatnd really what is happening: what is your build running, your diagram, nat/rules(screen shots hopefully), and syslog, pflog those while issues happening, and entire config.xml sometime…all those can help solve your situation. In the mean time, searching related threads in the forum, or Googling around will definitely help you too.

      Language shouldn't be a matter, somebody will definitely help. I'm no native English speaker either, and there are several "International" forums here. Should you look thru it.

      cheers,

      1 Reply Last reply Reply Quote 0
      • T
        Tib
        last edited by

        Well!
        I have 2 interface
        WAN – PPPOE dynamic
        LAN  -- single lan network
        My problem is in NAT (port forwarding), that If my ISP change my ip periodically, then the forward is doesn't work until i'll reboot pfsense or change some rule!
        Rules to be directly proportional to IP change..

        help!!!

        1 Reply Last reply Reply Quote 0
        • ?
          Guest
          last edited by

          ip change shouldent interfeer with rules working or not unless you are using your external ip address in some rules

          like said before..post screenshots of rules

          /F

          1 Reply Last reply Reply Quote 0
          • N
            nocer
            last edited by

            Hi,

            Since you haven't give us anything informational so this is only my guess, suppose you need some trigger to refresh your rules or even reboot the box, try enable periodic reset for pppoe, which resides in interface>wan>pppoe configuration, in 1.3-AA(now 2.0).

            cheers,

            1 Reply Last reply Reply Quote 0
            • T
              Tib
              last edited by

              Hi there!

              Exsample:
              I made a Firewall –> Rules registration..
              "TCP * * 192.168.1.56 3389 (MS RDP) * "
              It's work !
              But, if my isp change my wan ip(pppoe) becoulse dynamic (changed every day). Then the rules is not work, till i don't reset the system or only change in some rules.
              If i on the interfaces panel clink about disconnect or reconnect than also will became wrong!!!
              What is the expedient.  With periodic reset is doesn't work........

              hmmm I don't know

              1 Reply Last reply Reply Quote 0
              • jahonixJ
                jahonix
                last edited by

                Did you -by any chance- enter a name instead of an IP somewhere (alias creation, rule, NAT)?

                You can do that, but the name resolution to an IP only gets updated once on startup or reset.
                That sounds like what you're experiencing.

                1 Reply Last reply Reply Quote 0
                • N
                  nocer
                  last edited by

                  Hello,

                  Why don't you just paste the screen shots of your nat/rules? That makes stories very much straight and easy.

                  cheers,

                  1 Reply Last reply Reply Quote 0
                  • T
                    Tib
                    last edited by

                    Otherwise the nat is work, if WAN ip is doesn't changed

                    nat.JPG
                    nat.JPG_thumb

                    1 Reply Last reply Reply Quote 0
                    • jahonixJ
                      jahonix
                      last edited by

                      The field for "External address" should be set to 'interface IP' on all rules. Most of your entries don't show anything (colum: NAT IP:  (ext.: 66.77.88.99) )
                      And delete the last rule, it is double.

                      1 Reply Last reply Reply Quote 0
                      • N
                        nocer
                        last edited by

                        Hi.

                        Oh well, indeed. The rules for port forwarding, you must need to set EXT IP for your WAN interface as jahonix pointed out.

                        cheers,

                        1 Reply Last reply Reply Quote 0
                        • T
                          Tib
                          last edited by

                          Hi

                          But, i don't set external ip, becoulse that is always changing by ISP.

                          1 Reply Last reply Reply Quote 0
                          • jahonixJ
                            jahonix
                            last edited by

                            @Tib:

                            But, i don't set external ip, becoulse that is always changing by ISP.

                            Isn't THAT exactly your problem?  ???
                            When editing the rule you have to set the field to the drop down entry "External address". Then the IP change is handled for you. Automagically…

                            1 Reply Last reply Reply Quote 0
                            • T
                              Tib
                              last edited by

                              My problem is

                              If  the PPPoE connction is renew externalWAN ip of  my system, then the ALL forwarding rules is doesn't work.

                              I sent the screenshot, and what to do?

                              nat2.JPG
                              nat2.JPG_thumb

                              1 Reply Last reply Reply Quote 0
                              • jahonixJ
                                jahonix
                                last edited by

                                As you see in the first picture you posted, in the NAT IP column there were no entries for (ext.: )
                                or wrong entries (ext.: any)

                                Set them to 'interface address' and it should work for you as well.
                                In the overview page the brackets must be automatically filled with your currently assigned IP then.

                                1 Reply Last reply Reply Quote 0
                                • T
                                  Tib
                                  last edited by

                                  The wan ip is changing automaticaly, it's ok, but doesn't in the rules, although it has to….

                                  thanks for help

                                  1 Reply Last reply Reply Quote 0
                                  • jahonixJ
                                    jahonix
                                    last edited by

                                    Which version of pfSense are you using?
                                    Embedded or full install?

                                    1 Reply Last reply Reply Quote 0
                                    • T
                                      Tib
                                      last edited by

                                      I use pfSense-1.2-BETA-1 with full install, not embedded

                                      1 Reply Last reply Reply Quote 0
                                      • N
                                        nocer
                                        last edited by

                                        There's much more decent version(s) available.

                                        1 Reply Last reply Reply Quote 0
                                        • jahonixJ
                                          jahonix
                                          last edited by

                                          I seem to remember that there were PPPoE problems in an early 1.2 version.
                                          Update to 1.2-release or one of the 1.2.1RCs and see if your problem goes away is my best bet.

                                          1 Reply Last reply Reply Quote 0
                                          • First post
                                            Last post
                                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.