Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    NAT only work in the PfSense BOX not other client in LAN [solved with 2.0]

    Scheduled Pinned Locked Moved NAT
    33 Posts 3 Posters 13.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      Metu69salemi
      last edited by

      Your screenshots shows different ports on wan rule and portforward.

      1 Reply Last reply Reply Quote 0
      • S
        syedadi
        last edited by

        Thanks,
        It like what i'm trying to do….

        my NAT setting is:

        Interface: WAN
        Protocol: TCP/UDP
        Destination: x.x.x.10
        Destination port range: 5555
        Redirect target IP: 192.168.0.250
        Redirect target port: HTTP

        1 Reply Last reply Reply Quote 0
        • M
          Metu69salemi
          last edited by

          And your screenshot of wan doesnt have that port. nearyst it has is 5331, which seems to be your management port for pfsense

          1 Reply Last reply Reply Quote 0
          • S
            syedadi
            last edited by

            How can i change the auto generated rules from NAT? The rules has been associated from NAT rules (Filter rule association).

            1 Reply Last reply Reply Quote 0
            • S
              syedadi
              last edited by

              @Metu69salemi:

              And your screenshot of wan doesnt have that port. nearyst it has is 5331, which seems to be your management port for pfsense

              I put some new rules in WAN Firewall but it sill not working

              Interface: WAN
              Protocol: TCP/UDP
              Source: any
              Destination: 192.168.0.250
              Destination port range: any

              1 Reply Last reply Reply Quote 0
              • M
                Metu69salemi
                last edited by

                Have you tried to boot?

                Just kidding. you're rules seems to be ok. My settings is almost the same and those work well.
                That public ip address, is it hardware ip-address or some sort of virtual ip, if virtual what kind of?

                1 Reply Last reply Reply Quote 0
                • S
                  syedadi
                  last edited by

                  External IP add is hardware base, not virtual. I assign it manually. Reboot? not yet….it seem the port forward only respond in the BOX itself, could not go outside because the SSH and web-configuration can be access with out any problems.  :'( What version do you used? i'm using

                  2.0-RC3 (i386)
                  built on Thu Aug 4 12:47:50 EDT 2011

                  letter i try to reboot after all client gone off-line.  :-[

                  1 Reply Last reply Reply Quote 0
                  • M
                    Metu69salemi
                    last edited by

                    No need to boot, it was a joke.

                    But the real question was, how many public ip-addresses you have and how many you try to use in this setup?

                    1 Reply Last reply Reply Quote 0
                    • S
                      syedadi
                      last edited by

                      In that BOX i only used one, but in the ADSL router, we have 5 IP….

                      i think the problems is in the box because i can doNAT using Untangle server to the same web server....i think it bug..what version do you used?

                      1 Reply Last reply Reply Quote 0
                      • M
                        Metu69salemi
                        last edited by

                        Is there any reason to have routing dsl box between internet and pfsense? if not try to setup that in bridging mode. that ease up a little troubleshooting.
                        atm i'm using really old version(built on Mon Jul 11 19:53:22 EDT 2011 ) waiting a good time to update. i had no problems with the older ones so i'm not waiting  problems when updating.

                        1 Reply Last reply Reply Quote 0
                        • S
                          syedadi
                          last edited by

                          no any routing there…just direct to the pf BOX...

                          the UTbox run fine for NAT, PFbox make me want to cry  :'(

                          1 Reply Last reply Reply Quote 0
                          • M
                            Metu69salemi
                            last edited by

                            check this: wan side of your pfsense, does it get public ip or what kind of it gets?

                            1 Reply Last reply Reply Quote 0
                            • S
                              syedadi
                              last edited by

                              Yes, it is public IP that i put it manually..i can ping the IP from outside.

                              1 Reply Last reply Reply Quote 0
                              • M
                                Metu69salemi
                                last edited by

                                Does your modem get public ip with dhcp or do you have static ip-addresses

                                1 Reply Last reply Reply Quote 0
                                • S
                                  syedadi
                                  last edited by

                                  my modem was setting to put the IP staticaly

                                  1 Reply Last reply Reply Quote 0
                                  • M
                                    Metu69salemi
                                    last edited by

                                    What kind of connection you have to internet pppoe? or something else?

                                    1 Reply Last reply Reply Quote 0
                                    • S
                                      syedadi
                                      last edited by

                                      Yes PPPOE and the connection made in the modem

                                      1 Reply Last reply Reply Quote 0
                                      • M
                                        Metu69salemi
                                        last edited by

                                        What if you change pppoe to the pfsense? and leave modem to be only mediaconverter(rj45 to rj11)

                                        1 Reply Last reply Reply Quote 0
                                        • S
                                          serangku
                                          last edited by

                                          thats double NAT
                                          you should make double port forward too …

                                          make pppoe dialed from pfsense, modem just on bridge
                                          so NAT only on pfsense box, thats easier to troubleshoot then

                                          1 Reply Last reply Reply Quote 0
                                          • S
                                            syedadi
                                            last edited by

                                            @serangku:

                                            thats double NAT
                                            you should make double port forward too …

                                            make pppoe dialed from pfsense, modem just on bridge
                                            so NAT only on pfsense box, thats easier to troubleshoot then

                                            What do you mean double NAT? i don't understand? how can it be so complicated in PF box, because when using Untangle BOX it doing just fine with a simple port forward…  :'(

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.