Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Internal to external filtering?

    Firewalling
    2
    3
    1.5k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      bubble1975
      last edited by

      Hi Y'all,

      We have a pfSense firewall set up (2.0-RC3), and have simple port forwarding on the WAN link to port forward to a LAN host.  It works great.  When hosts on the WAN (Internet) connect, they are port-forwarded correctly.

      However, hosts on the LAN (10.x.x.x) cannot hit WAN address and get port-forwarded back to the LAN correctly.  It appears those ports are filtered when coming from the LAN.

      Are there any ideas that jump out?  I've allowed RFC 1918 traffic to be allowed.  I can provide any other info if it would help…?

      Many thanks,
      erich

      1 Reply Last reply Reply Quote 0
      • P
        podilarius
        last edited by

        This is called NAT reflection and is turned off by default. You can enable that is System -> Advanced -> Firewall/NAT near the bottom of the page.

        Happy reflecting, but I would use split horizon (brain) DNS. Ends up being much faster.

        1 Reply Last reply Reply Quote 0
        • B
          bubble1975
          last edited by

          Gravy!  Works like a charm, thanks for the terminology lesson.  ;)

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.