Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Host header forwarding

    Scheduled Pinned Locked Moved Firewalling
    32 Posts 3 Posters 15.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • marcellocM
      marcelloc
      last edited by

      @baron164:

      So after all this I re-added the Port 80 Nat rule that forwards 80 back into the pfsense box and everything started working properly.

      Sorry but this is not an option, I think you are messing up your firewall config with a nat for the same port you are listening on.

      Remove the nat and be sure you have created a rule on wan to permit connections to port 80. Simple as that.

      I've checked package installation and widget is there.
      fetch it to your pfsense
      on console do:

      cd /usr/local/www/widgets/widgets/
      fetch http://www.pfsense.com/packages/config/varnish64/varnish.widget.php
      
      

      Treinamentos de Elite: http://sys-squad.com

      Help a community developer! ;D

      1 Reply Last reply Reply Quote 0
      • B
        baron164
        last edited by

        Ok I removed the NAT and kept the rule but I'm still getting 503 errors.

        1 Reply Last reply Reply Quote 0
        • marcellocM
          marcelloc
          last edited by

          ok, good news.

          the 503 erros means that varnish can't check server helth status.

          you can change the probe url from "/" to a full url that you know server responds ok.

          fix the widget file and you will see the backend status.

          You are almost there.  :)

          Treinamentos de Elite: http://sys-squad.com

          Help a community developer! ;D

          1 Reply Last reply Reply Quote 0
          • B
            baron164
            last edited by

            The 503 error is intermittent though. It will work fine for a minute and then I get the error. Then 5 minutes later it breaks again.

            1 Reply Last reply Reply Quote 0
            • B
              baron164
              last edited by

              I installed the Widget and reworked the Probe location but I still have one site that goes green and then red again and kind of bounces back and forth.

              1 Reply Last reply Reply Quote 0
              • marcellocM
                marcelloc
                last edited by

                Varnish is a very stable solution, this intermittent error is all related to backend checks.

                Check again its configuration and url used for health check.

                Treinamentos de Elite: http://sys-squad.com

                Help a community developer! ;D

                1 Reply Last reply Reply Quote 0
                • B
                  baron164
                  last edited by

                  Ok, everything seems to be running well now, only problem I'm having now is that authentication through this seems to be kind of touch and go. Outlook Web Access doesn't want to let me login. Any idea's what that's all about?

                  1 Reply Last reply Reply Quote 0
                  • marcellocM
                    marcelloc
                    last edited by

                    Well,

                    Owa is much better via https, nat 443 to owa. You do not want your domains passwords exposed.

                    Treinamentos de Elite: http://sys-squad.com

                    Help a community developer! ;D

                    1 Reply Last reply Reply Quote 0
                    • B
                      baron164
                      last edited by

                      I would but I need 443 for a different service.

                      1 Reply Last reply Reply Quote 0
                      • marcellocM
                        marcelloc
                        last edited by

                        I have no clue on owa with http, I have it working with https.

                        No sites I've published behind varnish had auth issues.  :(

                        Treinamentos de Elite: http://sys-squad.com

                        Help a community developer! ;D

                        1 Reply Last reply Reply Quote 0
                        • M
                          Metu69salemi
                          last edited by

                          one of our customer used echange 2003 server with http and then it was ran by cookies, i don't know exactly how owa does work.

                          1 Reply Last reply Reply Quote 0
                          • B
                            baron164
                            last edited by

                            Ok, thanks for you help, I was able to leave owa at https and change the port on the other https service.

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.