Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Is this possible to forward or nat to an internal DMZ firewall

    Scheduled Pinned Locked Moved OpenVPN
    3 Posts 2 Posters 1.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H
      hans2k6
      last edited by

      Hi,

      I have the following network setup (see the file attached).

      Everything is working fine.
      Now I wanted to configure openVPN on the internal DMZ Firewall.
      Why on the internal Firewall?
      1. because I though it is ok because I want to connect the clients to the LAN
      2. because openVPN Service is not starting at the out site pfsense

      So I tried the following:
      I setup a exposed Host from the router to the outside pfsense and it's 10…. address.
      After that I setuped a Portwarding from the Router Lan on Port 1194 to the DMZ Adress of the inside .

      But it is not working.
      Where is the mistake. Hopefully you can help me.

      Thanks!

      example.jpg
      example.jpg_thumb

      1 Reply Last reply Reply Quote 0
      • J
        jeffbearer
        last edited by

        It should work as far as I think I understand your network.  You have not provided enough info to find the error. And I had to assume a lot to even attempt to understand the network topology.

        • Indicate the location of the client you are talking about.

        • Show the forwarding config

        • Show the logs of the failure

        • Show the vpn client and server configs

        • Indicate NAT configs throughout

        That would help a lot.

        1 Reply Last reply Reply Quote 0
        • H
          hans2k6
          last edited by

          Hi,

          I found the mistake.
          It was a firmwarebug in the router. The forwarding was not working.

          rgds,

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.