• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Port Forwarding Bug?

Scheduled Pinned Locked Moved NAT
5 Posts 2 Posters 1.3k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • S
    Syntax42
    last edited by Dec 5, 2013, 6:21 PM

    Port forwarding does not seem to take protocol into account when checking for port conflicts, at least in my situation.  If someone can replicate this, maybe it can be reported as a bug.

    I have an IP alias which translates to an internal server.  I want my internal server to respond to ICMP requests from the internet and I want it to receive traffic on one TCP/UDP port.  If I add the ICMP NAT rule first, I get an error saying "The destination port range overlaps with an existing entry," when I attempt to add the TCP/UDP rule.  If I add the ICMP rule after I have added the TCP/UDP rule, it works as expected.

    If you need more information to replicate the scenario, please let me know.

    I am running 2.1-Release, 64-bit.

    1 Reply Last reply Reply Quote 0
    • J
      johnpoz LAYER 8 Global Moderator
      last edited by Dec 5, 2013, 7:42 PM Dec 5, 2013, 7:39 PM

      So you forward icmp to say 192.168.1.14, then when you go to forward a tcp port to the same box 192.168.1.14 you get an error?

      I have not seen this, and just did it and got no errors

      2.1-RELEASE (i386)
      built on Wed Sep 11 18:16:50 EDT 2013
      FreeBSD 8.3-RELEASE-p11

      I can create an alias first for the host, and try again - but don't see how that would be an issue?

      Did I not understand what you were doing?  Was your alias for the port you were forwarding for the host you were forwarding too?

      nat1.png
      nat1.png_thumb
      nat2.png
      nat2.png_thumb
      noissue.png
      noissue.png_thumb

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.7.2, 24.11

      1 Reply Last reply Reply Quote 0
      • S
        Syntax42
        last edited by Dec 5, 2013, 8:03 PM Dec 5, 2013, 8:01 PM

        Sorry, I meant I'm using a virtual IP for the external IP.  Alias was the wrong term.  I have multiple static IPs available.  No other rules are affecting my virtual IP or the specific port I am trying to forward, even on other external virtual IPs.

        @johnpoz:

        So you forward icmp to say 192.168.1.14, then when you go to forward a tcp port to the same box 192.168.1.14 you get an error?

        That's exactly what I'm saying.

        1 Reply Last reply Reply Quote 0
        • J
          johnpoz LAYER 8 Global Moderator
          last edited by Dec 5, 2013, 8:09 PM

          I can try and duplicate this - what type of virtual IP did you setup?
          IP Alias, CARP, Proxy ARP, Other

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.7.2, 24.11

          1 Reply Last reply Reply Quote 0
          • S
            Syntax42
            last edited by Dec 6, 2013, 1:50 PM

            I used an IP Alias.  I think that might be where the confusion came from in the terminology.

            1 Reply Last reply Reply Quote 0
            5 out of 5
            • First post
              5/5
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
              This community forum collects and processes your personal information.
              consent.not_received