Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pleass HELP me! I tryed everything!!

    Scheduled Pinned Locked Moved NAT
    7 Posts 3 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      thenewcommer
      last edited by

      Hi guys! Could you help me a bit I am strugling with port fowarding for two days now and I cant configer it properly. I have searched the forum but didn't find anything usefull.

      I have tryed everything on this link https://doc.pfsense.org/index.php/Port_Forward_Troubleshooting

      When I was testing with packet capture - i could see tha path from wan to lan to server only when using some sort of online port tester (http://ping.eu/port-chk/)
                                                            - when i access the ip from 3G I didn't get a response.

      My network looks something like that:

      Modem -> PfSense -> Tp-link router(only doing wifi stuff) -> switch -> hosts

      My nat configuration:
      source: left default (any)
      destination: wan address
      port: 6666
      redirect ip: 192.168.x.x
      port: 8888

      I didn't add any rule to the firewall because it was added automaticly.

      Pleas help me I'm really hopeless.(used to do portforwarding on tplink easily…)

      1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator
        last edited by

        Port forwarding on pfsense is no different than on your typical soho, if anything I would argue that its actually easier!!!

        You literally have to do like 3 clicks.. port, ip and port..  How is that any different than any other soho router???

        You said you tried everying on that troubleshooting doc.. If you did then you would know what you did wrong or what is not working.

        You say your port shows up when you check with an online port checker.  But doesn't work when you use your 3G device..  What exactly are you trying to access 6666 and 8888 are not standard ports for any sort of application that I am aware of.

        Only doing wifi stuff, so you have it in AP mode, how exactly do you have it setup?

        In the troubleshooting doc it tells you to sniff.  So you see the packets hit your pfsense when when you use your 3g device?  If so then sniff on interface your sending it on to the host, this 192.168.x.x IP?  Which why are you trying to hide rfc1918 space?

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.8, 24.11

        1 Reply Last reply Reply Quote 0
        • T
          thenewcommer
          last edited by

          for the outside port I have choosen 6666 randomly and 8888 is used for sonarr(to access web GUI).

          Thats the problem when I try over 3G I don't see any traffic.

          My conf for router:

          no dchp server, only wirelless. (what else do you need?)

          1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator
            last edited by

            Well so you sniff on your pfsense wan when you try to hit 6666 on your public IP from your phone on 3g.. And you see no traffic.. Well how is that have anything to do with pfsense??  Pfsense can not forward what it does not get..

            Maybe your phone company blocks this port, maybe they have you going through a proxy that block it.

            So simple test if you sniff on your pfsense wan, and try and access it you will see the traffic - if not then you problem is elsewhere and there is NOTHING you can do on pfsense to fix that something.. Pfsense can not do anything with traffic that doesn't get to it.

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            1 Reply Last reply Reply Quote 0
            • T
              thenewcommer
              last edited by

              ok. I tryed now with an vpn connection. And I can see that something is happening on wan connection but nothing is happening on lan.

              1 Reply Last reply Reply Quote 0
              • M
                moikerz
                last edited by

                @thenewcommer:

                My network looks something like that:

                Modem -> PfSense -> Tp-link router(only doing wifi stuff) -> switch -> hosts

                Please clarify how the TPlink is connected to pfSense, and how the TPlink is connected to the switch.

                Your diagram indicates router-behind-router, but your wording indicates otherwise. If pfSense is connected to the TPlink's WAN port, and the switch is connected to the TPlink's LAN port, then you have a 2nd firewall to dork around with.

                1 Reply Last reply Reply Quote 0
                • johnpozJ
                  johnpoz LAYER 8 Global Moderator
                  last edited by

                  ^ exactly!!!

                  So now do the same test you did where you see the traffic on your wan.. Do that same sniff on you lan where pfsense is suppose to be sending the traffic..  Does it send it?  Does pfsense even have an arp entry for this IP your suppose to be sending too.  If your behind a double nat - then no you will not see this arp entry..

                  Diagnostics, Arp Table.

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 24.11 | Lab VMs 2.8, 24.11

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.