• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Bringing out the big guns - PLEX, VPN and portforwarding

Firewalling
3
25
3.7k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • X
    Xerial
    last edited by Jan 29, 2017, 5:15 PM

    As much as I think that sounds like a great idea I am really not sure as to what to put where here. Could you please help me understand that?

    I yellowmarked the areas where I am not sure. I am guessing the interface should be OPT1 (my VPN client running with the public id). Also the address under translation should be QA (which is my test machine for this). But when it comes to source destination and pool options I'm not sure.

    ![2017-01-29 18-13-43.jpg](/public/imported_attachments/1/2017-01-29 18-13-43.jpg)
    ![2017-01-29 18-13-43.jpg_thumb](/public/imported_attachments/1/2017-01-29 18-13-43.jpg_thumb)

    1 Reply Last reply Reply Quote 0
    • W
      Wolf666
      last edited by Jan 29, 2017, 5:21 PM

      Interface: the one assigned to VPN
      Source: ip of media plex server

      Translation
      Address "network" and thick "static port"

      As a first step use the defaults and see the behavior.

      Modem Draytek Vigor 130
      pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
      Switch Cisco SG350-10
      AP Netgear R7000 (Stock FW)
      HTPC Intel NUC5i3RYH
      NAS Synology DS1515+
      NAS Synology DS213+

      1 Reply Last reply Reply Quote 0
      • X
        Xerial
        last edited by Jan 29, 2017, 5:43 PM Jan 29, 2017, 5:30 PM

        Something like this? I can't select network under Translation Address. At the moment it is not working.

        Also I should probably mention that you can't select a single client as source. Only an entire network. So if I input 10.20.30.40 (which is my PLEX client's ip) I get 10.20.30.0/24.

        1.jpg
        1.jpg_thumb

        1 Reply Last reply Reply Quote 0
        • W
          Wolf666
          last edited by Jan 29, 2017, 5:37 PM

          In source don't put any port…if Plex ask to go with 32400 the static port preserve natting the port.
          In the transaltion section, in address you should be able to select "network address".... do you have other options?

          Modem Draytek Vigor 130
          pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
          Switch Cisco SG350-10
          AP Netgear R7000 (Stock FW)
          HTPC Intel NUC5i3RYH
          NAS Synology DS1515+
          NAS Synology DS213+

          1 Reply Last reply Reply Quote 0
          • X
            Xerial
            last edited by Jan 29, 2017, 5:58 PM

            I can only choose from my host aliases and "other subnet".

            2.jpg
            2.jpg_thumb

            1 Reply Last reply Reply Quote 0
            • W
              Wolf666
              last edited by Jan 29, 2017, 7:01 PM

              Use exactly "interface address"

              Modem Draytek Vigor 130
              pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
              Switch Cisco SG350-10
              AP Netgear R7000 (Stock FW)
              HTPC Intel NUC5i3RYH
              NAS Synology DS1515+
              NAS Synology DS213+

              1 Reply Last reply Reply Quote 0
              • X
                Xerial
                last edited by Jan 29, 2017, 7:39 PM

                Still the same results.. Reposting my rules in the attached picture. Does it matter that I have rules to forward traffic coming in on 32400 via the WAN activated the same time as I have the corresponding rule but for traffic coming in from OPT1 (VPN)?

                3.jpg
                3.jpg_thumb

                1 Reply Last reply Reply Quote 0
                • W
                  Wolf666
                  last edited by Jan 29, 2017, 10:02 PM

                  Can you post the gareway screenshot and interface assignement…
                  Opt1 is the VPN gateway? Or the interface assigned to plex subnet?

                  Modem Draytek Vigor 130
                  pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
                  Switch Cisco SG350-10
                  AP Netgear R7000 (Stock FW)
                  HTPC Intel NUC5i3RYH
                  NAS Synology DS1515+
                  NAS Synology DS213+

                  1 Reply Last reply Reply Quote 0
                  • X
                    Xerial
                    last edited by Jan 30, 2017, 12:37 PM Jan 30, 2017, 12:05 PM

                    Here you go!

                    Opt1 is the vpn gateway yes.

                    4.jpg
                    4.jpg_thumb

                    1 Reply Last reply Reply Quote 0
                    • W
                      Wolf666
                      last edited by Jan 30, 2017, 2:23 PM

                      I don't have any other idea…sorry.

                      Modem Draytek Vigor 130
                      pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
                      Switch Cisco SG350-10
                      AP Netgear R7000 (Stock FW)
                      HTPC Intel NUC5i3RYH
                      NAS Synology DS1515+
                      NAS Synology DS213+

                      1 Reply Last reply Reply Quote 0
                      • X
                        Xerial
                        last edited by Jan 30, 2017, 4:28 PM

                        No problem you really did make an effort so thank you very much friend!

                        1 Reply Last reply Reply Quote 0
                        • X
                          Xerial
                          last edited by Feb 5, 2017, 6:30 PM

                          @Wolf666:

                          I don't have any other idea…sorry.

                          Hey Wolf I just wanted to tell you (and anyone else with this weird problem) that I solved it. After spending an hour or so googling yet another time I found a thread where a guy had issues not very different from mine. He received the advise to remove all rules under the OpenVPN tab under rules. After I did that it worked. The rule I had there was automatically created from the OpenVPN server wizard that I had run a while back. Really weird but it did the trick!

                          1 Reply Last reply Reply Quote 0
                          • W
                            Wolf666
                            last edited by Feb 5, 2017, 10:14 PM

                            Great! Thank you for feedback.

                            Modem Draytek Vigor 130
                            pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
                            Switch Cisco SG350-10
                            AP Netgear R7000 (Stock FW)
                            HTPC Intel NUC5i3RYH
                            NAS Synology DS1515+
                            NAS Synology DS213+

                            1 Reply Last reply Reply Quote 0
                            22 out of 25
                            • First post
                              22/25
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.