Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Ports will not open

    Scheduled Pinned Locked Moved General pfSense Questions
    27 Posts 4 Posters 2.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • x2rlX
      x2rl
      last edited by

      @stephenw10:

      There is >1GB that's been passed by that rule. If it's not hitting the server that a lot of unanswered requests!

      What does that mean sorry?

      @stephenw10:

      You have changed from port 60000-61000 to 40000-41000, that's intentional?

      In the first screenshot your client is setup for only one incoming port, 60000, not a range. Has that changed?

      Yea it was on 40000-41000 a few days ago so I changed it back to what it was before
      @stephenw10:

      Block private networks will only ever block traffic sourced from a private network. Even if your WAN address is a provate IP (which it isn't) it will only block requests from other hosts in the WAN subnet, which could be legitimate.

      Steve

      I have no idea what that means Steve sorry im very new to all this and think im in way way to deep trying to get all this working

      1 Reply Last reply Reply Quote 0
      • x2rlX
        x2rl
        last edited by

        @stephenw10:

        Right, so your fiirewall rules are passing port 40000. But incoming traffic is on port 60000.

        Steve

        I think the 60000 is just because the torrents was running on that port and a few are still trying to connect.

        1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          On the WAN firewall rules page the 'States' column shows how much traffic has been passed by states opened by that rule. Yours shows the ~1GB has been passed so traffic is hitting that rule and being passed as expected.

          It looks like you changed the port forward back to 40000-41000 but the client is still sending port 60000 or other clients out there are still trying to access it on that port at least.

          You can leave the block private networks rule it's not causing a problem.

          So what exactly is not working right now?

          Steve

          1 Reply Last reply Reply Quote 0
          • x2rlX
            x2rl
            last edited by

            @stephenw10:

            On the WAN firewall rules page the 'States' column shows how much traffic has been passed by states opened by that rule. Yours shows the ~1GB has been passed so traffic is hitting that rule and being passed as expected.

            It looks like you changed the port forward back to 40000-41000 but the client is still sending port 60000 or other clients out there are still trying to access it on that port at least.

            You can leave the block private networks rule it's not causing a problem.

            So what exactly is not working right now?

            Steve

            whats not working? loads lol

            https://forum.pfsense.org/index.php?topic=146285.msg803597#msg803597
            https://forum.pfsense.org/index.php?topic=147982.0

            and posts 40000-41000 will not open

            They open fine on 10.0.0.1 but everything on this 10.0.1.1 is not working and nothing but trouble

            1 Reply Last reply Reply Quote 0
            • stephenw10S
              stephenw10 Netgate Administrator
              last edited by

              Ok but what makes you think ports 40k-41k are not open?

              They look to be open to me.

              Steve

              1 Reply Last reply Reply Quote 0
              • x2rlX
                x2rl
                last edited by

                the test on deluge reports not open, never done that before.

                1 Reply Last reply Reply Quote 0
                • stephenw10S
                  stephenw10 Netgate Administrator
                  last edited by

                  For all 1000 ports? Can we see the result?

                  Steve

                  1 Reply Last reply Reply Quote 0
                  • x2rlX
                    x2rl
                    last edited by

                    @stephenw10:

                    For all 1000 ports? Can we see the result?

                    Steve

                    All I see is the yellow ! and not a green dot Steve
                    https://forum.pfsense.org/index.php?action=dlattach;topic=147958.0;attach=118139;image

                    1 Reply Last reply Reply Quote 0
                    • GrimsonG
                      Grimson Banned
                      last edited by

                      @Darkvodka34:

                      the test on deluge reports not open, never done that before.

                      That test is probably crap, trying to connect to those ports via the LAN interface. You need to test from the WAN. Read here: https://doc.pfsense.org/index.php/Port_Forward_Troubleshooting

                      1 Reply Last reply Reply Quote 0
                      • x2rlX
                        x2rl
                        last edited by

                        @Grimson:

                        @Darkvodka34:

                        the test on deluge reports not open, never done that before.

                        That test is probably crap, trying to connect to those ports via the LAN interface. You need to test from the WAN. Read here: https://doc.pfsense.org/index.php/Port_Forward_Troubleshooting

                        I have read that page and done it before which works fine and deluge says it works fine. only thing new is this new gateway (10.0.1.1)
                        If I add th server back on the default gateway 10.0.0.1 and just change the IP on the nat rule deluge passes it as worked and my speed goes up, I put it back on 10.0.1.1 and just the nat ip again fails and speed goes down.

                        1 Reply Last reply Reply Quote 0
                        • GrimsonG
                          Grimson Banned
                          last edited by

                          @Darkvodka34:

                          only thing new is this new gateway (10.0.1.1)

                          New gateway? You mean an additional LAN network? I guess it's time you post screenshots from your complete interface and firewall setup.

                          1 Reply Last reply Reply Quote 0
                          • stephenw10S
                            stephenw10 Netgate Administrator
                            last edited by

                            Why are you forwarding 1000 ports but only have the torrent client listening on 1?

                            And that screenshot still shows the wrong port for the current forwarded range. I assume you have updated that?

                            Steve

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.