Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    I open the ports 21 , 3389 and any other port but it show me that they are close why?

    Scheduled Pinned Locked Moved Firewalling
    40 Posts 5 Posters 4.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      nihad123 @viragomann
      last edited by

      @viragomann thank you very much for your ansewer.

      so on the rule in nat I set this:

      Interface: wan:
      protocole: tcp
      destination: wan
      destination port range: 3389
      redirect range ip: 10.0.0.10 (ip adresse of server that I want access to it from my home (windows server 2012 r2 that I already have access to it before setting pfsense)
      range targetport: 3389
      description: accès à distance pour mon serveur

      and I already uncheked “Block private networks” but It stills the same probleme the port is closed so what can I do?
      I have a public ip unique so what can I do?

      V 1 Reply Last reply Reply Quote 0
      • N
        nihad123 @NogBadTheBad
        last edited by

        @nogbadthebad I didn't understand your suggetion please Can You explain more, because my adresse wan is private so what canI do? when I create rule nat I put my adresse ip public but it stills he same probleme the port is closed so?

        NogBadTheBadN 1 Reply Last reply Reply Quote 0
        • NogBadTheBadN
          NogBadTheBad @nihad123
          last edited by NogBadTheBad

          @nihad123 said in I open the ports 21 , 3389 and any other port but it show me that they are close why?:

          @nogbadthebad I didn't understand your suggetion please Can You explain more, because my adresse wan is private so what canI do? when I create rule nat I put my adresse ip public but it stills he same probleme the port is closed so?

          Your WAN address isn't routable on the internet so what address will the guy working from home connect to, your WAN address wont be contactable from the Internet.

          If you go to http://www.whatsmyip.org I bet it doesn't come back with 192.168.1.44, meaning your pfSense router isn't directly connected to the Internet.

          When I VPN into my home network from the Internet I use the public IP address provided by my ISP.

          I'd suggest you read up on RFC1918.

          https://tools.ietf.org/html/rfc1918

          I'm guessing there is a WAN router further upstream from your pfSense router.

          Andy

          1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

          N 2 Replies Last reply Reply Quote 0
          • N
            nihad123 @NogBadTheBad
            last edited by

            @nogbadthebad yeees that what I see, the interface wan pfsense has ip private so how can I resolve this problem? should install openvpn on my pfsense ? or what?

            NogBadTheBadN 1 Reply Last reply Reply Quote 0
            • jahonixJ
              jahonix
              last edited by

              What's between "the internet" and your pfSense WAN? You never answered that but it's important.

              N 1 Reply Last reply Reply Quote 1
              • NogBadTheBadN
                NogBadTheBad @nihad123
                last edited by

                What's the device between the Internet and pfSense ?

                Ideally it would be best to turn it into a modem if you can or can you connect pfSense directly to the Internet.

                Andy

                1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                1 Reply Last reply Reply Quote 0
                • V
                  viragomann @nihad123
                  last edited by

                  @nihad123 said in I open the ports 21 , 3389 and any other port but it show me that they are close why?:

                  destination: wan

                  Has to be "WAN address"

                  @nihad123 said in I open the ports 21 , 3389 and any other port but it show me that they are close why?:

                  ip adresse of server that I want access to it from my home (windows server 2012 r2 that I already have access to it before setting pfsense

                  How did your set up look like before?
                  If you just have inserted pfSense between your ISP router and your LAN, you have also to reconfigure the router to forward incoming packets to pfSense now instead of the server directly, as I mentioned already above.
                  Maybe you want to forward all incoming traffic to pfSense by setting it as "exposed host" in the router, if all your services you want to reach from the Internet are behind pfSense.
                  If there is nothing else connected to the pfSense WAN network

                  N 2 Replies Last reply Reply Quote 0
                  • N
                    nihad123 @jahonix
                    last edited by

                    @jahonix modem fibre

                    NogBadTheBadN 1 Reply Last reply Reply Quote 0
                    • N
                      nihad123 @viragomann
                      last edited by

                      @viragomann how can I reconfigure the router to forward incoming packets to pfSense now instead of the server directly,

                      because before I reconfigure the router to forward incoming packet to the server windows 2012 by its ip adresse 192.168.1.10 and by the port 3389 but when I set up the pfsense , the ip adress of server 2012 become 10.0.0.10 and I change only the adresse of the server de 192.168.1.10 to 10.0.0.10 but it still the problem of cloesing, so what can do, I change the adress to 10.0.0.1 the adress lan of pfsense or what?

                      1 Reply Last reply Reply Quote 0
                      • NogBadTheBadN
                        NogBadTheBad @nihad123
                        last edited by

                        @nihad123 said in I open the ports 21 , 3389 and any other port but it show me that they are close why?:

                        @jahonix modem fibre

                        Are you sure its running in modem mode ?

                        What is the make and model ?

                        Andy

                        1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                        N 1 Reply Last reply Reply Quote 0
                        • N
                          nihad123 @NogBadTheBad
                          last edited by

                          @nogbadthebad said in I open the ports 21 , 3389 and any other port but it show me that they are close why?:

                          I’m guessing there is a WAN router further upstream from your pfSense router.

                          I have router-----pfsense----windows_servers2012

                          1 Reply Last reply Reply Quote 0
                          • N
                            nihad123 @NogBadTheBad
                            last edited by

                            @nogbadthebad yes pfsense en modem mode because all machine after pfsense have ip adresse from the adressage plage of dhcp that i define to lan pfsense, I want say that machine after pfsense has 10.0.0.15 10.0.018 ... and it connect to the internet

                            1 Reply Last reply Reply Quote 0
                            • V
                              viragomann
                              last edited by

                              You have to forward incoming access to pfSense WAN address (192.168.1.44) now, of course if the router isn't in modem / bridge mode.

                              If pfSense does all the filtering now, you can forward all incoming traffic to it. Some routers have a DMZ option for that, others call it "Exposed host".

                              N 1 Reply Last reply Reply Quote 0
                              • N
                                nihad123 @viragomann
                                last edited by

                                @viragomann I changed anything on my router so I think that it is inin modem mode , so I will forward incoming access to pfsense wand adress 192.168.1.44, and after that what I will do on nat and rules pfesense?

                                1 Reply Last reply Reply Quote 0
                                • V
                                  viragomann
                                  last edited by

                                  Yes. But I don't think your router is in modem mode.

                                  1 Reply Last reply Reply Quote 0
                                  • NogBadTheBadN
                                    NogBadTheBad
                                    last edited by

                                    What exactly is the make and model of the upstream device?

                                    What is the connection into it, ADSL, Ethernet, ... ?

                                    Do you have access to this device to change its config ?

                                    The issue here is the device between the Internet and your pfSense box.

                                    Andy

                                    1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                                    N 1 Reply Last reply Reply Quote 0
                                    • johnpozJ
                                      johnpoz LAYER 8 Global Moderator
                                      last edited by

                                      @nihad123 said in I open the ports 21 , 3389 and any other port but it show me that they are close why?:

                                      I think that it is inin modem mode , so I will forward incoming access to pfsense wand adress 192.168.1.44

                                      If your isp device was in "modem" mode then pfsense wan would be a public IP - not a rfc1918 address.

                                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                                      If you get confused: Listen to the Music Play
                                      Please don't Chat/PM me for help, unless mod related
                                      SG-4860 24.11 | Lab VMs 2.8, 24.11

                                      N 1 Reply Last reply Reply Quote 0
                                      • N
                                        nihad123 @NogBadTheBad
                                        last edited by

                                        @nogbadthebad modem fibre optique yes i have access o the modem and i can make any changes on yes I know, so what can I do? I Give it ip adresse public to wan of pfsense or what? and if I give the ip public to wan pfsense I don't know any adress gatway upstream should give to interface wan pfsense

                                        1 Reply Last reply Reply Quote 0
                                        • NogBadTheBadN
                                          NogBadTheBad
                                          last edited by

                                          Maybe google the modem make, model and pfSense and see if anyone has managed to get it working.

                                          You then need to set up pfSense to probally connect to the modem via PPPOE.

                                          People keep trying to help you here and your not answering the questions.

                                          Andy

                                          1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                                          N 1 Reply Last reply Reply Quote 0
                                          • N
                                            nihad123 @johnpoz
                                            last edited by

                                            @johnpoz and if I give the ip public to wan pfsense I don’t know any adress gatway upstream should give to interface wan pfsense, and how can I know if my divice between internet and pfsense is in modem mode

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.