Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    I open the ports 21 , 3389 and any other port but it show me that they are close why?

    Scheduled Pinned Locked Moved Firewalling
    40 Posts 5 Posters 4.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • johnpozJ
      johnpoz LAYER 8 Global Moderator
      last edited by

      if your isp device allows for dmz host, then sure you can put pfsense wan IP as that.. Then any traffic that hits your public IP should be sent to pfsense - then your pfsense forwards would work.

      But I would HIGHLY suggest against opening up rdp to the public internet. If employees need to get into the work network while they are home on the road, then they should VPN in. Then they can access what they need securely.

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.8, 24.11

      N 1 Reply Last reply Reply Quote 0
      • NogBadTheBadN
        NogBadTheBad @nihad123
        last edited by NogBadTheBad

        @nihad123 said in I open the ports 21 , 3389 and any other port but it show me that they are close why?:

        @nogbadthebad the modem connect via pppoe and have an address ip public unique and I find "dmz host " so what's ip that i will fill in? I fill the ip adress of pfsense wan, 192.168.1.44 or what exacteley?

        Try setting the device into modem mode and configuring the pfSense WAN interface like this:-

        0_1530114554409_Untitled.jpeg

        0_1530114565591_Untitled2.jpg

        Don't enable IPv6

        Andy

        1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

        N 1 Reply Last reply Reply Quote 0
        • N
          nihad123
          last edited by

          @viragomann I have the dmz hoste so what I will fill in? the ip adress of pfsense wan? 192.168.1.44?

          the model of my dvice is F660

          1 Reply Last reply Reply Quote 0
          • V
            viragomann
            last edited by

            Yes, the address of pfSense WAN interface. Already mentioned that here.

            1 Reply Last reply Reply Quote 0
            • N
              nihad123 @NogBadTheBad
              last edited by

              @nogbadthebad I make the same password that I put when I want login to my PPPoE? or I choose an password?

              1 Reply Last reply Reply Quote 0
              • NogBadTheBadN
                NogBadTheBad
                last edited by

                @nihad123 said in I open the ports 21 , 3389 and any other port but it show me that they are close why?:

                F660

                My screenshots are for if you've set the router device to modem mode with PPOE.

                Same user ID & password as on the F660.

                Andy

                1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                1 Reply Last reply Reply Quote 0
                • N
                  nihad123 @johnpoz
                  last edited by

                  @johnpoz ok I allows for dmz host 192.168.1.44 and on my pfsense what's rules and nat that I will allows?

                  1 Reply Last reply Reply Quote 0
                  • NogBadTheBadN
                    NogBadTheBad
                    last edited by

                    STOP

                    Are you going to use a DMZ or put your F660 into modem mode?

                    Andy

                    1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                    N 1 Reply Last reply Reply Quote 0
                    • N
                      nihad123 @NogBadTheBad
                      last edited by

                      @nogbadthebad

                      firstly I will try your screenshot if I don't have access I will try mdz host

                      NogBadTheBadN 1 Reply Last reply Reply Quote 0
                      • NogBadTheBadN
                        NogBadTheBad @nihad123
                        last edited by NogBadTheBad

                        @nihad123

                        Putting the other device into modem mode will mean your pfSense will get an internet routable ip address on its WAN interface which them makes things much easier to deal with :)

                        Andy

                        1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                        N 2 Replies Last reply Reply Quote 0
                        • N
                          nihad123 @NogBadTheBad
                          last edited by

                          @nogbadthebad yes that's what I want, my divice model is F660 and I have cnx fibre so how can I putting my divice en mode modem? to facilite to pfsense to get a internet routable ip on wan interface?

                          1 Reply Last reply Reply Quote 0
                          • NogBadTheBadN
                            NogBadTheBad
                            last edited by

                            You'll need to google it or maybe talk to the ISP.

                            I don't gave the same device.

                            Andy

                            1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                            N 1 Reply Last reply Reply Quote 0
                            • N
                              nihad123 @NogBadTheBad
                              last edited by

                              @nogbadthebad so I goole how can I put my F660 on modem mode that's right?

                              1 Reply Last reply Reply Quote 0
                              • N
                                nihad123 @NogBadTheBad
                                last edited by

                                @nogbadthebad so I change my idea I what test firstly the dmz host, I add a dmz host on f660 and what I will do on the pfsense? and what I will do other?

                                1 Reply Last reply Reply Quote 0
                                • N
                                  nihad123 @viragomann
                                  last edited by

                                  @viragomann so I change my idea I want test firstly the dmz host, I add a dmz host on f660 and what I will do on the pfsense? and what I will do other?

                                  1 Reply Last reply Reply Quote 0
                                  • johnpozJ
                                    johnpoz LAYER 8 Global Moderator
                                    last edited by

                                    https://www.netgate.com/docs/pfsense/nat/forwarding-ports-with-pfsense.html

                                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                                    If you get confused: Listen to the Music Play
                                    Please don't Chat/PM me for help, unless mod related
                                    SG-4860 24.11 | Lab VMs 2.8, 24.11

                                    1 Reply Last reply Reply Quote 0
                                    • First post
                                      Last post
                                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.