Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    NAT not opening on custom Ports

    Scheduled Pinned Locked Moved NAT
    54 Posts 5 Posters 9.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • johnpozJ
      johnpoz LAYER 8 Global Moderator
      last edited by johnpoz

      Does the device have a gateway.. It can not talk outside of local network without a gateway.

      Do a port test from the pfsense interface in that network.

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.8, 24.11

      1 Reply Last reply Reply Quote 0
      • R
        RyanH
        last edited by

        PFSense says connection refused. i've tested the source from WAN, Network all options, all I get is refused.

        The device has a gateway of 192.168.1.1 (PFSENSE)

        Outside of that there is no other device. it basically got Openreach Modem -> NIC1 (PFSense WAN) then it goes NIC2 (LAN DHCP) -> 8 Port Unmanaged Switch

        1 Reply Last reply Reply Quote 0
        • johnpozJ
          johnpoz LAYER 8 Global Moderator
          last edited by johnpoz

          Posted in wrong thread

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          R 1 Reply Last reply Reply Quote 0
          • R
            RyanH @johnpoz
            last edited by

            @johnpoz said in NAT not opening on custom Ports:

            see my edit... Put a box on your wan network of pfsense and do your testing...

            As you can see from that edit - that site is not very reliable for what your speed is or should be..

            Here just started download of file from one of my servers in the NL... I have a 500mbps connection seeing 53MBps down... My connection is fine - but that scott iperf showing junk..

            0_1544626409419_speed.png

            You sure this was for me? I don't think i've mentioned anything about scottlinux?

            1 Reply Last reply Reply Quote 0
            • DerelictD
              Derelict LAYER 8 Netgate
              last edited by

              Using Diagnostics > Test Port sourcing from the WAN interface might not work. I know there are issues testing pings to the inside like that apparently due to all the route-to and reply-to done on the WAN. Test it sourcing from LAN. Or any.

              Chattanooga, Tennessee, USA
              A comprehensive network diagram is worth 10,000 words and 15 conference calls.
              DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
              Do Not Chat For Help! NO_WAN_EGRESS(TM)

              1 Reply Last reply Reply Quote 0
              • johnpozJ
                johnpoz LAYER 8 Global Moderator
                last edited by

                My bad wrong thread - how and the hell did that happen..

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.8, 24.11

                R 1 Reply Last reply Reply Quote 0
                • DerelictD
                  Derelict LAYER 8 Netgate
                  last edited by

                  You can move around and the reply at the bottom is sticky to the thread you started it on.

                  Chattanooga, Tennessee, USA
                  A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                  DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                  Do Not Chat For Help! NO_WAN_EGRESS(TM)

                  1 Reply Last reply Reply Quote 0
                  • R
                    RyanH @johnpoz
                    last edited by

                    @johnpoz said in NAT not opening on custom Ports:

                    My bad wrong thread - how and the hell did that happen..

                    sok bud. So going back to the original message... thoughts?

                    1 Reply Last reply Reply Quote 0
                    • R
                      RyanH
                      last edited by

                      Interesting little find. @Derelict @johnpoz

                      0_1544690970867_6a484596-51d0-4bbf-80be-6c46ee034a55-image.png

                      Despite the fact we were using it last night on a local network (Me and 1 other computer were sat using the ARK server it was working fine.

                      1 Reply Last reply Reply Quote 0
                      • johnpozJ
                        johnpoz LAYER 8 Global Moderator
                        last edited by

                        Not sure what is interesting about the box not working... We knew that days ago when you saw pfsense sending syn with no answer..

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.8, 24.11

                        1 Reply Last reply Reply Quote 1
                        • R
                          RyanH
                          last edited by

                          @johnpoz said in NAT not opening on custom Ports:

                          Not sure what is interesting about the box not working... We knew that days ago when you saw pfsense sending syn with no answer..

                          It's more the fact its not even talking to itself.. That is the VM itself

                          1 Reply Last reply Reply Quote 0
                          • johnpozJ
                            johnpoz LAYER 8 Global Moderator
                            last edited by johnpoz

                            Yeah again - we knew it was the BOXes problem.. Is the service even running? simple netstat show if listening..

                            An intelligent man is sometimes forced to be drunk to spend time with his fools
                            If you get confused: Listen to the Music Play
                            Please don't Chat/PM me for help, unless mod related
                            SG-4860 24.11 | Lab VMs 2.8, 24.11

                            1 Reply Last reply Reply Quote 0
                            • R
                              RyanH
                              last edited by

                              @johnpoz
                              0_1544694795247_812d9873-35d7-414f-a7f8-ba3212b431ba-image.png

                              Firewall has the accept rule in and out. Yet we can connect locally...... At this point i'm punching above my knowledge so any help is greatly appreciated.

                              1 Reply Last reply Reply Quote 0
                              • johnpozJ
                                johnpoz LAYER 8 Global Moderator
                                last edited by johnpoz

                                Dude its NOT LISTENING on 7777 so no shit its not going to work!!

                                Is the software even running - look in your task manager, etc.

                                How can you expect to talk to a port that is not listening?

                                edit: Should really move this to General - since this from the get go has had zero to do with port forwarding on pfsense..

                                An intelligent man is sometimes forced to be drunk to spend time with his fools
                                If you get confused: Listen to the Music Play
                                Please don't Chat/PM me for help, unless mod related
                                SG-4860 24.11 | Lab VMs 2.8, 24.11

                                R 1 Reply Last reply Reply Quote 0
                                • R
                                  RyanH @johnpoz
                                  last edited by

                                  @johnpoz Try looking in the background at the green button. You don't need to get rude. I have clearly admitted that Its not working yes, and i'm punching above my knowledge, what more do you want from me? The server (ARK) is running,

                                  0_1544695237893_66c9fb32-7da1-4c88-815d-5e77ece097c3-image.png

                                  1 Reply Last reply Reply Quote 0
                                  • DerelictD
                                    Derelict LAYER 8 Netgate
                                    last edited by

                                    Look at your netstat output. There is no listener on 7777.

                                    Chattanooga, Tennessee, USA
                                    A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                                    DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                                    Do Not Chat For Help! NO_WAN_EGRESS(TM)

                                    1 Reply Last reply Reply Quote 0
                                    • johnpozJ
                                      johnpoz LAYER 8 Global Moderator
                                      last edited by johnpoz

                                      It's NOT listening... Not sure what else you want me to tell you... You prob get better support on their forums on why the game is not listening..

                                      Not trying to be rude here dude... But this has ZERO to do with pfsense.. As we have been saying from the beginning..

                                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                                      If you get confused: Listen to the Music Play
                                      Please don't Chat/PM me for help, unless mod related
                                      SG-4860 24.11 | Lab VMs 2.8, 24.11

                                      1 Reply Last reply Reply Quote 0
                                      • R
                                        RyanH
                                        last edited by

                                        @johnpoz said in NAT not opening on custom Ports:

                                        It's NOT listening... Not sure what else you want me to tell you... You prob get better support on their forums on why the game is not listening..

                                        Not trying to be rude here dude... But this has ZERO to do with pfsense.. As we have been saying from the beginning..

                                        That's all very well. But you cannot blame me when I had it working on a Zyxel VMG8924 router and all ports forwarding and it was even showing on the master list. And now I move to PFSense because my zyxel is in a shorten term. 'Fucked' that the first thing i'm gonna do is like... ok why isn't firewall doing as told?

                                        1 Reply Last reply Reply Quote 0
                                        • DerelictD
                                          Derelict LAYER 8 Netgate
                                          last edited by Derelict

                                          ok why isn't firewall doing as told?

                                          Except it is.

                                          The sooner you accept the problem is not on the firewall and look more closely at the server itself the sooner you will solve your problem.

                                          Chattanooga, Tennessee, USA
                                          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                                          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                                          Do Not Chat For Help! NO_WAN_EGRESS(TM)

                                          1 Reply Last reply Reply Quote 0
                                          • R
                                            RyanH
                                            last edited by

                                            @derelict said in NAT not opening on custom Ports:

                                            ok why isn't firewall doing as told?

                                            Except it is.

                                            The sooner you accept the problem is not on the firewall and look more closely at the server itself the sooner you will solve your problem.

                                            Ever thought about getting the Title: Wise Old Owl?

                                            Very wise saying that last bit x)

                                            But no granted. I can see Firewall is doing exactly what its told just now need to figure out wtf is going on with the system. Sometimes this is why i prefer linux over Windows

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.