• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Port Forward + 1:1 NAT

Scheduled Pinned Locked Moved NAT
4 Posts 2 Posters 2.8k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • T
    tdickson
    last edited by Mar 21, 2006, 7:17 PM

    I have searched around and supposedly this is possible, but I have not been successful.

    I have 1:1 setup and it works wonderfully!
    I would like to add port forwarding as well though for those nat'd addresses.

    Example:

    64.0.0.1 –--  1:1 Nat to ----- 192.168.5.10
    This hosts a web server at  mail.domain.com

    I want to be able to type mail.domain.com when on the local subnet and have it redirected to the local IP.
    I know nat redirects only work on port fowards and not 1:1, but I've found in the forums you can add port forward on top of 1:1 to do this.

    I've set up 1:1 and it works, I also added a port forward as follows:
    interface: LAN
    external address: 64.0.0.1
    proto: TCP
    port: HTTP
    NAT IP: 192.168.5.10
    Local Port: HTTP

    and checked auto create firewall rule...

    what am I doing wrong?

    1 Reply Last reply Reply Quote 0
    • T
      tdickson
      last edited by Mar 30, 2006, 6:58 PM

      ok, I've tried using the external address as well as the internal address with no luck.

      In this topic Hoba says you can add port forwarding on top of 1:1:
      http://forum.pfsense.org/index.php?topic=858.0

      I ended up setting up a local DNS server, but I still would love to scratch that and use port forwards instead.

      Would it be better to scracth 1:1 and only use port foward with the virtualIP's?  I have about 5 ports enabled on each IP anyway, so it wouldn't be to much work to add the forwards in.
      Thanks!

      1 Reply Last reply Reply Quote 0
      • H
        hoba
        last edited by Mar 31, 2006, 12:05 PM

        I haven't tried portforward on top of 1:1 NAT myself. It might be that I was wrong here. The NAT-reflectionfeature is still under developement and there is discussion going on between the developers how to make it work for larger ranges and thus maybe 1:1 NATs too. Meanwhile split DNS might be the only solution for this problem.

        1 Reply Last reply Reply Quote 0
        • T
          tdickson
          last edited by Apr 3, 2006, 2:56 PM

          Thanks for the reply!  I will stand by in anticipation  ;D
          You guys are the best!

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
            This community forum collects and processes your personal information.
            consent.not_received