Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Redirect all traffic from 1 external IP to another external IP

    Scheduled Pinned Locked Moved General pfSense Questions
    7 Posts 3 Posters 394 Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T Offline
      tabmow
      last edited by

      Hi,

      I have an old static application where it's destination address is hardcoded and I can't change it. So I am looking for a way to have pfSense force traffic to go to a different destination.

      Local Client --> Ext IP --> New EXT IP

      Is this at all possible? I was thinking maybe of a static route but I can't figure out how to configure it?

      Thanks,
      Terry

      JKnottJ 1 Reply Last reply Reply Quote 0
      • stephenw10S Offline
        stephenw10 Netgate Administrator
        last edited by

        You can just use a NAT rule (port forward) for that.

        T 1 Reply Last reply Reply Quote 0
        • JKnottJ Offline
          JKnott @tabmow
          last edited by

          @tabmow

          One thing you could do is a static ARP. That is you specify the desired IP address for the device's MAC. Of course, that won't do anything for the gateway or subnet mask, but neither would redirecting.

          PfSense running on Qotom mini PC
          i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
          UniFi AC-Lite access point

          I haven't lost my mind. It's around here...somewhere...

          1 Reply Last reply Reply Quote 0
          • T Offline
            tabmow @stephenw10
            last edited by

            @stephenw10 This is what I have done but I'm not totally sure it is working. A more straightforward example, I'm trying to redirect all DNS traffic destined to google nameservers to my Getflix nameservers. My rule looks like the below. I shouldn't need to do anything else right?

            f8483af2-eaa1-4d42-b5a2-751f5c60d58a-image.png

            1 Reply Last reply Reply Quote 0
            • stephenw10S Offline
              stephenw10 Netgate Administrator
              last edited by

              It needs to be on the LAN interface, or whichever interface the device is on.

              T 1 Reply Last reply Reply Quote 0
              • T Offline
                tabmow @stephenw10
                last edited by

                @stephenw10 I done it on both LAN and WAN. I'm trying to figure out how best to test it.

                1 Reply Last reply Reply Quote 0
                • stephenw10S Offline
                  stephenw10 Netgate Administrator
                  last edited by

                  Look at the state table (Diag > States) and filter but the destination IP. If it's matching traffic you will see NAT'd states on the LAN

                  1 Reply Last reply Reply Quote 1
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.