Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    1. Home
    2. Tags
    3. nat
    Log in to post

    • All categories
    • G

      Probleme de translation NAT

      Watching Ignoring Scheduled Pinned Locked Moved Français asa nat translation
      5
      0 Votes
      5 Posts
      765 Views
      J
      S'il y a un site distant, il faut aussi décrire les adressages et le VPN inter-sites (sait-il faire communiquer tous les réseaux ?). Pour un site seul, normalement les réseaux internes (Lan, Wifi, Serveurs) ont un adressage privé et le firewall comme gateway, normalement un pc en vpn (accès distant) a une adresse privée et le firewall comme gateway, il n'y a donc pas lieu de faire un quelconque NAT pour atteindre toutes machines ... si il y a les règles correspondantes deans Firewall > Rules > onglet (Interface)
    • AndyRHA

      pfSense - DNS redirect to local DNS server

      Watching Ignoring Scheduled Pinned Locked Moved NAT nat dns masquerade pihole
      32
      8 Votes
      32 Posts
      10k Views
      AndyRHA
      @Antibiotic All of the PiHoles are on VLAN42. PiHole services VLANS 2,42,100 and 129.
    • J

      Manually recreating IPsec NAT/BINAT rule with Outbound NAT table

      Watching Ignoring Scheduled Pinned Locked Moved NAT nat ipsec
      1
      0 Votes
      1 Posts
      450 Views
      No one has replied
    • O

      Accessing Radio Devices Webgui behind WAN1 of 2 Wans from LAN2 of 2 LANS.

      Watching Ignoring Scheduled Pinned Locked Moved NAT nat
      1
      0 Votes
      1 Posts
      221 Views
      No one has replied
    • I

      pfSense NAT not working, nor showing related incoming packet in Packet Capture (even yet it is on wire) or in logs

      Watching Ignoring Scheduled Pinned Locked Moved NAT nat pfblockerng packet capture 8080 web server
      28
      0 Votes
      28 Posts
      4k Views
      JeGrJ
      I'll query the ISP on what are they doing there. Doubt they'll talk... but that is a different story. Just as a quick follow up: If you pay for your own public IP to get forwarded to you, they should have no trouble setting their UBNT POP the way you want. Otherwise what's the gain in paying for something you can't successfully use all the way you want? ;)
    • M

      IPv6 Ports mittels Firewall blocken

      Watching Ignoring Scheduled Pinned Locked Moved Deutsch ipv6 pfsense nat nat64
      15
      0 Votes
      15 Posts
      3k Views
      M
      Hey, ich habs jetzt hinbekommen, also nicht selber :/. Mein Freund hat mir geholfen und es geht jetzt. Vielen dank für die ganze Hilfe. LG Mathias
    • guicampos21G

      Disable NAT on IPSec output

      Watching Ignoring Scheduled Pinned Locked Moved NAT nat ipsec vpn
      1
      0 Votes
      1 Posts
      289 Views
      No one has replied
    • guicampos21G

      IPSec/NAT

      Watching Ignoring Scheduled Pinned Locked Moved Portuguese ipsec nat vpn
      1
      0 Votes
      1 Posts
      303 Views
      No one has replied
    • T

      Pfblocker NAT rules.

      Watching Ignoring Scheduled Pinned Locked Moved pfBlockerNG pfblockerng dnsbl firewall rules nat
      2
      0 Votes
      2 Posts
      1k Views
      K
      I'm having the same issue with pfBlocker and NAT rules. I have no issues adding white-list rules for my devices that are on a directly routed subnet. But trying to figure out how to handle an allow rule for an existing NAT rule is causing issues. Have you found any solution yourself as of yet?
    • M

      Querying WAN IP of an inner router (pfsense) behind another router on NAT

      Watching Ignoring Scheduled Pinned Locked Moved NAT nat
      2
      0 Votes
      2 Posts
      277 Views
      M
      Found a manual (meaning outside of standard config / package) and hacky workaround, would love to hear of any improvement over that :) Create a user in pfsense's User Manager, enable SSH access for that user with a password-less SSH key login (I'm aware it's risky, extra precautions below). Create a script in the home user dir, show_wan_ip.sh, containing: #!/bin/sh ifconfig mvneta0.4090 | sed -n '/.inet /{s///;s/ .*//;p;}' Edit ~user/.ssh/authorized_keys and add the following before the key: command="/home/user/show_wan_ip.sh",no-port-forwarding,no-X11-forwarding,no-agent-forwarding,no-pty This can be executed from the (less trusted) PC that connects to it over LAN: ssh user@10.100.1.1 "/home/user/show_wan_ip.sh" 192.168.1.10
    • M

      pfSense Rewrites Source IP for ICMP Errors Breaking Traceroute

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions icmp traceroute nat
      18
      0 Votes
      18 Posts
      3k Views
      J
      This got me today. I can confirm the floating rule for ICMP solves the issue.
    • M

      NATting with Manual Outbound NAT not working

      Watching Ignoring Scheduled Pinned Locked Moved NAT nat open vpn port forwarding
      7
      0 Votes
      7 Posts
      3k Views
      M
      You are 100% correct sir! That was the problem indeed, thanks for pointing that out!
    • S

      nat rdp coronavirus

      Watching Ignoring Scheduled Pinned Locked Moved Portuguese port forward nat
      4
      0 Votes
      4 Posts
      917 Views
      I
      @silviowmelo o RDP para acessar interno, vc vai usar o IP da maquina e porta padrão.
    • I

      Port Forward: Wan to LAN ip 192.168.0.141

      Watching Ignoring Scheduled Pinned Locked Moved NAT nat
      3
      0 Votes
      3 Posts
      435 Views
      I
      Great! Thanks, @Rico Now its works for me
    • Z

      Make traffic always egress on specific LAN IP

      Watching Ignoring Scheduled Pinned Locked Moved NAT nat bridge forwarding
      2
      0 Votes
      2 Posts
      552 Views
      johnpozJ
      I take it these .2 are vips you have setup. What is the source of this traffic? Is it rfc1918 in your network - or public being forwarded to pfsense rfc1918 wan IP? Why do you think you want to do this? What do think it will accomplish exactly? But sure you could outbound nat into your lan from your lan vip.
    • L

      Port Forward - não consigo acessar meu DVR GIGA de uma rede externa

      Watching Ignoring Scheduled Pinned Locked Moved Portuguese nat dvr
      1
      0 Votes
      1 Posts
      267 Views
      No one has replied
    • M

      Proxmox install on Pfsense showing NAT / Interface address on everything (Plex / TFTP / FTP etc)

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions proxmox nat
      5
      0 Votes
      5 Posts
      1k Views
      M
      @stephenw10 I have rechecked my NAT rules and it appears it was natting on the Vlan, which was causing a double NAT, which was why it was showing PFsense's Interface address! Thanks for the help anyhow
    • C

      Kein Internet im LAN - WAN-Gateway in anderem Subnet

      Watching Ignoring Scheduled Pinned Locked Moved Deutsch ipv4 subnet nat
      5
      0 Votes
      5 Posts
      1k Views
      RicoR
      Diese Option ist gesetzt? System > Routing > Gateways > Edit Gateway > Display Advanced > Use non-local gateway -Rico
    • ?

      OpenVPN Static Ip, Routing Problem, NAT

      Watching Ignoring Scheduled Pinned Locked Moved OpenVPN openvpn routing rules open vpn nat
      17
      0 Votes
      17 Posts
      2k Views
      ?
      @Derelict I think i got it to work. After i set the default gateway manually to the VPN and not automatic and saw that it worked, i transfered the Flowing Rule i made for the outbound traffic to the Lan interface. With the new knowledge of your help and the help of viragomann i changed some tiny things in the firewall rule. After that i changed the default gateway back to automatic and know the outbound traffic takes the vpn and everything works. I even rebootet the firewall to get lost of the states but everything still functions as it seems. Thank you so very much for your dedication and your help.
    • J

      OpenVPN to IPsec source NAT

      Watching Ignoring Scheduled Pinned Locked Moved NAT openvpn openvpn routing ipsec ipsec routing n nat
      8
      0 Votes
      8 Posts
      2k Views
      V
      @paul-heidenreich-0 Outbound NAT doesn't work with policy-based IPSec tunnels. You have to do the NAT inside IPSec. It should work with VTI IPSec, however. If you have already a phase 2 to for the NAT-IP or subnet at the remote side, an additional is not needed in most cases. You have always have to add the remote networdk to the "local networks", no matter if you use BINAT or outbound NAT. That's correct. But you didn't mention, that you have already done this.