<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Public IP from LAN Issues]]></title><description><![CDATA[<p dir="auto">Hi guys,</p>
<p dir="auto">First off, thanks for this great product, other than a couple minor issues it performs beautifully and the quality of the product is apparent!</p>
<p dir="auto">We setup 1.2.1 today using the LiveCD to test out the product for replacing the Ubuntu / ShoreWall system I built a while back. We managed to solve all issues except for one…</p>
<p dir="auto">We have 5 public IP's and set 4 of them up as virtual carp IP's and also on 1:1 NAT. We want to be able to access our servers using the public URL's which works for all servers except for the FTP server. When I go to ftp://mydomain.com from inside the network it just times out - not even an auth prompt. Using a ftp client like filezilla doesn't work either. It works fine from the outside so the 1:1 NAT and rules are working. Now, the strange part is, on that same server we have a web server on port 80 and that will work from inside the LAN using the public IP just fine. I really don't understand how 1 could work and not the other.</p>
<p dir="auto">I tried enabling / disabling the userland proxy many times to see if that was the problem and that had no effect. I am not sure if I stumbled on a bug in pfSense or if I just don't know how to do this properly.</p>
<p dir="auto">Any suggestions or info would be appreciated.</p>
<p dir="auto">Thanks.</p>
]]></description><link>https://forum.netgate.com/topic/11183/public-ip-from-lan-issues</link><generator>RSS for Node</generator><lastBuildDate>Sun, 19 Apr 2026 14:54:34 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/11183.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 01 Oct 2008 04:33:53 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Public IP from LAN Issues on Wed, 01 Oct 2008 13:41:17 GMT]]></title><description><![CDATA[<p dir="auto">I'm not sure why it works at your place. Maybe you've configured more than just the 1:1 NAT.<br />
But 1:1 NAT definitly does not work with NAT-reflection</p>
<p dir="auto">I would setup split DNS since you're accessing the servers via the name and not the IP.</p>
<p dir="auto">If you have problems with ftp i can only suggest:</p>
<p dir="auto">@http://forum.pfsense.org/index.php/topic:</p>
<blockquote>
<p dir="auto">1: Disable the ftp-helper on all interfaces.<br />
2: Define a port-range on your ftp-server for the data-transfer.<br />
3: forward port 21 and your data-transfer-range to your server.</p>
</blockquote>
<p dir="auto">Also i wouldnt bother with 1:1 NAT and only use normal port-forwards and aliases.<br />
–&gt; NAT-reflection will work.</p>
<p dir="auto">You can create an alias for each server and define what ports you want to use on it.<br />
Use this alias in the port-forward-rule and the firewall-rule.</p>
]]></description><link>https://forum.netgate.com/post/182525</link><guid isPermaLink="true">https://forum.netgate.com/post/182525</guid><dc:creator><![CDATA[GruensFroeschli]]></dc:creator><pubDate>Wed, 01 Oct 2008 13:41:17 GMT</pubDate></item><item><title><![CDATA[Reply to Public IP from LAN Issues on Wed, 01 Oct 2008 12:55:59 GMT]]></title><description><![CDATA[<p dir="auto">I did see this post and read it but I don't think this will help. It says 1:1 doesn't work with reflection but that isn't true - it is working for everything except FTP. I added NAT rules that should work but is doesn't. This seems like a bug in the system to me.</p>
<p dir="auto">Do you have any suggestions on how to get FTP to work with 1:1 NAT and reflection?</p>
<p dir="auto">Thanks.</p>
]]></description><link>https://forum.netgate.com/post/182522</link><guid isPermaLink="true">https://forum.netgate.com/post/182522</guid><dc:creator><![CDATA[compucoder]]></dc:creator><pubDate>Wed, 01 Oct 2008 12:55:59 GMT</pubDate></item><item><title><![CDATA[Reply to Public IP from LAN Issues on Wed, 01 Oct 2008 06:01:40 GMT]]></title><description><![CDATA[<p dir="auto">http://forum.pfsense.org/index.php/topic,7001.0.html</p>
]]></description><link>https://forum.netgate.com/post/182490</link><guid isPermaLink="true">https://forum.netgate.com/post/182490</guid><dc:creator><![CDATA[GruensFroeschli]]></dc:creator><pubDate>Wed, 01 Oct 2008 06:01:40 GMT</pubDate></item></channel></rss>