Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    [CLOSED] PFSENSE PROBLEMS WITH FIREWALL RULE

    Scheduled Pinned Locked Moved Firewalling
    3 Posts 2 Posters 777 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • ? Offline
      A Former User
      last edited by

      Greetings my friends, I have a problem this is where I registered my ip's public as virtual ip to be able to have independent services, example:

      IP-ALIAS01 = 169.12.11.10 / 32 (ANTISPAM)
      IP-ALIAS01 = 169.12.11.11 / 32 (FTP)
      IP-ALIAS01 = 169.12.11.12 / 32 (WEBSERVER)
      IP-ALIAS01 = 169.12.11.13 / 32 (CRM)

      Then in the NAT in 1: 1 register with the local ip with which they work

      NAT 1: 1 Mappings
      Interface External IP Internal IP Destination IP Description
      WAN 169.12.11.10 192.168.10.20 * MAIL
      WAN 169.12.11.11 192.168.10.21 * FTP
      WAN 169.12.11.12 192.168.10.22 * WEB
      WAN 169.12.11.13 192.168.10.23 * CRM

      And in the firewall rules I created the following

      Port Source
      IPv4 TCP * * 192.168.10.20 25 * none Allow to MAIL
      IPv4 TCP * * 192.168.10.21 21 * none Allow to FTP
      IPv4 TCP * * 192.168.10.22 80 * none Allow to WEB
      IPv4 TCP * * 192.168.10.23 80 * none Allow to CRM

      But the problem is that only the first two works but the last ones do not respond and when I check in the log appear as blocked but I click to add the rule but it does not respond, which could be happening.

      1 Reply Last reply Reply Quote 0
      • chpalmerC Offline
        chpalmer
        last edited by

        If you were to do a single IP Alias as 169.12.11.8/29  does it work?

        Leave your 1:1 and firewall rules the way they are.

        Triggering snowflakes one by one..
        Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

        1 Reply Last reply Reply Quote 0
        • ? Offline
          A Former User
          last edited by

          @chpalmer:

          If you were to do a single IP Alias as 169.12.11.8/29  does it work?

          No, i try with this mask 29 an also 32

          @chpalmer:

          Leave your 1:1 and firewall rules the way they are.

          My rules is in the image of my post.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.