<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[[SOLVED] New zone port binding fail]]></title><description><![CDATA[<p dir="auto">Hi all,</p>
<p dir="auto">I have currently 3 active zones working perfectly. I can see portals ports in rule.debug like this:</p>
<p dir="auto"><em>pass in  quick on { igb5_vlan1001 } proto tcp from any to { 10.1.0.1 10.1.0.3 } port { 8005 8004 } tracker 1000000551 keep state(sloppy)<br />
pass in  quick on { igb5 } proto tcp from any to { 10.0.0.1 10.0.0.3 } port { 8003 8002 } tracker 1000000553 keep state(sloppy)<br />
pass in  quick on { igb5_vlan1006 } proto tcp from any to { 10.6.0.1 10.6.0.3 } port { 8007 8006 } tracker 1000000555 keep state(sloppy)</em></p>
<p dir="auto">But when I try to active the fourth zone, nginx fail to bind port. In fact, it tries to bind the new zone on the same port as one of three other. I get this on my shell:</p>
<p dir="auto"><em>Message from syslogd@fw1 at Nov  6 21:23:54 …<br />
fw1 nginx: 2017/11/06 21:23:54 [emerg] 14696#100412: bind() to [::]:8004 failed (48: Address already in use)</em></p>
<p dir="auto">Port 8004 is already in use on igb5_vlan1001, my first zone.</p>
<p dir="auto">Does anybody know what happens on my firewall?</p>
]]></description><link>https://forum.netgate.com/topic/122548/solved-new-zone-port-binding-fail</link><generator>RSS for Node</generator><lastBuildDate>Tue, 21 Apr 2026 16:01:41 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/122548.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 06 Nov 2017 20:29:34 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to [SOLVED] New zone port binding fail on Mon, 06 Nov 2017 21:46:15 GMT]]></title><description><![CDATA[<p dir="auto">I'm done with this. I don't know why but both zone on same port had the same id in config.xml. I tried to manually edit it. Didn't work. I had to delete all zones and create them agin. Now IDs are OK.</p>
<p dir="auto">Bye :)</p>
]]></description><link>https://forum.netgate.com/post/734404</link><guid isPermaLink="true">https://forum.netgate.com/post/734404</guid><dc:creator><![CDATA[Ap0p0]]></dc:creator><pubDate>Mon, 06 Nov 2017 21:46:15 GMT</pubDate></item><item><title><![CDATA[Reply to [SOLVED] New zone port binding fail on Mon, 06 Nov 2017 20:41:43 GMT]]></title><description><![CDATA[<p dir="auto">Oups, I'm using 2.3.4-p1 :)</p>
]]></description><link>https://forum.netgate.com/post/734381</link><guid isPermaLink="true">https://forum.netgate.com/post/734381</guid><dc:creator><![CDATA[Ap0p0]]></dc:creator><pubDate>Mon, 06 Nov 2017 20:41:43 GMT</pubDate></item><item><title><![CDATA[Reply to [SOLVED] New zone port binding fail on Mon, 06 Nov 2017 20:33:55 GMT]]></title><description><![CDATA[<p dir="auto">After the fourth zone is activated, and after syslod messages, I get this in rule.debug:</p>
<p dir="auto"><em>pass in  quick on { igb5_vlan1001 } proto tcp from any to { 10.1.0.1 10.1.0.3 } port { 8005 8004 } tracker 1000000551 keep state(sloppy)<br />
pass in  quick on { igb5_vlan1002 } proto tcp from any to { 10.2.0.1 10.2.0.3 } port { 8005 8004 } tracker 1000000553 keep state(sloppy)<br />
pass in  quick on { igb5 } proto tcp from any to { 10.0.0.1 10.0.0.3 } port { 8003 8002 } tracker 1000000555 keep state(sloppy)<br />
pass in  quick on { igb5_vlan1006 } proto tcp from any to { 10.6.0.1 10.6.0.3 } port { 8007 8006 } tracker 1000000557 keep state(sloppy)</em></p>
<p dir="auto">So, I have two zones listening on same port, but on different interface.</p>
]]></description><link>https://forum.netgate.com/post/734380</link><guid isPermaLink="true">https://forum.netgate.com/post/734380</guid><dc:creator><![CDATA[Ap0p0]]></dc:creator><pubDate>Mon, 06 Nov 2017 20:33:55 GMT</pubDate></item></channel></rss>