Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How do I open multiple ports?

    Firewalling
    3
    6
    2.0k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • X
      Xenosis
      last edited by

      Hello

      I'm trying to setup the firewall on my EXSI server, but I'm unsure about how I open multiple ports..

      I got a Linux VM running on 192.168.1.102 that I would like to open the port range 51515-61234

      I'm new at using pfSense and don't know much about network/firewall, so I could really use a little help..

      Think I know how I open single ports(SSH,FTP,HTTP etc. is working) by adding a NAT rule with Filter rule association looks to work..

      But when i need port forward a whole range, then I'm unsure about what port should I use as Redirect target port?

      If anyone could provide a screenshot of how it is supposed to look with multiple ports, that would be great..

      Thank you..

      1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator
        last edited by

        You would do range just like you would do single really - you would just call out the ending port..  See attached.

        My question would what would be listening on such a large range?  Are you running a passive ftp server that could have like 10k connections at the same time?

        range.png
        range.png_thumb

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

        1 Reply Last reply Reply Quote 0
        • X
          Xenosis
          last edited by

          Thanks you for the reply..

          hmm.. Sounds like I was doing it correctly..

          https://imgur.com/a/Hhgbf

          The program that needs the ports is just still saying port closed..

          What command can I use to check if the port is actually open on my Ubuntu VM??

          1 Reply Last reply Reply Quote 0
          • G
            GoldFish
            last edited by

            @Xenosis:

            Thanks you for the reply..

            hmm.. Sounds like I was doing it correctly..

            https://imgur.com/a/Hhgbf

            The program that needs the ports is just still saying port closed..

            What command can I use to check if the port is actually open on my Ubuntu VM??

            Are the rules in correct order. By default all incoming is blocked on WAN. And the rules are applied top down first. If the packets are hitting the rule which says block all traffic, it would never go to the rule that you created. So the port forward rule should be in the correct order

            I have a similar issue with my Plex server. It keeps saying the port is closed but in reality its open as i am able to access it externally. May be there is a bug or something. Even if your program says its closed, you should still try to access it externally, provided everything is in place. Just a thought.

            • pfSense Enthusiast *
            1 Reply Last reply Reply Quote 0
            • johnpozJ
              johnpoz LAYER 8 Global Moderator
              last edited by

              Yeah you need to see what rules on your on your wan if you had some other rule above your nat create rule that would block then it would be blocked.

              Also again what specific service are you trying to use that needs all those ports open?  That it would be listening on all of those ports both tcp and udp makes ZERO sense.  What exactly are you trying to access?

              And keep in mind there is a esxi firewall as well, so if your trying to hit something on a vm?  There could also be the firewall on the VM, etc..

              You should walk through the troubleshooting guide to find out where the problem is.
              https://doc.pfsense.org/index.php/Port_Forward_Troubleshooting

              An intelligent man is sometimes forced to be drunk to spend time with his fools
              If you get confused: Listen to the Music Play
              Please don't Chat/PM me for help, unless mod related
              SG-4860 24.11 | Lab VMs 2.7.2, 24.11

              1 Reply Last reply Reply Quote 0
              • X
                Xenosis
                last edited by

                Thank you both of you..

                I found the error..

                The program's web-ui did not write my custom port range in the config file, so every time I restarted the program it would reset..

                Edited the config file using SSH and the program is now showing the ports as open.

                johnpoz I will look into limiting the range and try to figure out if I only need TCP or both..

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.