• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Port forwarding problem!

Scheduled Pinned Locked Moved General pfSense Questions
14 Posts 4 Posters 1.1k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • S
    Shuh
    last edited by Jan 30, 2018, 6:01 AM

    Pfsense respected guru!!! Please do not kick, as the situation is not always regular. Pfsense RELEASE  2.2.4-. Trying forward ports in the NAT and Rules, it does not work. Previously, everything worked. Two days ago changed ip on wan, and then stopped working. I open IPCM protocol and Pfsense answered on ping. Dropped the configuration to default, nothing helps. Help please what to do….
    rule.png
    rule.png_thumb

    1 Reply Last reply Reply Quote 0
    • D
      Derelict LAYER 8 Netgate
      last edited by Jan 30, 2018, 6:09 AM

      First and foremost, upgrade. What is your excuse for being on 2.2.4? (I love to hear them)

      Don't set a source port.

      Chattanooga, Tennessee, USA
      A comprehensive network diagram is worth 10,000 words and 15 conference calls.
      DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
      Do Not Chat For Help! NO_WAN_EGRESS(TM)

      1 Reply Last reply Reply Quote 0
      • S
        Shuh
        last edited by Jan 30, 2018, 6:18 AM

        Using this vertion? because there was no need for update, and everithing was working…

        Tell please which release is the best for update?

        1 Reply Last reply Reply Quote 0
        • D
          Derelict LAYER 8 Netgate
          last edited by Jan 30, 2018, 6:19 AM

          Guess a few years-worth of patches and security vulnerabilities is "no need."

          The latest. 2.4.2-P1

          Chattanooga, Tennessee, USA
          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
          Do Not Chat For Help! NO_WAN_EGRESS(TM)

          1 Reply Last reply Reply Quote 0
          • S
            Shuh
            last edited by Jan 30, 2018, 6:26 AM

            Thank you, of'course it my foult for no updates…

            1 Reply Last reply Reply Quote 0
            • D
              Derelict LAYER 8 Netgate
              last edited by Jan 30, 2018, 6:32 AM

              Don't set a source port on your port forwards.

              Chattanooga, Tennessee, USA
              A comprehensive network diagram is worth 10,000 words and 15 conference calls.
              DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
              Do Not Chat For Help! NO_WAN_EGRESS(TM)

              1 Reply Last reply Reply Quote 0
              • S
                Shuh
                last edited by Jan 30, 2018, 7:10 AM

                Derelict - Thank you a lot. I spent 2 days solving this problem. It was all trite and simple :)

                1 Reply Last reply Reply Quote 0
                • D
                  Derelict LAYER 8 Netgate
                  last edited by Jan 30, 2018, 7:27 AM

                  Yeah. You had to click advanced and ignore this:

                  ![Screen Shot 2018-01-29 at 11.26.29 PM.png](/public/imported_attachments/1/Screen Shot 2018-01-29 at 11.26.29 PM.png)
                  ![Screen Shot 2018-01-29 at 11.26.29 PM.png_thumb](/public/imported_attachments/1/Screen Shot 2018-01-29 at 11.26.29 PM.png_thumb)

                  Chattanooga, Tennessee, USA
                  A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                  DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                  Do Not Chat For Help! NO_WAN_EGRESS(TM)

                  1 Reply Last reply Reply Quote 0
                  • S
                    Shuh
                    last edited by Jan 30, 2018, 7:31 AM

                    please tell me why now network ip cameras does not see external ip adress?

                    1 Reply Last reply Reply Quote 0
                    • D
                      Derelict LAYER 8 Netgate
                      last edited by Jan 30, 2018, 9:46 AM

                      Please be more specific.

                      Chattanooga, Tennessee, USA
                      A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                      DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                      Do Not Chat For Help! NO_WAN_EGRESS(TM)

                      1 Reply Last reply Reply Quote 0
                      • S
                        Shuh
                        last edited by Jan 30, 2018, 10:13 AM

                        I have solved this problem. There are another problem. I got several Ip cameras. Ip adresses of cameras are static. Trying to connect them from the internet, it not working. I created the rule in snapshot below. The only thing is, DHCP range are x.x.x.15 - x.x.x.199, ip adresses on cameras are static.

                        rule2.png
                        rule2.png_thumb

                        1 Reply Last reply Reply Quote 0
                        • J
                          johnpoz LAYER 8 Global Moderator
                          last edited by Jan 30, 2018, 10:42 AM

                          No need for security patches to your firewall… And now let's open up the IP camera's to the internet..  Which of the 1200 some models of IP camera is use that has zero security and prob be joining the Persirai bot net in minutes ;) do you have?

                          And again - what part did you not get about the source port is going to be ANY... why do you have source port set to only 8024??

                          An intelligent man is sometimes forced to be drunk to spend time with his fools
                          If you get confused: Listen to the Music Play
                          Please don't Chat/PM me for help, unless mod related
                          SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                          1 Reply Last reply Reply Quote 0
                          • S
                            Shuh
                            last edited by Jan 30, 2018, 10:53 AM

                            Ip cameras are in the office, but nvr are out of the office. I need to record from these cameras. (((

                            There are several cameras and by the port i whant to identify cameras

                            1 Reply Last reply Reply Quote 0
                            • G
                              Grimson Banned
                              last edited by Jan 30, 2018, 11:20 AM

                              @Shuh:

                              Ip cameras are in the office, but nvr are out of the office. I need to record from these cameras. (((

                              Then use a VPN, there is no excuse for opening these devices to the world.

                              1 Reply Last reply Reply Quote 0
                              14 out of 14
                              • First post
                                14/14
                                Last post
                              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                                This community forum collects and processes your personal information.
                                consent.not_received