• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Accessing internal web server when SSL other than 443

Scheduled Pinned Locked Moved NAT
2 Posts 2 Posters 775 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • W
    wildfrog
    last edited by Jan 31, 2018, 10:24 PM

    I have a server on the LAN that's managed via a web browser. It uses port 8443 for SSL and not 443.
    I have a port forward sending incoming 443 traffic to port 8443 of that server.
    I have a host override in DNS Resolver sending the FQDN to the internal IP.
    From outside the office, all works properly. I can manage the server. SSL works.
    From inside the office, going to https://server.domain.com does not resolve.
    However, inside the office, I can go to https://server.domain.com:8443 and that comes up as expected.

    I'm sort of at a loss on how to reach the server via SSL the same way whether inside or outside the office.
    I have tried using NAT reflection, both as Pure NAT and NAT+proxy, with no success.

    Is there anywhere else I should be looking?

    1 Reply Last reply Reply Quote 0
    • J
      johnpoz LAYER 8 Global Moderator
      last edited by Feb 1, 2018, 10:20 AM

      "From inside the office, going to https://server.domain.com does not resolve."

      Yes it does resolve or server.domain.com:8443 wouldn't work either..  If your service is listening on 8443 then yes you would have to tell your browser to go to that port, not just resolve the fqdn to your internal IP.. dns has zero to do with ports.

      Simple solution - save a bookmark in your browser to the 8443 url ;)  Other solution be to just do a nat reflection, or setup an internal port forward.

      Or change this server to listen on 443 ;)  Or setup the server to redirect traffic it sees on 443 to the application on 8443..

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.8, 24.11

      1 Reply Last reply Reply Quote 0
      2 out of 2
      • First post
        2/2
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
        This community forum collects and processes your personal information.
        consent.not_received