Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    WebServer behind PFSsense

    Scheduled Pinned Locked Moved General pfSense Questions
    23 Posts 8 Posters 2.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C Offline
      corvey
      last edited by

      John is right, you do not not need DNS rules and probably shouldn't.  I didn't touch on that subject because the main goal was to get your web server to work.  The RFC_1918 rule should have been left blocked on the WAN from default installation as shown here from my router.

      You can read all about that here: https://doc.pfsense.org/index.php/Prevent_RFC1918_traffic_from_leaving_pfSense_via_the_WAN_interface

      pfSensational™

      1 Reply Last reply Reply Quote 0
      • G Offline
        GianniAlagna
        last edited by

        Thanks @johnpoz
        Thanks @corvey

        So Guys, your hints and Feedback , helped me a lot in this configuration, and Finally I get connected. Just some Sites are still "Blocked" as browser notification sais "Connection Refused", But I guess this is more a smaller further point I have to check on my configuraitons.

        RFC 1918 and Bogon have been setuped back (as Default), Blocked on WAN. these minor things I couldn't figure out, mostrly because on other post suggestions hint was to disable. But here as well I guess  for other reasons.

        I can't for the moment access to canyouseeme.org, getting just a Blank site, at the moment I'm posting this.

        UPDATE:

        Can't Ping -> 8.8.8.8
        Can't access on some Site (ex. canyouseeme.org, maas.io)
        Can't access on my Site (Private Site with a DNS behind PFSense) -> ERROR MESSAGE: "Potential DNS Rebind attack detected, see http://en.wikipedia.org/wiki/DNS_rebinding
        Try accessing the router by IP address instead of by hostname."
        Pluggin other Machines on the Network, can't connect (no DHCO offered were recieved)

        Successfully can Connect to Ubuntu MAAS Region Controller
        Can visit some site (google, pfsense, wikipedia)

        I'll post in a new  Reply the actual situation.

        1 Reply Last reply Reply Quote 0
        • G Offline
          GianniAlagna
          last edited by

          Without more comments, I'm right if I'm saying, this should be a gateway issue with this Static IP?
          I get connected (and Successfully updated PFSense version), but can't get online other machines connected over LAN <-> WAN (inside - outside)

          ![Screen Shot 2018-03-29 at 17.09.23.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.09.23.png)
          ![Screen Shot 2018-03-29 at 17.09.23.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.09.23.png_thumb)
          ![Screen Shot 2018-03-29 at 17.12.52.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.12.52.png)
          ![Screen Shot 2018-03-29 at 17.12.52.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.12.52.png_thumb)
          ![Screen Shot 2018-03-29 at 17.13.31.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.13.31.png)
          ![Screen Shot 2018-03-29 at 17.13.31.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.13.31.png_thumb)
          ![Screen Shot 2018-03-29 at 17.14.21.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.14.21.png)
          ![Screen Shot 2018-03-29 at 17.14.21.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.14.21.png_thumb)
          ![Screen Shot 2018-03-29 at 17.15.39.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.15.39.png)
          ![Screen Shot 2018-03-29 at 17.15.39.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.15.39.png_thumb)
          ![Screen Shot 2018-03-29 at 17.16.44.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.16.44.png)
          ![Screen Shot 2018-03-29 at 17.16.44.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.16.44.png_thumb)
          ![Screen Shot 2018-03-29 at 17.18.16.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.18.16.png)
          ![Screen Shot 2018-03-29 at 17.18.16.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.18.16.png_thumb)
          ![Screen Shot 2018-03-29 at 17.20.03.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.20.03.png)
          ![Screen Shot 2018-03-29 at 17.20.03.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.20.03.png_thumb)

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.