Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Port Forwarding

    Scheduled Pinned Locked Moved General pfSense Questions
    28 Posts 5 Posters 2.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      roryahanan @johnpoz
      last edited by

      @johnpoz Theres the rule. Thanks for the article ill take a look now 0_1548856119667_Screenshot 2019-01-30 at 13.47.30.png

      1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator
        last edited by johnpoz

        NO post up your wan Rules!! And your port forwards page..

        Example - here is mine
        0_1548857263631_rulesandnats.png

        For all we know you have a rule above the rule that allows the nat blocking.. Say pfblocker rules for example... Rules are evaluated top down, first rule to trigger wins, no other rules evaluated. So we need to see rules on WAN so can tell if there is something that would block the auto rule that gets created for your nat, etc.

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.8, 24.11

        R 1 Reply Last reply Reply Quote 0
        • R
          roryahanan @johnpoz
          last edited by

          @johnpoz0_1548857462093_Screenshot 2019-01-30 at 14.09.43.png 0_1548857465425_Screenshot 2019-01-30 at 14.09.37.png

          1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator
            last edited by

            Wow you actually see hits on your Bogon Rules? See that 636 B... Curious wtf that is... Also have hits on your block rfc1918 rules..

            I see some hits on your 21 firewall rule... So I would think traffic is getting to your wan... So do a packet captures and validate being sent to your host... You should see the SYN to port 21, if you go to can you see me . org, etc.

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            1 Reply Last reply Reply Quote 0
            • N
              no_jah
              last edited by

              Could it be that the internal IP of your FTP-server has changed since you set up the port forward?

              R 1 Reply Last reply Reply Quote 0
              • R
                roryahanan @no_jah
                last edited by

                @no_jah I checked that earlier just incase

                N 1 Reply Last reply Reply Quote 0
                • N
                  no_jah @roryahanan
                  last edited by

                  @roryahanan

                  And no Firewall software blocking incoming connections on the FTP-server computer?

                  1 Reply Last reply Reply Quote 0
                  • johnpozJ
                    johnpoz LAYER 8 Global Moderator
                    last edited by johnpoz

                    Do your sniff, diag packet capture on your lan interface... Do you see the syn to your ftp server private IP... If you do not see an answer its not pfsense that is your problem.

                    Here I just setup a port forward for ftp (21) and can you see me shows closed..

                    0_1548858567188_ftpRST.png

                    See how my client on 192.168.2.11 sent a RST... Basically he said to F off ;)

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.8, 24.11

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.