Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PFSense [RST, ACK] packet when accessing a site

    Scheduled Pinned Locked Moved General pfSense Questions
    28 Posts 5 Posters 4.4k Views 5 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S Online
      stephenw10 Netgate Administrator
      last edited by

      Yes, that ^.

      But, also yes, you can use that to prove where the problem is but you should fix it at the root which is probably the server config or some rule in the FreeNAS networking.

      Steve

      4 1 Reply Last reply Reply Quote 0
      • 4 Offline
        4o4rh @stephenw10
        last edited by 4o4rh

        @stephenw10 ok, guys. thanks. I can see the port 8000 is coming from the svr vlan gateway address now instead of the wh2900c. and it is still being reset.

        So it is clear, it is the truenas 12.1 box (or the jail that the weewx is running in).

        any chance to guide me here with your freebsd knowledge pls

        1 Reply Last reply Reply Quote 0
        • stephenw10S Online
          stephenw10 Netgate Administrator
          last edited by

          How exactly are you seeing that? In the state table? Packet capture?

          I would have expected the connection to succeed after being translated to the interface address.

          Steve

          4 1 Reply Last reply Reply Quote 0
          • 4 Offline
            4o4rh @stephenw10
            last edited by

            @stephenw10 packet capture instead of the wh2900c address from before, it shows the svr vlan gateway address. so both addresses are on the same network.

            1 Reply Last reply Reply Quote 0
            • stephenw10S Online
              stephenw10 Netgate Administrator
              last edited by

              Mmm, OK. Well if you are seeing traffic leave the interface the server is on and using the interface IP then pfSense is both routing and translating correctly.
              Something in the FreeNAS firewall or the server config is rejecting it for some other reason.

              Check the server logs. Are those requests actually getting that far?

              Steve

              4 1 Reply Last reply Reply Quote 0
              • 4 Offline
                4o4rh @stephenw10
                last edited by

                @stephenw10 thanks guys. i got it working. was an issue with the application.

                johnpozJ 1 Reply Last reply Reply Quote 1
                • johnpozJ Online
                  johnpoz LAYER 8 Global Moderator @4o4rh
                  last edited by

                  @gwaitsi said in PFSense [RST, ACK] packet when accessing a site:

                  i got it working. was an issue with the application.

                  I would remove your source nat then.. I wouldn't recommend natting between local networks.

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 25.07 | Lab VMs 2.8, 25.07

                  4 1 Reply Last reply Reply Quote 0
                  • 4 Offline
                    4o4rh @johnpoz
                    last edited by

                    @johnpoz already did, thanks :-)

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.