Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    how come on a natted port 80 a blocked ip can still telnet in

    Scheduled Pinned Locked Moved Firewalling
    24 Posts 4 Posters 2.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      Gerard64
      last edited by

      Still there is a difference:

      Wen i remove the port 80 from the http_https ports alias i get a different outcome a timeout.
      Wen i add port 80 to the http_https ports alias i get a connection with telnet on port 80.

      And in both these tests a different log entry.
      The first a block on the public ip and the second on the local ip of the webserver.

      Specially since somebody is hitting my pfsense box this way, for several days, with a lot of different ip addresses all day and night.

      I don't know what his plan is but i am not comfortable with it.

      1 Reply Last reply Reply Quote 0
      • KOMK
        KOM
        last edited by

        I've explained everything already and I don't know what else to tell you.

        1 Reply Last reply Reply Quote 1
        • G
          Gerard64
          last edited by

          Oke i understand.
          Thank you a lot for helping and thinking with me.
          I am not yet reassured but that's probably my stubborn brain i am sorry for that.

          Good night sir.

          1 Reply Last reply Reply Quote 0
          • GertjanG
            Gertjan @Gerard64
            last edited by Gertjan

            @Gerard64 said in how come on a natted port 80 a blocked ip can still telnet in:

            But i don't want to put that information out on a forum.

            Here a my WAN rules :

            12aeaf38-778a-4588-977c-7942758fe7b5-image.png

            Tell, me : am I at risk now ?

            Btw : I was one NAT rule : the one that gives "Source" hosts access to my "diskstation".

            edit : the NAT rule :

            3e064f53-7e17-4b4c-9d79-a38174290c27-image.png

            No "help me" PM's please. Use the forum, the community will thank you.
            Edit : and where are the logs ??

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.