• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

[SOLVED] NAT not working

Scheduled Pinned Locked Moved NAT
6 Posts 2 Posters 607 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • ?
    A Former User
    last edited by A Former User May 16, 2020, 4:58 PM May 14, 2020, 5:53 PM

    Hi i have a rule nat create but not work, well i try access cant make it. Please help me and only work my access on pfsense dashboard created on rules tab also the ping

    001.png

    Also i execute this command:

    pfctl -s nat

    no nat proto carp all
    nat-anchor "natearly/" all
    nat-anchor "natrules/
    " all
    nat on vmx1 inet from <tonatsubnets> to any port = isakmp -> 19.23.4.50 static-port
    nat on vmx1 inet6 from <tonatsubnets> to any port = isakmp -> (vmx1) round-robin static-port
    nat on vmx1 inet from <tonatsubnets> to any -> 19.23.4.50 port 1024:65535
    nat on vmx1 inet6 from <tonatsubnets> to any -> (vmx1) port 1024:65535 round-robin
    no rdr proto carp all
    rdr-anchor "relayd/" all
    rdr-anchor "tftp-proxy/
    " all
    rdr on vmx1 inet proto tcp from any to 19.3.1.16 port = https -> 192.168.20.8
    rdr on vmx1 inet proto tcp from any to 19.3.1.19 port = ssh -> 192.168.20.4
    rdr on vmx1 inet proto tcp from any to 19.3.1.19 port = smtp -> 192.168.20.3
    rdr on vmx1 inet proto tcp from any to 19.3.1.19 port = ssh -> 192.168.20.3
    rdr-anchor "miniupnpd" all

    Please help me.

    1 Reply Last reply Reply Quote 0
    • V
      viragomann
      last edited by May 14, 2020, 6:42 PM

      Why do you think, it does not work?

      Use the packet capture tool in the Diagnostic menu to investigate and check if you get packets on the WAN interface and how the are leaving on the internal interface.

      1 Reply Last reply Reply Quote 0
      • ?
        A Former User
        last edited by May 14, 2020, 6:51 PM

        Yes i probed the tool in diagnostic but not appear a result, also in the log of firewall not appear conections external to my ip public of the mail server (190.x.z.y/29); also all my server are in dmz network. Only can access to my ip public wan (190.a.b.c/29) my others ip not accessibles.

        V 1 Reply Last reply May 14, 2020, 6:55 PM Reply Quote 0
        • V
          viragomann @A Former User
          last edited by May 14, 2020, 6:55 PM

          @klausneil said in NAT not working:

          my others ip not accessibles

          Have you added them as IP alias?

          1 Reply Last reply Reply Quote 0
          • ?
            A Former User
            last edited by A Former User May 14, 2020, 7:53 PM May 14, 2020, 7:48 PM

            Hi, i dont have alias, i haved all worked perfect but happened a trouble and i reinstall the firewall, them i create all my policys, that before have but now i have this trouble. I think that mabe my ISP provider can make sonthing in your cisco router, well i read this link and say me same.

            1 Reply Last reply Reply Quote 0
            • ?
              A Former User
              last edited by May 16, 2020, 4:58 PM

              Hi, well at final all this it was by my ISP they make a wrong configuration in your cisco modem but well now all is right. Thanks to viragomann

              1 Reply Last reply Reply Quote 0
              6 out of 6
              • First post
                6/6
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                This community forum collects and processes your personal information.
                consent.not_received