Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PortForwarding not working on port 443

    Scheduled Pinned Locked Moved NAT
    3 Posts 2 Posters 444 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mrjoli021
      last edited by

      I have several public IP's coming into my firewall. When I do a packet capture on the WAN interface of the firewall and I am seeing the https traffic hitting the firewall from the correct IP. When I browse to the private IP in my LAN I am able to see the website. I have checked the public IP on the server and it is the same I am putting on the destination address on the NAT. I have also attempted to set the private IP to other internal web servers on the same subnet and nothing. I have setup the NAT rule as follows:
      Interface: WAN
      Protocol: TCP
      Source: Empty
      Destination: <myPublicIP>
      Destination Port Range: Https for both from and to port
      Redirect: Single host: 10.36.45.176 <IP of internal host>

      When I check the logs of the firewall, I see my traffic blocked (so I know that I am hitting it) and I have added the easy rule to the Firewall and it still does not send the traffic to the internal server. I have done a tcpdump on the server in question and not seeing any traffic from the firewall hit it on port 443.

      I have the "Reserved Not assigned by IANA" on the LAN and WAN interface enabled. I have attempted to disable it and the issue still remains.

      Any suggestions?
      What else can I try to troubleshoot this?

      johnpozJ 1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator @mrjoli021
        last edited by

        Post up your port forward and your wan rules.

        The wan rule destination would be the rfc1918 address.. This rule would of been auto created normally when you created the nat, unless you told it not too.

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.8, 24.11

        1 Reply Last reply Reply Quote 0
        • M
          mrjoli021
          last edited by

          Below is my NAT rules and my WAN rules.

          CapturFiles-202108230_210834.jpg CapturFiles-202108230_210853.jpg

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.