<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[WAN &amp; VPN Tunnel, Incoming Traffic]]></title><description><![CDATA[<p dir="auto">Hi,</p>
<p dir="auto">I am doing something wrong here - but I don't see it. Note that this is a testing setup</p>
<p dir="auto">Basic Network LAN: 192.168.49.0/24<br />
pfSense: 192.168.49.1<br />
WAN: PPoE on VLAN - working<br />
VPN: Wireguard Tunnel to AIrVPN - working.</p>
<p dir="auto">Client 192.168.49.21<br />
Gateway: 192.168.49.1<br />
Running: Telnet Server (HK-Telnet-Server). This is accessible locally<br />
Firewall is off</p>
<p dir="auto">VPN Provider is AirVPN<br />
Tunnel is up<br />
Port Forward Port: 63816 on Tunnel for this device only</p>
<p dir="auto">pfSense Rules etc (for specific case)<br />
NAT Rules<br />
Port Forward:<br />
<img src="/assets/uploads/files/1659479831687-02927ae2-7b06-4ea5-805c-45bbfe94df33-image.png" alt="02927ae2-7b06-4ea5-805c-45bbfe94df33-image.png" class=" img-fluid img-markdown" /><br />
Outbound<br />
<img src="/assets/uploads/files/1659479903170-df72a2d3-6ef6-4a8c-a137-3c66466d1d55-image.png" alt="df72a2d3-6ef6-4a8c-a137-3c66466d1d55-image.png" class=" img-fluid img-markdown" /><br />
Firewall Rules (WG_AirVPN)<br />
<img src="/assets/uploads/files/1659479970369-8a92bd78-fc84-44d9-aae3-29cf2faf0515-image.png" alt="8a92bd78-fc84-44d9-aae3-29cf2faf0515-image.png" class=" img-fluid img-markdown" /><br />
Firewall Rules (LAN)<br />
<img src="/assets/uploads/files/1659480090522-da2818ff-e93c-4a46-b810-6cd82e4fb4d0-image.png" alt="da2818ff-e93c-4a46-b810-6cd82e4fb4d0-image.png" class=" img-fluid img-markdown" /><br />
No floating rules</p>
<p dir="auto">With the rules set as above - the AirVPN website shows the port as open<br />
Browsing from the Client (.21) shows the AirVPN Server IP Address - not the unencrypted ISP Address</p>
<p dir="auto">But I goto a remote PC elsewhere on the internet<br />
Telnet (VPN Address) and I get connect fail.<br />
[And my remote site has just had a powercut - sigh]</p>
<p dir="auto">I have something very similar working through the WAN Interface on another firewall - and it works. Its just not working here and I don't see why.</p>
]]></description><link>https://forum.netgate.com/topic/173864/wan-vpn-tunnel-incoming-traffic</link><generator>RSS for Node</generator><lastBuildDate>Wed, 15 Apr 2026 19:58:29 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/173864.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 02 Aug 2022 23:04:13 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to WAN &amp; VPN Tunnel, Incoming Traffic on Tue, 02 Aug 2022 23:14:42 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/justconfused">@<bdi>justconfused</bdi></a><br />
And to reply to my own post</p>
<p dir="auto">Oh Shit - I am telnetting on the wrong bloody port.</p>
<p dir="auto">Note that this is a demonstration of how writing things down can help think things through - even when you are being an utter moron.</p>
<p dir="auto">I am certainly not going to admit just how long I have spent struggling with this (and a very similar related issue which is the reason for this test setup)</p>
<p dir="auto">Sigh</p>
]]></description><link>https://forum.netgate.com/post/1055074</link><guid isPermaLink="true">https://forum.netgate.com/post/1055074</guid><dc:creator><![CDATA[JustConfused]]></dc:creator><pubDate>Tue, 02 Aug 2022 23:14:42 GMT</pubDate></item></channel></rss>