Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    1 to 1 NAT problem

    Scheduled Pinned Locked Moved NAT
    7 Posts 3 Posters 701 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      tkolaski
      last edited by

      problem with nat 1 to 1 hangs and only remove and add again restores operation ;) . the problem appeared 2 weeks ago on CE and + at the same time.

      S JonathanLeeJ 2 Replies Last reply Reply Quote 0
      • S
        SteveITS Galactic Empire @tkolaski
        last edited by

        @tkolaski Define "hangs"? CE 2.6 and Plus 23.01 are different OSs. Are these on the same ISP connection? Perhaps some sort of ARP problem? Did you power off the ISP router?

        We use 1:1 in our office on 23.01 for all our clients' PCs to connect in to us every few minutes and have had no issues.

        Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
        When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
        Upvote ๐Ÿ‘ helpful posts!

        T 1 Reply Last reply Reply Quote 0
        • JonathanLeeJ
          JonathanLee @tkolaski
          last edited by

          @tkolaski

          Try to adjust the Optimization Latency settings see if that helps. I had my WAN connection keep going down with my DSL because the time is somewhat slowed in the firewall with the Snort, Squid, Squidguard, DNS resolver, ACL lists etc. High Latency stopped all the offline issues.

          Screenshot 2023-05-04 at 8.44.04 AM.png

          Make sure to upvote

          1 Reply Last reply Reply Quote 0
          • T
            tkolaski @SteveITS
            last edited by

            @steveits una
            no access from outside the lan, can't ping addresses outside the lan - after turning off the 1:1 mapping, the ping returns - but for it to work you need to remove 1:1, port forward and virtualip and add it again.

            2.6.0-RELEASE (amd64)
            built on Mon Jan 31 19:57:53 UTC 2022
            FreeBSD 12.3-STABLE
            &
            22.05-RELEASE (amd64)
            built on Wed Jun 22 18:56:13 UTC 2022
            FreeBSD 12.3-STABLE

            strange it happened at the same time in other companies - other ISPs

            S 1 Reply Last reply Reply Quote 0
            • S
              SteveITS Galactic Empire @tkolaski
              last edited by

              @tkolaski When the 1:1 computer isn't working, the rest of the LAN has access via the default WAN IP? Or no one has access?

              Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
              When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
              Upvote ๐Ÿ‘ helpful posts!

              T 1 Reply Last reply Reply Quote 0
              • T
                tkolaski @SteveITS
                last edited by

                @steveits

                yes only the 1:1 computer has no access - it is a web server

                S 1 Reply Last reply Reply Quote 0
                • S
                  SteveITS Galactic Empire @tkolaski
                  last edited by

                  @tkolaski Vague guess, maybe something in the outbound NAT? 1:1 should define its own outbound NAT rules so you shouldn't need to set up anything in outbound NAT.

                  Could anything else on the WAN side of pfSense be using that IP?

                  Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                  When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                  Upvote ๐Ÿ‘ helpful posts!

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.