• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Firewall rules

Firewalling
firewall rules
2
14
1.0k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • R
    richard_newberry
    last edited by Jan 3, 2024, 12:28 PM

    Trying to port forward 3306 to a specific wan ip address. Doesnt work i have to select any for it to work.

    V 1 Reply Last reply Jan 3, 2024, 2:16 PM Reply Quote 0
    • V
      viragomann @richard_newberry
      last edited by Jan 3, 2024, 2:16 PM

      @richard_newberry said in Firewall rules:

      Trying to port forward 3306 to a specific wan ip address. Doesnt work i have to select any for it to work.

      For the source port? Or for what?

      R 1 Reply Last reply Jan 3, 2024, 2:33 PM Reply Quote 0
      • R
        richard_newberry @viragomann
        last edited by Jan 3, 2024, 2:33 PM

        @viragomann source address and source port.

        V 1 Reply Last reply Jan 3, 2024, 2:38 PM Reply Quote 0
        • V
          viragomann @richard_newberry
          last edited by Jan 3, 2024, 2:38 PM

          @richard_newberry
          The source port of MySQL is dynamic, so it even has to be 'any'.
          If the source IP is static and you're know it you can state it in the NAT rule.

          The destination port is static, it's 3306 by default.

          R 1 Reply Last reply Jan 3, 2024, 2:43 PM Reply Quote 0
          • R
            richard_newberry @viragomann
            last edited by Jan 3, 2024, 2:43 PM

            @viragomann tried that doesn't work. Only works with any. Is this a bug?

            V 1 Reply Last reply Jan 3, 2024, 2:47 PM Reply Quote 0
            • V
              viragomann @richard_newberry
              last edited by Jan 3, 2024, 2:47 PM

              @richard_newberry
              What exactly are you intending to achieve?
              "port forward 3306 to a specific wan ip address" seems not really clear to me.

              R 1 Reply Last reply Jan 3, 2024, 2:48 PM Reply Quote 0
              • R
                richard_newberry @viragomann
                last edited by Jan 3, 2024, 2:48 PM

                @viragomann i only want to port forward 3306 from a specific wan ip address not everybody else.

                V 1 Reply Last reply Jan 3, 2024, 2:55 PM Reply Quote 0
                • V
                  viragomann @richard_newberry
                  last edited by Jan 3, 2024, 2:55 PM

                  @richard_newberry
                  So there is a certain WAN address connecting to your WAN at port 3306, and you want to forward this?

                  As I mentioned, if you know the public source IP, you can state it as source in the port forwarding rule. Do you really know the public source IP?
                  But the source port has to be any, because it's dynamic.

                  R 2 Replies Last reply Jan 3, 2024, 3:01 PM Reply Quote 0
                  • R
                    richard_newberry @viragomann
                    last edited by Jan 3, 2024, 3:01 PM

                    @viragomann yes i do tried source ip address and source port to any still doesnt work request timed out.

                    V 1 Reply Last reply Jan 3, 2024, 3:05 PM Reply Quote 0
                    • R
                      richard_newberry @viragomann
                      last edited by Jan 3, 2024, 3:05 PM

                      @viragomann Can you test this please.

                      1 Reply Last reply Reply Quote 0
                      • V
                        viragomann @richard_newberry
                        last edited by Jan 3, 2024, 3:05 PM

                        @richard_newberry
                        So I doubt that you stated the correct IP.

                        To check it outs, set the source IP to any, then go to the associated filter rule and enable logging. Access you server from the respective device. Then check the firewall rule and look, which IP is accessing your MySQL server.

                        R 1 Reply Last reply Jan 3, 2024, 3:07 PM Reply Quote 0
                        • R
                          richard_newberry @viragomann
                          last edited by Jan 3, 2024, 3:07 PM

                          @viragomann i have the right wan ip address.

                          V 1 Reply Last reply Jan 3, 2024, 3:12 PM Reply Quote 0
                          • V
                            viragomann @richard_newberry
                            last edited by Jan 3, 2024, 3:12 PM

                            @richard_newberry
                            So not clear, why it doesn't work.

                            R 1 Reply Last reply Jan 3, 2024, 3:13 PM Reply Quote 0
                            • R
                              richard_newberry @viragomann
                              last edited by Jan 3, 2024, 3:13 PM

                              @viragomann must be a bug can it be checked please.

                              1 Reply Last reply Reply Quote 0
                              1 out of 14
                              • First post
                                1/14
                                Last post
                              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.