Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Zabbix Port Fowarding

    Scheduled Pinned Locked Moved NAT
    5 Posts 3 Posters 579 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • E
      esilva0608
      last edited by

      Hey guys, i have a problem with connection between Zabbix Agent and Zabbix Server, but i think its can be fixed with a rule in pfSense. Here's the cenario:

      zabbix-pfsense topology.png

      Company A and B are just examples...

      Company B: The port 10050 is open on Zabbix Server and DMZ Enabled

      According to my tests and the information provided in the image. It appears that Zabbix cannot communicate with A.DDNS.NET
      Would it be possible to create some rule in pfSense for this? I thought about NAT, but I'm not sure. Or the problem is something with Zabbix Configuration?

      error message.png

      1 Reply Last reply Reply Quote 1
      • JonathanLeeJ
        JonathanLee
        last edited by

        Add a default route they are in different subnets and different broadcast domains

        Make sure to upvote

        E 1 Reply Last reply Reply Quote 2
        • A
          araujo0608
          last edited by

          Because they are in differents networks... you can add a route or vpn (like OpenVPN)

          1 Reply Last reply Reply Quote 1
          • E
            esilva0608 @JonathanLee
            last edited by

            @JonathanLee thanks for your answer, but i don't understand yet... I should make a static route in pfsense? Because in section Advanced > Routing i should insert an IP and not the ddns.net...
            Same i insert the public IP, it will change later...

            JonathanLeeJ 1 Reply Last reply Reply Quote 0
            • JonathanLeeJ
              JonathanLee @esilva0608
              last edited by JonathanLee

              @esilva0608 yes anything with that subnets destination must be directed to the other routers address so it can find what you want. It’s like library it needs the location of where the books or data is. Static route but just for that subnets destination, tell it to go to that firewall, do the same on the other firewall in reverse. If they are geographically separated you will need a VPN networking between them. If you can connect the routers together with a backbone cable you just need a static route.

              Static route
              Anything requesting the other private subnet——-send to the other firewalls ip address—>

              Or you can be specific and the source could be a specific IP address only or a couple of them.

              Make sure to upvote

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.