Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    NAT reflection, what am I missing

    Scheduled Pinned Locked Moved NAT
    5 Posts 2 Posters 482 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      marshin
      last edited by

      I've read multiple post and have tried multiple settings, I feel as though I am missing something.
      I'm new to Pfsense so please be patient with me.

      I have a both a http (for multiple web host) and a port 25565 (minecraft server) port forward. the http points to nginx for resolving and the NAT reflection works perfectly.
      however the NAT reflection for port 25565 does not work.

      Port forward settings:
      interface: WAN
      protocal: TCP
      destination: WAN address
      destination port:25565
      redirect target type: address or alias
      redirect target address:192.168.24.xx
      redirect target port:25565
      NAT reflection: use system default

      System/Advanced/Firewall & NAT
      NAT Reflection mode for port forwards: Pure NAT
      Reflection timeout: (default:blank(2000))
      Enable NAT reflection for 1:1 NAT: Checked
      enable automatic outbound NAT for reflection: Checked

      S 1 Reply Last reply Reply Quote 0
      • S
        SteveITS Galactic Empire @marshin
        last edited by

        @marshin check the list at https://docs.netgate.com/pfsense/en/latest/troubleshooting/nat-port-forwards.html

        Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
        When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
        Upvote ๐Ÿ‘ helpful posts!

        M 2 Replies Last reply Reply Quote 0
        • M
          marshin @SteveITS
          last edited by

          @SteveITS said in NAT reflection, what am I missing:

          https://docs.netgate.com/pfsense/en/latest/troubleshooting/nat-port-forwards.html

          the issue isn't with port forwarding, its with the NAT reflection.

          I might not see how going through the troubleshooting for port forwarding can fix my NAT reflection issue but I will step through it.

          S 1 Reply Last reply Reply Quote 0
          • S
            SteveITS Galactic Empire @marshin
            last edited by

            @marshin it works from outside your network?

            Check setting https://docs.netgate.com/pfsense/en/latest/config/advanced-firewall-nat.html#automatic-outbound-nat-for-reflection

            Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
            When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
            Upvote ๐Ÿ‘ helpful posts!

            1 Reply Last reply Reply Quote 0
            • M
              marshin @SteveITS
              last edited by

              @SteveITS I should have double checked that the server was listening on the default port.

              sorry for making the post as there was nothing wrong with how Pfsense was working. I just had to change the port forwarding to the port the server was listening on and it all started working.

              1 Reply Last reply Reply Quote 1
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.