Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Can pfsense detect requests and routing to set hostname

    Scheduled Pinned Locked Moved General pfSense Questions
    39 Posts 3 Posters 1.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S
      stephenw10 Netgate Administrator @sysbitnet
      last edited by

      @sysbitnet said in Can pfsense detect requests and routing to set hostname:

      Dest. Address: web1

      That destination on the WAN would be the WAN address if you don't have any VIPs on it. web1 is an internal IP that could never be reached by an external host.

      1 Reply Last reply Reply Quote 0
      • sysbitnetS
        sysbitnet
        last edited by

        @stephenw10

        Do you maybe know what can be a problem why i get

        503 Service Unavailable
        No server is available to handle this request.

        When i try to use another service like Wowza?

        Port 80,443 its working perfect, but when i wont to add on the same case other port or services i get the same error

        503 Service Unavailable
        No server is available to handle this request.

        Thank you

        1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          I don't know what Wowza is. What exactly have you added? How are you testing it? What do you expect to see?

          sysbitnetS 1 Reply Last reply Reply Quote 0
          • sysbitnetS
            sysbitnet @stephenw10
            last edited by

            @stephenw10

            Wowza is a video platform with industry-leading technology that delivers quality live and VOD streaming with integrated CMS, analytics, and more.

            But i have the same problem when i try another service, like access on proxmox or any other service who requests another port number but is not port 443 and port 80

            Any time i get
            503 Service Unavailable
            No server is available to handle this request.

            1 Reply Last reply Reply Quote 0
            • stephenw10S
              stephenw10 Netgate Administrator
              last edited by

              Sounds like HAProxy it not configured to use that port so it just returns that 503 error.

              1 Reply Last reply Reply Quote 0
              • sysbitnetS
                sysbitnet
                last edited by

                @stephenw10
                I agree with you.

                How can testing what is the problem only leave this service, for example, i used to test proxmox.

                Inside Services / HAProxy / Backend

                Name: PM_8006
                Mode: active
                Name: pm
                Forward to: Address+Port
                Address: 192.168.100.3
                Port: 8006
                Encrypt(SSL): yes
                SSL checks: yes
                And in the Health check method set: basic

                How i configure On the Frontend part.

                Services / HAProxy / Frontend
                Name: PM_Front
                External address
                Listen address: WAN address (IPv4)
                Port: 8006
                SSL Offloading: yes

                In Access Control lists inside the same
                Name: pm
                Expression: Host matches
                CS: empty
                Note: empty
                Value: pm.domain.com

                In part Actions inside the same

                Action Use Backend the name that i set on PM_8006
                Condition acl names: the same name that i set in Access Control lists pm

                And inside the same Additional certificates select SSL Offloading what i on System / Certificates / Certificates

                The same certificate and added inside proxmox, because is letsencrypt wildcard certificate

                And when i try to visit https://pm.domain.com:8006/ the result is like this below message.

                503 Service Unavailable
                No server is available to handle this request.

                1 Reply Last reply Reply Quote 0
                • stephenw10S
                  stephenw10 Netgate Administrator
                  last edited by

                  What do you logged?

                  Do you see states created on port 8006? For both front and back end?

                  sysbitnetS 1 Reply Last reply Reply Quote 0
                  • sysbitnetS
                    sysbitnet @stephenw10
                    last edited by

                    This post is deleted!
                    1 Reply Last reply Reply Quote 0
                    • sysbitnetS
                      sysbitnet
                      last edited by

                      @stephenw10

                      I do the same as how i explained in my last post.

                      I tried many other services that request custom ports and got the same.

                      503 Service Unavailable
                      No server is available to handle this request.

                      1 Reply Last reply Reply Quote 0
                      • stephenw10S
                        stephenw10 Netgate Administrator
                        last edited by

                        So do you see states created?

                        1 Reply Last reply Reply Quote 0
                        • sysbitnetS
                          sysbitnet
                          last edited by

                          Yes, I set.

                          When i do this just for testing
                          Firewall-NAT-Port-Forward-pm.jpg
                          How can i see if i correctly configured and tried to access it, this is working perfectly.

                          IP_ProxMox is set localhost IP set inside Firewall / Aliases / IP

                          When i disable this Port Forward and now testing to login again like https://pm.domain.com:8006 i get this result

                          503 Service Unavailable
                          No server is available to handle this request.

                          If i have a set like this inside HAProxy

                          @sysbitnet said in Can pfsense detect requests and routing to set hostname:

                          Inside Services / HAProxy / Backend

                          Name: PM_8006
                          Mode: active
                          Name: pm
                          Forward to: Address+Port
                          Address: 192.168.100.3
                          Port: 8006
                          Encrypt(SSL): yes
                          SSL checks: yes
                          And in the Health check method set: basic

                          How i configure On the Frontend part.

                          Services / HAProxy / Frontend
                          Name: PM_Front
                          External address
                          Listen address: WAN address (IPv4)
                          Port: 8006
                          SSL Offloading: yes

                          In Access Control lists inside the same
                          Name: pm
                          Expression: Host matches
                          CS: empty
                          Note: empty
                          Value: pm.domain.com

                          In part Actions inside the same

                          Action Use Backend the name that i set on PM_8006
                          Condition acl names: the same name that i set in Access Control lists pm

                          And inside the same Additional certificates select SSL Offloading what i on System / Certificates / Certificates

                          The same certificate and added inside proxmox, because is letsencrypt wildcard certificate

                          And when i try to visit https://pm.domain.com:8006/ the result is like this below message.

                          503 Service Unavailable
                          No server is available to handle this request.

                          1 Reply Last reply Reply Quote 0
                          • stephenw10S
                            stephenw10 Netgate Administrator
                            last edited by

                            But do you see states on port 8006 in Diag > States?

                            sysbitnetS 1 Reply Last reply Reply Quote 0
                            • sysbitnetS
                              sysbitnet @stephenw10
                              last edited by

                              @stephenw10 said in Can pfsense detect requests and routing to set hostname:

                              But do you see states on port 8006 in Diag > States?

                              If you mean on Diagnostics / States / States yes this is what i get as a result.

                              Diagnostics-States-States.jpg

                              1 Reply Last reply Reply Quote 0
                              • stephenw10S
                                stephenw10 Netgate Administrator
                                last edited by

                                Ok. So what is the LAB interface? What are the IPs there?

                                I expect to see a port 8006 state on WAN whilst you're testing.

                                sysbitnetS 1 Reply Last reply Reply Quote 0
                                • sysbitnetS
                                  sysbitnet @stephenw10
                                  last edited by

                                  @stephenw10 said in Can pfsense detect requests and routing to set hostname:

                                  Ok. So what is the LAB interface? What are the IPs there?

                                  I expect to see a port 8006 state on WAN whilst you're testing.

                                  LAB interface is a local private network, 192.168.100.0./24

                                  1 Reply Last reply Reply Quote 0
                                  • stephenw10S
                                    stephenw10 Netgate Administrator
                                    last edited by

                                    Ok so I assume 192.168.100.254 is the LAN interface address.

                                    That state could be the backend on-line check.

                                    If you are trying to connect to it you should also see states on the WAN.

                                    sysbitnetS 1 Reply Last reply Reply Quote 0
                                    • sysbitnetS
                                      sysbitnet
                                      last edited by

                                      I just tested with mobile internet and have this result
                                      Diagnostics-States-States-2.jpg

                                      1 Reply Last reply Reply Quote 0
                                      • sysbitnetS
                                        sysbitnet @stephenw10
                                        last edited by

                                        @stephenw10 said in Can pfsense detect requests and routing to set hostname:

                                        Ok so I assume 192.168.100.254 is the LAN interface address.

                                        That state could be the backend on-line check.

                                        If you are trying to connect to it you should also see states on the WAN.

                                        I get this result with a local private network because i use the same IP and for that reason, i get a local IP

                                        1 Reply Last reply Reply Quote 0
                                        • stephenw10S
                                          stephenw10 Netgate Administrator
                                          last edited by

                                          Ok so you do see a state open on the WAN. Do you also see a new state open on LAB when that happens? That's what you would expect to see if HAProxy is opening the backend.

                                          If it isn't then it's probably not trying because it thinks the backend is down.

                                          sysbitnetS 1 Reply Last reply Reply Quote 0
                                          • sysbitnetS
                                            sysbitnet @stephenw10
                                            last edited by sysbitnet

                                            @stephenw10 said in Can pfsense detect requests and routing to set hostname:

                                            Ok so you do see a state open on the WAN. Do you also see a new state open on LAB when that happens? That's what you would expect to see if HAProxy is opening the backend.

                                            If it isn't then it's probably not trying because it thinks the backend is down.

                                            This is how it configures Backend and Frontend
                                            @sysbitnet said in Can pfsense detect requests and routing to set hostname:

                                            @stephenw10
                                            I agree with you.

                                            How can testing what is the problem only leave this service, for example, i used to test proxmox.

                                            Inside Services / HAProxy / Backend

                                            Name: PM_8006
                                            Mode: active
                                            Name: pm
                                            Forward to: Address+Port
                                            Address: 192.168.100.3
                                            Port: 8006
                                            Encrypt(SSL): yes
                                            SSL checks: yes
                                            And in the Health check method set: basic

                                            How i configure On the Frontend part.

                                            Services / HAProxy / Frontend
                                            Name: PM_Front
                                            External address
                                            Listen address: WAN address (IPv4)
                                            Port: 8006
                                            SSL Offloading: yes

                                            In Access Control lists inside the same
                                            Name: pm
                                            Expression: Host matches
                                            CS: empty
                                            Note: empty
                                            Value: pm.domain.com

                                            In part Actions inside the same

                                            Action Use Backend the name that i set on PM_8006
                                            Condition acl names: the same name that i set in Access Control lists pm

                                            And inside the same Additional certificates select SSL Offloading what i on System / Certificates / Certificates

                                            The same certificate and added inside proxmox, because is letsencrypt wildcard certificate

                                            And when i try to visit https://pm.domain.com:8006/ the result is like this below message.

                                            503 Service Unavailable
                                            No server is available to handle this request.

                                            The web interface can be reached via https://youripaddress:8006 or https://pm.domain.com:8006
                                            proxmox-login.jpg

                                            When i open Stats FS i see Green for this profile
                                            Stats-FS.jpg

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.