Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Full access to the WAN port

    Scheduled Pinned Locked Moved Firewalling
    6 Posts 2 Posters 2.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A Offline
      adrian.ellis
      last edited by

      Hi,  if I use an internal IP for the WAN address (172.30.1.2/24) I cannot access it externally.  I have followed the instuctions relating to opening access to the WAN port for GUI access.  This is the first box I am installing behind a firewall. All my pfsense boxes that have live routeable IP addresses are working 100%.  Please can someone help on this?  ???javascript:void(0);

      1 Reply Last reply Reply Quote 0
      • GruensFroeschliG Offline
        GruensFroeschli
        last edited by

        What exactly are you trying to accomplish?
        Assigning an address out of your LAN to the WAN doesn't make any sense.

        Can you post the layout of your network with the used subnets and where the pfSense you're trying to access is?

        Just a shot into the blue: Did you uncheck the box: "block rfc1918 subnet" on the WAN config page?

        We do what we must, because we can.

        Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

        1 Reply Last reply Reply Quote 0
        • A Offline
          adrian.ellis
          last edited by

          (WWW) –--> (DSL Router  ) ----> (PFsense      ) ----> (LocalNet)
                              172.30.1.1/24-------172.30.1.2/24          192.168.50.x/24

          In my lame attemt above, the DSL router connects to the internet with a live IP.  The WAN link between the Router and PFsense is the 172.30.1.x/24 and the Localnet from PFsense back is 192.168.50.x/24.  The ONLY reason why I have to do it this way is because there are going to be multiple PFsense boxes behind that DSL router.  And I did remove the checkbox on the WAN config page.

          1 Reply Last reply Reply Quote 0
          • GruensFroeschliG Offline
            GruensFroeschli
            last edited by

            From where do you check?
            Is your test-client actually in the 172.30.1.0/24 subnet?

            If someone access from the internet: did you forwards the port on the DSL-modem as well?

            We do what we must, because we can.

            Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

            1 Reply Last reply Reply Quote 0
            • A Offline
              adrian.ellis
              last edited by

              I am testing from my PC plugged into the DSL router (172.30.1.250/24).  Reason for this is that I will have to configure remote access via the DSL router. i have forwarded port 80 and port 22 on the DSL router currently

              1 Reply Last reply Reply Quote 0
              • GruensFroeschliG Offline
                GruensFroeschli
                last edited by

                Can you show a screenshot of the rules you created on your WAN?

                We do what we must, because we can.

                Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.