Seting NAT Straight insideout outsidein and dreambox



  • I am N00B on this.
    :D
    I have set up a ESX 4 host with pfsense in it.
    My goal is to remove as meny computers as possibel that is physical.

    I manage to setup connection to the internet and the pfsense is, to my knowledge, working.
    Client gets dhcp, internet and it works great
    I have a dreambox and this for my tv
    And it get its code from the net. Here is where my problem starts

    My dreambox is on static ip same net as my pfsense
    no vlan
    dreambox 192.168.100.30 and 192.168.100.31
    According to the internet I need 12500 open

    If I press show state I get this:

    udp
    192.168.100.1:53 <- 192.168.100.31:1031
    MULTIPLE:MULTIPLE

    tcp
    13.13.11.64:12500 <- 192.168.100.31:2525
    CLOSED:SYN_SENT

    tcp
    192.168.100.31:2525 -> 31.13.15.77:27952 -> 13.13.11.64:12500
    SYN_SENT:CLOSED

    tcp
    13.13.11.64:12500 <- 192.168.100.31:2526
    CLOSED:SYN_SENT

    tcp
    192.168.100.31:2526 -> 31.13.15.77:7126 -> 13.13.11.64:12500
    SYN_SENT:CLOSED

    tcp
    13.13.11.64:12500 <- 192.168.100.31:2527
    CLOSED:SYN_SENT

    tcp
    192.168.100.31:2527 -> 31.13.15.77:22989 -> 13.13.11.64:12500
    SYN_SENT:CLOSED

    tcp
    13.13.11.64:12500 <- 192.168.100.31:2528
    CLOSED:SYN_SENT

    tcp
    192.168.100.31:2528 -> 31.13.15.77:9862 -> 13.13.11.64:12500
    SYN_SENT:CLOSED

    tcp
    13.13.11.64:12500 <- 192.168.100.31:2529
    CLOSED:SYN_SENT

    tcp
    192.168.100.31:2529 -> 31.13.15.77:26594 -> 13.13.11.64:12500
    SYN_SENT:CLOSED

    I guess SYN_SENT:ClOSED means I need to open it somewhere
    The above IP is fake. it is just to show You what I want to do. I do not understand how I am about to open all ports since the darn Dreambox jumps to all sorts of ports.
    Is it only me who has dreambox and want to run pfsence in the wide world
    Where do Start?
    I tried to open 12500 and that did not work. Is pfsense looked down from all ports from inside out? I can see port 2529 is not working? Do I need to open all of each port individually for my box?

    Please advice a noob on its first steps in pfsense


  • Rebel Alliance Global Moderator

    by default all ports would be open outbound, you prob need to setup a port forward.  What ports does your dreambox use?  I believe this can be changed.

    So you have 2 dreamboxes?  Why are you listing 2 different IPs?

    Once your sure what port you need to forward - then following
    http://doc.pfsense.org/index.php/How_can_I_forward_ports_with_pfSense%3F


Locked