Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Webserver behind pf Sense

    Firewalling
    3
    4
    962
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      schnibli
      last edited by

      Hello,
      I know my english is bad but i wil try it :)

      I have a Synology Nas wo is running a Webpage.
      The webpage is now available for local Network.

      Now its the moment where i like to go online with this Page.

      I set into the pf sense folowing things.
      i Disabled "Block private networks"

      Admin Access:
      Protocol = https
      tcp port = 81
      (so i think port 80 is free)
      and i add following NAT:Port Forward:

      if=Wan // Proto: TCP // Src.addr=* // src.ports=* //dest.addr=WAN address // dest.ports=80(http)//nat ip = 192.168.61.5(Synology) // nat ports= 80(http)

      i cant access the page.
      can someone help me?

      1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator
        last edited by

        from where can you not access the page - are you trying to do a nat reflection as a test?  Or are you actually outside your network.  Why did you turn off block private networks, is your wan on pfsense a private behind a nat.  If so you would have to forward as well on the device in front of pfsense.

        When you created the port forward, did you let it create the firewall rule?

        You sure your web server is not running its own firewall blocking access from anything not on the 192.168.61.0/24 - does this webserver have its gateway set to pfsense, ie can it actually talk to the internet?  Make sure that 80 is not blocked by your isp.. Many isps for home connections block inbound traffic to server ports, etc.

        All of these basic troubleshooting steps are in the port forwarding troubleshooting doc https://doc.pfsense.org/index.php/Port_Forward_Troubleshooting

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

        1 Reply Last reply Reply Quote 0
        • S
          schnibli
          last edited by

          From outsite works now… but when i try it intern with wan address it wont work.

          1 Reply Last reply Reply Quote 0
          • KOMK
            KOM
            last edited by

            To access the LAN server through its WAN IP address, you need to enable NAT Reflection.  System - Advanced - Firewall / NAT - Network Address Translation.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.