• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Own Domain not available from internal. From external everythin Ok

Scheduled Pinned Locked Moved NAT
3 Posts 3 Posters 746 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • S
    scrj256
    last edited by Dec 20, 2014, 7:36 PM

    Hi all

    I have a problem with my pfsense network. I can reach my services from external over my domain: ftp://example.com:21  when I try to open my services from the Lan I have to use the Lan IP Adress: ftp://10.0.0.10:21 for example.

    Does anybody know why that happens?

    Thanks for answers

    1 Reply Last reply Reply Quote 0
    • W
      Wolf666
      last edited by Dec 20, 2014, 10:10 PM

      Take a look to your DNS Resolver/Forwarder and check to map DHCP Leases.

      Modem Draytek Vigor 130
      pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
      Switch Cisco SG350-10
      AP Netgear R7000 (Stock FW)
      HTPC Intel NUC5i3RYH
      NAS Synology DS1515+
      NAS Synology DS213+

      1 Reply Last reply Reply Quote 0
      • P
        phil.davis
        last edited by Dec 22, 2014, 8:08 AM

        When you use the name, that translates to the public IP address, which goes to the WAN of your pfSense. That is all a bit tricky - the packets are coming from the LAN side and turning up as incoming on WAN, then are port-forwarded back to the server in question. NAT reflection can make that stuff happen OK, but it is easiest to do split-DNS.
        On your pfSense DNS add a host override for example.com pointing it to 10.0.0.10 - then clients on your LAN cab use "example.com" in their URLs and for them it will translate to 10.0.0.10 and work.
        User out on the public internet will get the "real" translation of "example.com" to your public IP and use that like they do now.

        As the Greek philosopher Isosceles used to say, "There are 3 sides to every triangle."
        If I helped you, then help someone else - buy someone a gift from the INF catalog http://secure.inf.org/gifts/usd/

        1 Reply Last reply Reply Quote 0
        3 out of 3
        • First post
          3/3
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
          This community forum collects and processes your personal information.
          consent.not_received