Why does it happen that the internal server IP address can be scanned from the outside? Is it something I didn't close? Please give pointers.
;D
You should try to check your NAT rules if there is a One-to-One or Port Forwarding rule target to 192.168.1.40
By default, the WAN port is block all inbound traffic.