OPNsense Forum

Archive => 22.1 Legacy Series => Topic started by: AF1E on May 26, 2022, 11:20:01 PM

Title: Port forwarding rule set up but blocked by Default Deny
Post by: AF1E on May 26, 2022, 11:20:01 PM
I have a port forwarding rule setup up but it is being blocked by a system rule "default deny / state violation rule"

What am I missing.

See attached image of the log.

Thanks for any help.
Title: Re: Port forwarding rule set up but blocked by Default Deny
Post by: Patrick M. Hausen on May 26, 2022, 11:28:21 PM
Please post a screenshot of the complete settings of that port forwarding.
Title: Re: Port forwarding rule set up but blocked by Default Deny
Post by: AF1E on May 26, 2022, 11:51:58 PM
Here are my rules.  See image.
Title: Re: Port forwarding rule set up but blocked by Default Deny
Post by: AF1E on May 26, 2022, 11:55:37 PM
Updated with outbound rule.
Title: Re: Port forwarding rule set up but blocked by Default Deny
Post by: Patrick M. Hausen on May 27, 2022, 12:32:28 AM
The detail screen you get when you click on "edit" for this particular port forwarding, please.
Title: Re: Port forwarding rule set up but blocked by Default Deny
Post by: AF1E on May 27, 2022, 12:06:27 PM
See the detailed port forward rule in attached.

Title: Re: Port forwarding rule set up but blocked by Default Deny
Post by: Patrick M. Hausen on May 27, 2022, 12:22:50 PM
RC_Server is an external address? Try to change the "Associated firewall rule" to "pass".
Title: Re: Port forwarding rule set up but blocked by Default Deny
Post by: AF1E on May 27, 2022, 01:21:06 PM
I am hosting the RCServer on 192.168.1.143 .  I am attempting to set up Remotehams which connects to my ham radio and allows for me to connect remotely through the remote hams server with client software. See remotehams.com for information or see http://www.n8mdp.com/remotehams_pcr.php for a simple step by step setup.  Everything works fine when I connect with the client running on my lan using my local ip but the server sofware requires two ports to be port forwarded 4524 and 4525 (one for control and another for VOIP) to connect from outside my network. 
Title: Re: Port forwarding rule set up but blocked by Default Deny
Post by: Patrick M. Hausen on May 27, 2022, 04:33:27 PM
The address in that port forwarding entry needs to be the external address, e.g. "WAN address", because that's what external systems will connect to. The port forwarding entry the forwards (hence the name) to your internal system. Also check the "pass" parameter I already mentioned.