OPNsense Forum

Archive => 19.1 Legacy Series => Topic started by: amitis5 on May 27, 2019, 07:52:21 am

Title: Port Forwarding Not Working All of the Time
Post by: amitis5 on May 27, 2019, 07:52:21 am
Hi All,

Thanks in advance for the help/advice.  I'm newer to the system, coming over from Mikrotik.

I have setup several port forwards in the port forward section of NAT.  One rule works fine, my ssh rule.  I've set the others up exactly as the ssh rule, and they are not working. 

I'm trying to redirect port 6001 to port 80 on the internal ip of 16.16.16.100 and it doesn't seem to work.  I've attached a screenshot of my port forward rule for this.  In the firewall rules for the WAN it is automatically placed there, and exactly as the SSH rule that is working.  Where am I going wrong?

Thanks,

amitis5

Title: Re: Port Forwarding Not Working All of the Time
Post by: putt1ck on May 27, 2019, 09:17:00 am
Can you see if the initial port forward is received on target? We're seeing something similar here where the initial packet is received by the target but the ack never makes it back to the source.
Title: Re: Port Forwarding Not Working All of the Time
Post by: amitis5 on May 27, 2019, 07:04:47 pm
I believe that is the case here as well.  I have multiple IPs from our ISP.  When I am on a different IP within out WAN network, port forward works fine, it's only not working when we are on say our LTE. 
Title: Re: Port Forwarding Not Working All of the Time
Post by: putt1ck on May 30, 2019, 08:33:23 am
Ours was a bug in the firewall related to whether or not the gateway for WAN is set to auto or not. We only have one gateway, but either way it is set can cause issues either incoming or outgoing.
Title: Re: Port Forwarding Not Working All of the Time
Post by: amitis5 on May 30, 2019, 11:23:13 pm
My gateway is not set to auto, and it still isn't working.
Title: Re: Port Forwarding Not Working All of the Time
Post by: putt1ck on May 31, 2019, 06:34:26 am
As in the fix on the firewall we are having a similar issue on is switch gateway in WAN interface settings to auto, then back to manual. Though of course this might be a completely different issue to yours!