Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - jjonsson

#1
17.1 Legacy Series / Re: Port Forward Virtual IP
June 17, 2017, 11:32:13 AM
Ok, this is very strange. Port forward to X.X.199.4 works as long as no similar portforward is setup to X.X.199.3

I have portforward to SSH up running. I get correct server when using X.X.199.4 (No portforward is setup on port 22 to X.X.199.3 -> 192.168.12)
Same does not apply with X.X.199.4. Both port 80/443 forwards to X.X.199.3 instead.

For X.X.199.3 I'm using "WAN address" in port forward rule. For X.X.199.4, I'm using "X.X.199.4" in port forward rule. I can't use X.X.199.3 instead of WAN address (seems like that would solve the issue).

Is this a bug or ?
#2
17.1 Legacy Series / Port Forward Virtual IP
June 08, 2017, 04:24:06 PM
I can't get portforward to work with a virtual IP. What am I doing wrong ?

The WAN port is X.X.199.3/24. I have added a virtual IP of X.X.199.4/24

I have port forward from WAN address to internal host and I have port forward from virtual Ip to internal (different) host.
WAN address to 192.168.10.12


Virtual IP to 192.168.10.16


If entering https://X.X.199.4/ host on WAN address (192.168.10.12) is shown, not on virtual IP (192.168.10.16)

Any help appreciated...
#3
Found it!

Firewall: Virtual IPs right ?
#4
Is that possible ? And how to configure.

My WAN port is connected to switch with a /24 range of IP-addresses. I need to configure several public IPs on the WAN interface.

How to do that ?
#5
It seems to work now. Question is though, how do I get FTP TLS to work ?

This is what my client says:

Status:   Connecting to X.X.X.X:21...
Status:   Connection established, waiting for welcome message...
Response:   220---------- Welcome to Pure-FTPd [privsep] [TLS] ----------
Response:   220-You are user number 1 of 50 allowed.
Response:   220-Local time is now 13:18. Server port: 21.
Response:   220-This is a private system - No anonymous login
Response:   220-IPv6 connections are also welcome on this server.
Response:   220 You will be disconnected after 15 minutes of inactivity.
Command:   AUTH TLS
Response:   234 AUTH TLS OK.
Status:   Initializing TLS...
Error:   GnuTLS error -110: The TLS connection was non-properly terminated.
Status:   Server did not properly shut down TLS connection
Error:   Could not connect to server

Any help is appreciated :-)
#6
The problem is I don't know how to setup reverse-proxy. Those pictures on the link doesn't look like anything I can find i the interface.
So how do I setup a reverse-proxy for FTP on newest version ?
#7
17.1 Legacy Series / How to setup FTP port forward ?
March 01, 2017, 11:49:59 AM
I need to access a FTP server behind the opnsense firewall from the Internet (Reverse FTP proxy ?)

Googling gives me these:
https://forum.opnsense.org/index.php?topic=3956.0
https://forum.opnsense.org/index.php?topic=3868.0

But the don't look at all like my interface. I'm running OPNsense v17.1.2-amd64

Any help appreciated...