I figured it out. Doing a dump with pfctl -sr | grep 8443, I noticed that reply-to was sending the replies to my gateway (192.168.1.1) instead of the machine on the LAN.
I have fixed this by clicking on advanced options, and then checking disable reply-to.
All is well now.
I have fixed this by clicking on advanced options, and then checking disable reply-to.
All is well now.