note: port 55555 instead of 80 is used to easily filter it in captureslocal client: 192.168.1.50, http server on port 55555opnsense vpn: 10.127.127.1gateway: 10.127.127.2 (public ip 45.157.xxx.xxx)1:1 nat between 45.157.xxx.xxx and 10.127.127.11:1 nat between 10.127.127.1 and 192.168.1.50
state dump:all tcp 192.168.1.50:55555 (10.127.127.1:55555) <- 207.246.xxx.xxx:45046 SYN_SENT:ESTABLISHEDcapture:Interface Capture outputlanvtnet0 20:52:20.631158 IP (tos 0x0, ttl 52, id 11465, offset 0, flags [DF], proto TCP (6), length 60) 207.246.xxx.xxx.45046 > 192.168.1.50.55555: Flags [S], cksum 0xb68a (correct), seq 1839892123, win 64240, options [mss 1460,sackOK,TS val 3739768784 ecr 0,nop,wscale 6], length 0 192.168.1.50.55555 > 207.246.xxx.xxx.45046: Flags [S.], cksum 0xa05b (correct), seq 3704964607, ack 1839892124, win 65280, options [mss 1372,sackOK,TS val 2707705387 ecr 3739768784,nop,wscale 7], length 0 # removed duplicates / retrieswg1wg1 207.246.xxx.xxx.45046 > 10.127.127.1.55555: Flags [S], cksum 0xeee4 (correct), seq 1839892123, win 64240, options [mss 1460,sackOK,TS val 3739768784 ecr 0,nop,wscale 6], length 0 # removed duplicates / retrieswanvtnet0_vlan4 10.127.127.1.55555 > 207.246.xxx.xxx.45046: Flags [S.], cksum 0xd8b5 (correct), seq 3704964607, ack 1839892124, win 65280, options [mss 1372,sackOK,TS val 2707705387 ecr 3739768784,nop,wscale 7], length 0 # removed duplicates / retries
wg1 interface (opt4, wg1)Status upMAC address 00:00:00:00:00:00 - XEROX CORPORATIONMTU 1420IPv4 address 10.127.127.1 / 30Gateway IPv4 10.127.127.2