Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
General Discussion
»
Dual wan group and port forwarding
« previous
next »
Print
Pages: [
1
]
Author
Topic: Dual wan group and port forwarding (Read 984 times)
adam3914
Newbie
Posts: 4
Karma: 0
Dual wan group and port forwarding
«
on:
April 21, 2023, 03:32:35 pm »
I just setup a dual wan group to use a failover cellular connection. I also use dynamic dns which still updates properly. The issue I am having is when I try and access a service from inside the firewall using my dynamic dns address it doesn't connect, it doesn't work even if I use my external ip address from inside the firewall. It still works from outside the firewall.
Logged
adam3914
Newbie
Posts: 4
Karma: 0
Re: Dual wan group and port forwarding
«
Reply #1 on:
April 21, 2023, 07:57:43 pm »
I was able to fix it by adding the lan interface to the port forward. Hopefully this doesn't create problems.
Logged
patrick3000
Jr. Member
Posts: 87
Karma: 6
Re: Dual wan group and port forwarding
«
Reply #2 on:
April 22, 2023, 09:41:15 am »
Using port forwarding on the LAN interface may work (I don't know for sure). However, the two traditional ways to access a dynamic DNS name from LAN side are to either use NAT reflection or else split DNS.
The way I've always done it is split DNS. In OPNsense, this can be done from "Services," "Unbound DNS," "Overrides." From there, you can add an override with the domain name of your dynamic DNS and whatever IP address you want it associated with (which is the same IP address that you're port forwarding to). This will ensure that the name resolves to the proper IP address when accessed on the LAN side.
There is also a way to do it with NAT reflection, and i believe there some options for configuring NAT reflection in the port forwarding menu. However, I'm not really familiar with that.
«
Last Edit: April 22, 2023, 09:44:40 am by patrick3000
»
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
General Discussion
»
Dual wan group and port forwarding