The NAT reflection only creates the reflection rules, but does not open the ports from your internal interface(s) to the selected target.You will need to add the rules on your internal interfaces too to allow the traffic on port 465,587,993. At least that is how i have it. So on Firewall -> Rules -> your INTERNAL interfaces -> add a rule like:IPv4+6 TCP * * This Firewall 465 * * greets KoS