OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • General Discussion »
  • Problem with NAT and Rule
« previous next »
  • Print
Pages: [1]

Author Topic: Problem with NAT and Rule  (Read 168 times)

arnodu59

  • Newbie
  • *
  • Posts: 4
  • Karma: 0
    • View Profile
Problem with NAT and Rule
« on: October 30, 2024, 04:14:27 pm »
Hello everyone,

Looking around, I see that the subject has come up several times, but after trying everything I've read on the forum, I can't get port forwarding to work...

I would like OPNSense to forward port 8123 to a local ip...
I've created a WAN rule and configured NAT.

In the firewall logs I can see the authorization, but my local server doesn't respond... (no problem from the local network)

Here is the firewall log:
https://ibb.co/fk45vM8

The NAT setting :
https://ibb.co/4mbR7ns

The WAN rule :
https://ibb.co/z4S9Lr5

And finally the advanced firewall settings :
https://ibb.co/n78VGsq

Do you know where I made a mistake?

Thanks in advance for your help :)
Logged

viragomann

  • Full Member
  • ***
  • Posts: 230
  • Karma: 7
    • View Profile
Re: Problem with NAT and Rule
« Reply #1 on: October 30, 2024, 04:21:58 pm »
Possibly the server blocks access by its own firewall?
This is the default behavior normally, if you didn't explicitly allow access from outside of its subnet.
Logged

arnodu59

  • Newbie
  • *
  • Posts: 4
  • Karma: 0
    • View Profile
Re: Problem with NAT and Rule
« Reply #2 on: October 30, 2024, 04:52:56 pm »
Hello,

No, the local server authorizes the connection (before OPNsense, my router redirected the ports and there was no problem).
Logged

viragomann

  • Full Member
  • ***
  • Posts: 230
  • Karma: 7
    • View Profile
Re: Problem with NAT and Rule
« Reply #3 on: October 30, 2024, 05:03:36 pm »
Quote from: arnodu59 on October 30, 2024, 04:52:56 pm
(before OPNsense, my router redirected the ports and there was no problem).
And it did masquerading on inbound traffic, as some consumer class routers do...

Sniff the traffic on the internal interlace to see if the packets are forwarded or not.
If there are no replies configure your server properly.
Logged

dseven

  • Sr. Member
  • ****
  • Posts: 338
  • Karma: 36
    • View Profile
Re: Problem with NAT and Rule
« Reply #4 on: October 30, 2024, 06:12:47 pm »
There's an unneeded extra rule on the WAN interface, but I don't think it'd break the port forwarding, so I'm also leaning towards something on the internal server side. Maybe a host-based firewall? Or lack of a default route (but that would probably break other things in HA).
Logged

arnodu59

  • Newbie
  • *
  • Posts: 4
  • Karma: 0
    • View Profile
Re: Problem with NAT and Rule
« Reply #5 on: October 30, 2024, 06:59:31 pm »
That's right!

The problem was indeed server-side. I had misconfigured the gateway :-/

Thank you all for your help :)
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • General Discussion »
  • Problem with NAT and Rule
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2