And in your firewall logs do you have show blocked by default rule?

If so check the logs and see if you can find anything stopping it.

 

Also check out your states you can watch active connections by throwing
192.168.1.10 in your filter.

If you see connections coming through on those states it may be a
misconfiguration on the server itself.

-Tim

 

From: Ryan Rodrigue [mailto:[EMAIL PROTECTED] 
Sent: Wednesday, December 26, 2007 11:05 AM
To: support@pfsense.com
Subject: RE: [pfSense Support] Virtual Ips

 

Sorry.  I forgot to let you know.  I do have the correct IP address assigned
by my isp.  To answer your other question,  the 

wan rule is pass protocol:any port:any source:any  destination:192.168.1.10
gateway:default

this rule is at the top of the list. (first processed)

i figured id go for simple and the block what i don't need after.

-----Original Message-----
From: Tim Dickson [mailto:[EMAIL PROTECTED]
Sent: Wednesday, December 26, 2007 12:19 PM
To: support@pfsense.com
Subject: RE: [pfSense Support] Virtual Ips

What are the rules you are using on the WAN for traffic.

Keep in mind when you are defining the destination address it should be the
PRIVATE IP not the PUBLIC one

If you are getting the correct address on whatismyip then the NAT mapping is
fine. it is firewall rules that are messing you up.

-Tim

 

From: Ryan Rodrigue [mailto:[EMAIL PROTECTED] 
Sent: Wednesday, December 26, 2007 10:27 AM
To: support@pfsense.com
Subject: RE: [pfSense Support] Virtual Ips

 

I have it setup as Proxy ARP

 

I went to 1:1 NAT and firewall rules and specified the 73 and 72 as two
seperate entries using the /32 subnet mask

 

on the WAN interface it is setup as x.x.x.74  /29

 

I setup a wan rule to allow anything with the destination 192.168.1.10 and
same for 192.168.1.100

 

I can still not get anything to work.  I am getting the correct IP address
if i go to whatismyip.com, but when i try to hit the webserver ip from my
phone (seperate network all together)  it doesn't work.  I thought this was
going to be fairly simple. lol

-----Original Message-----
From: Curtis LaMasters [mailto:[EMAIL PROTECTED]
Sent: Wednesday, December 26, 2007 12:00 PM
To: support@pfsense.com
Subject: Re: [pfSense Support] Virtual Ips

Under Virtual IP's are you using Carp, Proxy Arp, or IP?  If you want to use
1:1 NAT, go ahead and do so for that specific IP address, then under the
firewall rules add in a rule to match the traffic you would like to permit.
It should be that simple.  Additionally, the IP's 73 and 72 are within your
given range correct?  Are you using the correct subnet mask? 

Curtis 



__________ NOD32 2747 (20071225) Information __________

This message was checked by NOD32 antivirus system.
http://www.eset.com

Reply via email to