Thank you for doing these. When my old firewall company went out of business, it was your tutorials that let me move to pfsense and feel pretty confident I was going to be safe after it was done.
@seanunderscorepry2 жыл бұрын
I LOVE that you timestamp this video, others and podcasts so that future viewers will know if what you're speaking to may not apply to their future situations.
@balfit2 жыл бұрын
I believe many teachers I knew could learn from you how to present practical examples that do make sense. Infused with hints at best practices. Nice and clear explanations!
@zacharylewis417 Жыл бұрын
Great video. Thoroughly explained. No issues forwarding ports on my end. At least the ones my provider has open. Danm them.
@piperjohn_32 жыл бұрын
I never fail to learn cool and useful stuff watching your videos.
@VultUxTube2 жыл бұрын
Loved the video, I'm working with the access to some internal servers and using NAT in this moment, glad to know that is the correct way.
@halafradrimx Жыл бұрын
HOLY SHIT Thank you finally a tutorial that explained things proper! My Wireguard now FINALLY WORKS!
@VinnyCThatWhoIBe2 жыл бұрын
Thank you, this is exactly what I've needed for a while.
@tornadotj20592 жыл бұрын
Thanks again for more pfSense tutorials. These are great to pass along to others.
@SpojlerSSJ10 ай бұрын
Thanks! That greatly help me with Port forwarding.
@swubutu Жыл бұрын
Eazy peazy, saved me some time finding out... Thanks for the Share ! 👌
@slip0n0fall Жыл бұрын
Awesome - I know I can reliably find videos on all the basics (and more) here.
@jorgegrimany2362 жыл бұрын
if you are stuck like i was when creating a port forward nat i could not hit the public ip from inside the network. Make sure you go to systems/advance/firewall & NAT and select Pure nat and also check Enable automatic outbound NAT for Reflection thanks to all!!
@skorpion12982 жыл бұрын
Hey Tom is there a possibility for you to make tutorials for Sophos etc? Thanks for all the years of helping us :)
@LAWRENCESYSTEMS2 жыл бұрын
Nope, I don't use Sophos or have any plans to do so.
@michaelrousselle60802 жыл бұрын
Great video, can you do a video on how to set up nut to use pfsense and synology with one ups
@pepeshopping2 жыл бұрын
You should really mention the port forward restrictions when you enable Reflection! (Cannot use “any” as source!).
@PeterNunnOZ2 жыл бұрын
How do you always know what I'm setting up before I do it?? Just got this working on opensense, pretty much the same way. Thanks Tom!!
@PowerUsr12 жыл бұрын
Instead of Nat reflection, wuold highly suggest , as does the NetGate documentation suggests, use Split-DNS. Much simpler.
@LAWRENCESYSTEMS2 жыл бұрын
Sounds great until you have people using mobile devices that often ignore local DNS which is why both should be done.
@PowerUsr12 жыл бұрын
@@LAWRENCESYSTEMS thats what overrides are for.
@InboundG Жыл бұрын
So the issue I’m having is that I am going to my wan address and it’s not connecting me to the ip address and port I gave it. I know it works because the website hosted on it is available inside the network by going to the ip. Why does port forwarding feel hit or miss?? It was literally working a couple of days ago and now just doesn’t
@hudson_orr Жыл бұрын
add the server or pc hosting the things you want port forwarded as a static ip, makes it alot more reliable no misses
@tommsla1232 жыл бұрын
Thank you. This is useful
@AGabaldoni9 ай бұрын
You are a great teacher. Thank you! It worked great for me. My first Port Forwarding was to allow me to access via Remote Desktop, an internal virtual Windows Server 2019 running as a Proxmox VM and it worked great. I have three questions though: 1) Why is the "Destination" a WAN address? Isn't the destination supposed to be the internal server IP and Port I want to forward to? 2) I used the default MS RDP port 3389 but I later read somewhere that opening port 3389 was very dangerous as it is one of the easy targets for hackers. Can I use any unused and unreserved port for Remote Desktop? 3) Is there a list of ports that cannot be used by default as they are specifically reserved for services? Thanks!
@LAWRENCESYSTEMS9 ай бұрын
WAN is the external interface then it forwards to an internal. There is NO SAFE WAY to have RDP open to the internet, use a VPN.
@AGabaldoni9 ай бұрын
@@LAWRENCESYSTEMSThank you very much for the info!
@jovisioncamdolhain960 Жыл бұрын
i' m from belgium.Make sure that on your pfsense wan is in PPPoE mode and that your bbox3 has PPP deactivated in "connectivité réseau ".I was trying to portforward my Ip cams to rtspme ,it didn't work until i deactivated PPP
@itgeeky63132 жыл бұрын
Hi Tom, any chance that you could make a video explaining how to do port forwarding through Wireguard? Basically, I got a server that's behind a NAT firewall (Pfsense) and my ISP blocks ports. I want to be able to route any incoming connections through the Wireguard server (Linode's instance) to my server that's behind the NAT Firewall. I really like your videos, keep up the great work. Thank you
@LAWRENCESYSTEMS2 жыл бұрын
Don't think there is a way to do that
@itgeeky63132 жыл бұрын
@@LAWRENCESYSTEMS What would you recommend as a solution? Thanks for the comment.
@LAWRENCESYSTEMS2 жыл бұрын
Don't really have one
@RandyV2max4 ай бұрын
Hello mate, how about you make a video of how to securely set up a gaming server on one of the Protectli ports running pfsense with two open ports? I'm trying to set up a server that will run Windowsgsm and Icarus and RUST games and won't get hacked and compromise the rest of the network. Regards
@AlonsoVPR2 ай бұрын
I think there's an issue with my isp modem... I even configured the modem traffic to DMZ the pfsense WAN port but still doesn't work :/
@MasterAtomz2 жыл бұрын
Thank you for these videos. 2 questions I’m trying to port forward for my Plex. I set a different port than the standard port for Plex. Which section do I put the external port in and then which section do I put the actual Plex port?l if I changed the port on the Plex side? Also I’m noticing that under the remote access settings in Plex is not pulling the correct LAN subnet after the port forward. I do have my Plex server on a different lan that has access to the WAN. What May be causing this? Thanks
@dhanushkasenavirathna7968 Жыл бұрын
Hi, i have Pfsense firewall and i have configure to allow 4700 port on my local server to access to WAN, but cannot access from WAN to 4700 port. please guide me to configure it.
@CheekyMiner9 ай бұрын
With the Alias Port forwards does this only work with matched protocols?
@HeineChristensen2 жыл бұрын
Awesome!
@muhammadaamir5662 жыл бұрын
I want to allow only emails on pfsense for specific IP alias? it may be gmail or yahoo etc ? how to allow only email services from pfsense on some specific devices? I shall be highly thankful
@martinfranke29682 жыл бұрын
there is no possibilty to use SNAT. what would you recommend?
@LAWRENCESYSTEMS2 жыл бұрын
Not sure your goal, but this might be what you are looking for docs.netgate.com/pfsense/en/latest/nat/outbound.html
@cpanic11532 жыл бұрын
I'm thinking of replacing UDM-Pro for a SMB I manage but they have a 2gb download speed (not that they need it). Is there a semi inexpensive bare bones box with an SFP+ port on it that will route >1gbps? Its very hard to beat the price of the UDMP for >1gb routing + an 8-port switch and unifi protect.
@LAWRENCESYSTEMS2 жыл бұрын
We use the Netgate6100
@mdarifkhan5161 Жыл бұрын
Sir, in my case i cannot access my application locally with wan ip address
@rogerf36222 жыл бұрын
Excellent. Thx.
@jdbaron25 Жыл бұрын
Unfortunately, for me, none of this works. I set up and follow tutorials and none of my ports are working. SO frustrating. 😞
@ChapalPuteh_ Жыл бұрын
Thank you sir ..
@666skidda Жыл бұрын
Is it possible to forward ports on Pfsense when HAproxy is enabled? And if so how?
@LAWRENCESYSTEMS Жыл бұрын
I don't understand the question
@aytacdede81 Жыл бұрын
hello dear, could you make a video port forwarding through openvpn ( to conect with pfsense Wan ip to openvpn remote host ) thanks so much
@LAWRENCESYSTEMS Жыл бұрын
that does not work.
@aytacdede81 Жыл бұрын
@@LAWRENCESYSTEMS ohh why ?
@brandonedwards7166 Жыл бұрын
I have tried it several times and the port is still closed.
@berndeckenfels2 жыл бұрын
The Elders of the Internet will not like it when you show it off so publically
@QSFPTEK_official2 жыл бұрын
Let’s make a video of optical modules together, we sincerely invite you to cooperate with us, we have 10 years of experience in optical module sales and are a trustworthy company, looking forward to your reply~