Sorry.  I forgot to let you know.  I do have the correct IP address assigned
by my isp.  To answer your other question,  the
wan rule is pass protocol:any port:any source:any  destination:192.168.1.10
gateway:default
this rule is at the top of the list. (first processed)
i figured id go for simple and the block what i don't need after.

-----Original Message-----
From: Tim Dickson [mailto:[EMAIL PROTECTED]
Sent: Wednesday, December 26, 2007 12:19 PM
To: support@pfsense.com
Subject: RE: [pfSense Support] Virtual Ips



What are the rules you are using on the WAN for traffic.

Keep in mind when you are defining the destination address it should be the
PRIVATE IP not the PUBLIC one

If you are getting the correct address on whatismyip then the NAT mapping is
fine. it is firewall rules that are messing you up.

-Tim



From: Ryan Rodrigue [mailto:[EMAIL PROTECTED]
Sent: Wednesday, December 26, 2007 10:27 AM
To: support@pfsense.com
Subject: RE: [pfSense Support] Virtual Ips



I have it setup as Proxy ARP



I went to 1:1 NAT and firewall rules and specified the 73 and 72 as two
seperate entries using the /32 subnet mask



on the WAN interface it is setup as x.x.x.74  /29



I setup a wan rule to allow anything with the destination 192.168.1.10 and
same for 192.168.1.100



I can still not get anything to work.  I am getting the correct IP address
if i go to whatismyip.com, but when i try to hit the webserver ip from my
phone (seperate network all together)  it doesn't work.  I thought this was
going to be fairly simple. lol

-----Original Message-----
From: Curtis LaMasters [mailto:[EMAIL PROTECTED]
Sent: Wednesday, December 26, 2007 12:00 PM
To: support@pfsense.com
Subject: Re: [pfSense Support] Virtual Ips

Under Virtual IP's are you using Carp, Proxy Arp, or IP?  If you want to use
1:1 NAT, go ahead and do so for that specific IP address, then under the
firewall rules add in a rule to match the traffic you would like to permit.
It should be that simple.  Additionally, the IP's 73 and 72 are within your
given range correct?  Are you using the correct subnet mask?

Curtis



__________ NOD32 2747 (20071225) Information __________

This message was checked by NOD32 antivirus system.
http://www.eset.com


Reply via email to