|
Volker, I read this and started to panic a little bit. What, I cannot
restrict which hosts can use a port forward? I started thinking, oh
no, I have to look for a different firewall distribution. Then I tried it out. I added a port forward Wan TCP 5900 192.168.1.199 (ext: 192.168.40.129) 5900 VNC And I changed the wan rule from TCP, Any source ip , Any source Port, Dest 192.168.1.199, Dest port 5900, NAT VNC To TCP, source 192.168.40.5, Any source Port, Dest 192.168.1.199, Dest port 5900, NAT VNC And now only 192.168.40.5 can use that port forward. Am I misunderstanding what you were saying? I understand how it isn't possible to restrict based on the original destination port (if it is different, else it doesn't matter) but I don't understand what you are saying about the source ip. Thanks Josh Volker Kuhlmann wrote:
-- -- Lake Agassiz Regional Library - Moorhead MN larl.org Josh Stompro | Office 218.233.3757 EXT-139 LARL Network Administrator | Mobile 701.371.3857 |
- Re: [pfSense Support] port forwarding Josh Stompro
- Re: [pfSense Support] port forwarding Volker Kuhlmann
- Re: [pfSense Support] port forwarding Chris Buechler
- Re: [pfSense Support] port forwarding Volker Kuhlmann
- Re: [pfSense Support] port forwarding Chris Buechler
- Re: [pfSense Support] port forwardin... Bill Marquette
- Re: [pfSense Support] port forwa... Chris Buechler
- Re: [pfSense Support] port forwa... Volker Kuhlmann
- Re: [pfSense Support] port forwa... Angelo Turetta
- RE: [pfSense Support] port f... Lawrence Farr
- Re: [pfSense Support] port f... Volker Kuhlmann
