masterchef 0 Posted ... i did the setup exactly, but i would like to limit access to web configuration only on the 192.168.1.1 interface, the interface which go directly on internetnow if i try to get web interface from the pc connected to 192.168.123.1 network card, i can see it. i do not like to have avaiable from that interface. the reason is to harden, or to try to harden the firewall from every pc which goes in internet using vpn, and connected to 192.168.123.1 interface.can you suggest me which rule to add? second questionif i want to limit every way to attempt to hack the router from every of the three network interface (and access the router only from the serial port) what i can do? because i did setup the router using 2.2.6 version, i would like to mantain this version, unless there are necessary reason to upgrade to 2.3(now i do not know good reason to upgrade), but il 2.2.6 works well i ask you to explain how to do what i asked in this setup Quote Share this post Link to post
Monkeh 0 Posted ... Hi I have followed this great guide and have pfsense 2.3 working with airvpn But I have a server on my LAN which hosts an external webportal on port 19020 and I have been trying to configure forwarding for this port unsuccessfully, My Setup is as followsISP Router 192.168.1.1 (Have tried setting 192.168.1.2 as DMZ and the ports are forwarded to 192.168.1.2) Pfsense VM has 2 vNICS connected to 2 NICSPfsense WAN 192.168.1.2PFsense LAN 192.168.0.3 Internal hosting Server 192.168.0.7, Ports are forwarded on AIRVPN website. I have followed the guides and configured port forwarding, NAT and rules, but are unable to communicate with this port via the internet interfaces by special_xk, on Flickr NAT by special_xk, on FlickrNATout by special_xk, on Flickrrules by special_xk, on Flickrrules_wan by special_xk, on Flickr filewall_aliases by special_xk, on Flickr Quote Share this post Link to post
go558a83nk 362 Posted ... @Monkeh, have you followed this guide, or the other guide for pfsense 2.3? The guide for pfsense 2.3 is different from this one and I'm confident that port forwarding has been discussed in that long thread. Quote Share this post Link to post