This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Port Forward to an internal server

Hello,

There is 2 internet connection from 2 isp.

One at 192.168.0.x (Failover)

2nd at 192.168.1.x (this one in use)

 

All the network is at 192.168.100.xx

I need to open the port 8100 to an internal server at 192.168.100.210 and i cant get it work.

Here is the screenshots from the business rule : 

 

 

Thanks a lot for your help.



This thread was automatically locked due to age.
Parents
  • FormerMember
    0 FormerMember

    Hi chris da5,

    Thank you for providing screenshot of the DNAT rule. What is the source port configured in service "port-8100"? is it port range from 1:65535 or specific port? 

    If you have specific port configured in source, please change it to 1:65535 and try to access your internal server. 

    Also is there any NAT configured on this DNAT rule? 

    Thanks,

     

  • Thanks for your help.

     

    here is the port8100

    What do you mean by configured nat?

  • FormerMember
    0 FormerMember in reply to chris da5

    Hi chris da5,

    Under Advanced > Routing > is Rewrite source address(masquerading) checked off? If it is remover it. 

    You can also check if the traffic on port 8100 even reaching the XG firewall or stopped before it hits the firewall by running packet capture on source public IP address. 

    Please follow this KB Article : Sophos XG Firewall: How to filter packets using packet capture and check if you see traffic on XG firewall on port 8100? 

    If you do not see traffic on XG, it could be your ISP blocking communication on that port. 

     

    Thanks,

Reply
  • FormerMember
    0 FormerMember in reply to chris da5

    Hi chris da5,

    Under Advanced > Routing > is Rewrite source address(masquerading) checked off? If it is remover it. 

    You can also check if the traffic on port 8100 even reaching the XG firewall or stopped before it hits the firewall by running packet capture on source public IP address. 

    Please follow this KB Article : Sophos XG Firewall: How to filter packets using packet capture and check if you see traffic on XG firewall on port 8100? 

    If you do not see traffic on XG, it could be your ISP blocking communication on that port. 

     

    Thanks,

Children