Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Minecraft port forward through DNAT

Hello,

I have searched the forums to see if there was anything to help with this but I have not seen anything.

I created a DNAT through Server Access Assistant to try and reach a Minecraft server on my network.

Firewall Rule:

NAT Rules:

I have tried with loopback and reflexive enabled and disabled, no dice.

Packet Capture:

TCPDump:

Please let me know if you can help.



This thread was automatically locked due to age.
Parents
  • Hello!

    Looking at tcdump It shows you're trying to connect to the Minecraft Server through a Local IPv4 Address.

    But the Firewall Policy is allowing only IPv4 Adresses from the WAN Zone.

    If you want to be able to access the server from both WAN & LAN, you need to first edit the Firewall Policy to allow traffic from both LAN & WAN.

    Also, edit the Firewall & NAT Policies name, and give It a better one. (For ease-of-use purposes.)

    EDIT: There's no need for a reflexive NAT, you already have a MASQ NAT in place.

    Thanks!

  • Good evening Prism!

    Thank you for your help.  I changed the Firewall Policy to allow that, but that didn't help.  I then changed it to "Any" instead of just "WAN" and "LAN", still no dice.

    I deleted the reflexive NAT and turned on Loopback NAT again, and it worked!

    Thank you for the advice on the naming, I did change them to be simpler.

Reply
  • Good evening Prism!

    Thank you for your help.  I changed the Firewall Policy to allow that, but that didn't help.  I then changed it to "Any" instead of just "WAN" and "LAN", still no dice.

    I deleted the reflexive NAT and turned on Loopback NAT again, and it worked!

    Thank you for the advice on the naming, I did change them to be simpler.

Children
No Data