Project

General

Profile

Actions

Bug #14273

open

Traffic to a VIP is not port forwarding TCP or UDP

Added by Ryan Coleman about 1 year ago. Updated about 1 year ago.

Status:
New
Priority:
Normal
Assignee:
-
Category:
Rules / NAT
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Default
Affected Version:
Affected Architecture:

Description

When there is a VIP on an interface (CARP, IP Alias) the traffic comes in to the interface no problem but if it is told to port forward out (tested as ANY and TCP25) the traffic opens a state but does not exit the system on any interfaces.

ICMP traffic, however, is transiting as expected and replying.

Configuration: VIP on an internal interface.
Port forward the VIP on the interface to a public IP
Attempt to traverse traffic over connection.

State will appear but closed.
No traffic appears on the pcap on the outbound (WAN) interface


Files

Screenshot 2023-04-12 at 5.54.41 PM.png (220 KB) Screenshot 2023-04-12 at 5.54.41 PM.png VIP configuration Ryan Coleman, 04/12/2023 06:07 PM
image.png (345 KB) image.png Port Forward rule Ryan Coleman, 04/12/2023 06:07 PM
Actions #2

Updated by Ryan Coleman about 1 year ago

Actions #3

Updated by Ryan Coleman about 1 year ago

I will re-verify my findings on Sunday... both the end user system and the lab one I had here failed but every other test from others that was run has worked.

Actions

Also available in: Atom PDF