pfSense questions

mrand01

Limp Gawd
Joined
Mar 22, 2002
Messages
341
I have pfSense running on an old dell, and the LAN and WAN interfaces seem to function fine. I have a 3rd interface that I just added, called "DMZ" that for the life of me I can't set up. I want to put all my video game systems on this interface, so they're wide open. Problem is, I can't figure out the config in pfSense to allow EVERYTHING (to/from) on that interface. Any ideas? Right now my xbox is freaking out at the ICMP stage...
 
There's no need to do anything odd with XBOX...it will run great right from behind your router/pfsense box.
 
yeah but it doesn't work.

I run the XBL connection test and it fails at MTU. Maybe my config is weird? I have 4 NICs, only 3 in use. 1 in from my ISP, 2 out (one LAN, one DMZ). The XBox is plugged into the DMZ switch. It has a static IP of 192.168.2.1 and all the other settings it needs. It has no problem w/ IP and DNS, but once it gets to MTU it fails. Here are the current rules set that have to do w/ the DMZ:

Under the DMZ tab:

Allow all protocols and ports on the DMZ interface to get to anywhere except the LAN interface (so this should enable all ports/protocols over WAN?)

Under the WAN tab:

Allow everything to DMZ.

I also may be setting this up wrong...i'm by no means a network guy, but I wanted to give this a shot. Any help would be great
 
no but i want it to be. Wouldn't that make sense? Doesn't DMZ basically mean "everything wide open?"
 
No, DMZ does not mean everything wide open. It means separate from your main network in many cases. DMZ Host is everything wide open on many home/small business routers:
http://en.wikipedia.org/wiki/Demilitarized_zone_(computing)

You can forward 3074 and 88 to your xbox (TCP and UDP) as those are the XBL ports, but MTU is not a port issue usually....

Note I had XBL issues and it was my DSL modem not passing certain packets properly, Zyxel had a fix for it that you could do and that solved it for me (this was a old modem though).
 
Depending on your ISP.....
Have your router assign your XBox a static LAN IP (DHCP reservation)...
Open/forward these ports to that LAN IP address:
• UDP 88
• UDP 3074
• TCP 3074

MTU on the router to be set to 1384
 
Back
Top