This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

WAF custom TCP Port 9997

Hi all
could i use the WAF to route a TCP Port 9997 to an internal server?

i tried the DNAT but had no success.
https://support.astaro.com/support/index.php/How_to_Port_Forward_Service_Ports_with_NAT
Scenario3 but this did not work.

I use the waf for all 443 and this looks fine. i just need this port 9997 to be routed to an internal server. as its tcp not http waf does not accept it.

thanks
armin


This thread was automatically locked due to age.
  • Armin, you can do it, but you might also want to post a picture of your DNAT in the Network Security forum and ask why it didn't work.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Hi Bob
    thanks. I did try to setup the real webserver with port 9997 and the virtual, too.
    Connection did show up. 
    BUT as i this is NON http protocol the waf drops it as it has no "/" (i think http link) in the reuqest.

    the WAF only shows me HTTP Plain and HTTPS.

    Is there a way to add custom ports? and even non https?

    i opened another topic in the sec forum lets see for my issue with the DNAT there.

    thnaks
    armin
  • I understand now what you want to do; you're right, this won't work for a non-web application.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Hey, Bob
    well, at least good to know [:)]

    so i need to troubleshoot my DNAT issue.

    thanks Bob!