I am looking for some help.
I have no password for the current RB960PGS, no backup from the config.
Topology:
ISP Modem <-> Mikrotik RB960PGS <-> CRS326
CRS326 <-> Computers, servers - Running Pfsense VM with 2 interface WAN, LAN.
On the RB960PGS:
- Ether 1 - ISP connection (FIX Ip configured on the Ether1)
- Ether 2 - > Connecting to the CRS326
Pfsense Configuration:
-Ether 1 - 192.168.70.1 /24 - Default Gateway 192.168.70.254
- Ether 2 - 192.168.70.254 / 24 - LAN Network on the CRS326 (as virtual)
I made a masqurade NAT firewall rule, so I have internet connection, because the out interface is the RB960PGS ether1 which is the ISP.
I would like to pass all of the traffic to the pfsense.
I have some running service on 50.42 on 50.43, 50.44.
So what I need:
- FIX IP + XXXX port (open on pfsense, nat already created to the server, WAN IP + port -> LAN IP + port
It should just work, because its working currently.)
What kind of firewall nat chain or filter rule or anything, should I use to pass the traffic to the pfsense WAN IP from the ISP modem, across the new RB960PGS? (I can configure the ISP failover, thats why I dont described the 2. connection)
Of course if anybody can help, I will be really thankfull

Thanks!