Multi-Port Forward Server that listens on multiple user-defined ports. Inbound TCP or UDP traffic can be routed to internal or external hosts, and the destination ports can be changed.
The Multi-Port Forward Server is a port address translation (PAT) appliance for inbound TCP and UDP. You choose the listening ports. Traffic that arrives on those ports is forwarded to a private IP address inside your network or to an external IP address, and you can send it to a different destination port.
Each rule names one listening port, one destination, and a protocol. You can define several rules, so one instance can forward many ports to many destinations. In an enterprise deployment it sits as a gateway: clients and third-party firewalls whitelist a single address instead of every host behind it.
User-defined listening ports for TCP and UDP
Forwarding to a private IP or an external IP address
Destination ports you choose, independent of the listening port
Multiple forwards on one instance, each with its own destination
A single gateway address for client and third-party firewall allow lists
Highlights
Multi-port address translation for internal resources requiring external accessibility.
Redirects both TCP and UDP traffic to internal or external servers.
Multiple listening ports can be configured and traffic can be directed to multiple destination hosts.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Try this product free for 5 days according to the free trial terms set by the vendor. Usage-based pricing is in effect for usage beyond the free trial terms. Your free trial gets automatically converted to a paid subscription when the trial ends, but may be canceled any time before that.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour for the EC2 instance type you run this software on. Each dimension maps to a specific AWS instance size, so there are no separate plans or feature tiers. Pricing scales with the instance you choose. Smaller general-purpose types like t2.micro and t3a.medium cost less per hour, while memory-optimized, compute-optimized, storage, GPU, and bare-metal families cost more. The vendor notes a t3.medium suits most production workloads. Select the instance that fits your capacity needs; the software function stays the same across all sizes. Charges accrue only while instances run.
Top-of-mind questions for buyers
What does one billed hour cover, and which instance is suggested for typical production use?
You pay for each hour a chosen EC2 instance runs this software. The unit is one instance-hour of the specific size you launch. The vendor states a t3.medium works well for most production workloads, so a modest instance often meets typical port-forwarding needs.
Am I charged when the instance is stopped or powered off?
Software charges accrue only while the instance runs. A fully stopped instance stops the hourly software charge. Stopped instances may still incur underlying AWS storage fees for attached volumes, but the software meter counts running hours only.
Do I pay more for running the software on a larger instance type?
Yes. Each dimension maps to one EC2 instance size, and the hourly rate follows that size. General-purpose types bill at one rate, while memory-optimized, compute-optimized, storage, GPU, and bare-metal families bill at their own rates. The software function stays identical across all sizes.
salientengineering.com
Helpful?
Vendor refund policy
Refunds issued on a case-by-case basis.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Removed the built-in example forward to an external host. The appliance starts with an empty configuration until you edit /etc/multiportforward/multiportforward.config.
Additional details
Usage instructions
Ensure that the Multi-Port Forward Server appliance's Security Group permits inbound traffic to the source ports.
Ensure that source and destination checks are disabled for the Multi-Port Forward Server instance.
Edit the /etc/multiportforward/multiportforward.config file using vim, or nano.
Edit the JSON entries to reflect your desired port forwarding configuration; multiple entries can be added.
Enter a custom key name for your entry (sshbastion, rdpbastion, etc.); this is can be set to any alphanumeric value, do not use spaces.
Update the source port (SPORT), this is the port that will be receiving traffic.
Update the destination host (DHOST) IP address. Typically, this would be a private IP address within your VPC.
Update the destination port (DPORT) for the traffic to target.
Update the protocol (PROTOCOL) to either be udp or tcp.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Deploy Squid as a caching proxy with domain-level filtering, user authentication, and ACLs to control and accelerate VPC internet access with advanced content filtering and cost optimization.
Zabbix Proxy is an enterprise-grade component designed to enhance the performance and scalability of the Zabbix monitoring system. This Amazon Machine Image (AMI) comes ready to use, simplifying deployment on AWS and allowing seamless integration with your existing Zabbix infrastructure.
This Bridge VPN Server based on OpenVPN allows multiple computers to see each other when they are connected to this server. It can be useful for employees who work remotely or when the company has several offices located in different locations. Additionally, this VPN Server on Linux can be used to provide the secure internet access for client computers via VPN tunnel.
Tailscale is a secure connectivity platform that replaces your legacy VPN, SASE, and PAM and connects remote teams, multi-cloud environments, CI/CD pipelines, Edge & IoT devices, and AI workloads. Tailscale is built on the WireGuard® protocol and ensures seamless connectivity, control, and end-to-end security between any resource on any infrastructure.
I was struggling with the ability to pass UDP packets to a server inside my firewall - nothing seemed to help as UDP cannot be passed over SSH.
Cornel answered my question promptly with a solution that worked quite well - based around the little known but quite useful linux command "socat".
The help is very much appreciated!
BA
SUCCESS AT LAST!
Reviewed on Mar 25, 2021
Review from a verified AWS customer
So I had a review on here earlier so this is sort of an update.
When I first tried this it didn't seem to work at all but I may have been wrong all along. It also didn't support UDP so it wasn't what I was looking for. But after contacting the creator I got a reply a little while later and he was more than willing to help me out. Now I informed him it wasn't what I was looking for since there was no UDP support and he told me it was coming in a future update. Sure enough a couple weeks later I got an email letting me know it was available and asking me to try it out. While it took a little while to find the time, I finally did and still had issues. Again the creator reached out to help me, and after 2 different troubleshooting sessions for a total 2.5 hours we got it working.
The creator even did research on my setup and worked with me over email between sessions until we got right. The silly thing is the fix had nothing to do with my hardware but with AWS.
Anyway great product, easy to use, and great support. I highly recommend this and if you run into issues, even silly ones, contact the creator for some awesome support!