Multi-Port Forward Server that listens on multiple user-defined ports. Inbound TCP or UDP traffic can be routed to internal or external hosts, and the destination ports can be changed.
The Multi-Port Forward Server is a port address translation (PAT) appliance for inbound TCP and UDP. You choose the listening ports. Traffic that arrives on those ports is forwarded to a private IP address inside your network or to an external IP address, and you can send it to a different destination port.
Each rule names one listening port, one destination, and a protocol. You can define several rules, so one instance can forward many ports to many destinations. In an enterprise deployment it sits as a gateway: clients and third-party firewalls whitelist a single address instead of every host behind it.
User-defined listening ports for TCP and UDP
Forwarding to a private IP or an external IP address
Destination ports you choose, independent of the listening port
Multiple forwards on one instance, each with its own destination
A single gateway address for client and third-party firewall allow lists
Highlights
Multi-port address translation for internal resources requiring external accessibility.
Redirects both TCP and UDP traffic to internal or external servers.
Multiple listening ports can be configured and traffic can be directed to multiple destination hosts.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Try this product free for 5 days according to the free trial terms set by the vendor. Usage-based pricing is in effect for usage beyond the free trial terms. Your free trial gets automatically converted to a paid subscription when the trial ends, but may be canceled any time before that.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour for the EC2 instance type you run this software on. Each dimension maps to a specific AWS instance size, so there are no separate plans or feature tiers. Pricing scales with the instance you choose. Smaller general-purpose types like t2.micro and t3a.medium cost less per hour, while memory-optimized, compute-optimized, storage, GPU, and bare-metal families cost more. The vendor notes a t3.medium suits most production workloads. Select the instance that fits your capacity needs; the software function stays the same across all sizes. Charges accrue only while instances run.
Top-of-mind questions for buyers
What does one billed hour cover, and which instance is suggested for typical production use?
You pay for each hour a chosen EC2 instance runs this software. The unit is one instance-hour of the specific size you launch. The vendor states a t3.medium works well for most production workloads, so a modest instance often meets typical port-forwarding needs.
Am I charged when the instance is stopped or powered off?
Software charges accrue only while the instance runs. A fully stopped instance stops the hourly software charge. Stopped instances may still incur underlying AWS storage fees for attached volumes, but the software meter counts running hours only.
Do I pay more for running the software on a larger instance type?
Yes. Each dimension maps to one EC2 instance size, and the hourly rate follows that size. General-purpose types bill at one rate, while memory-optimized, compute-optimized, storage, GPU, and bare-metal families bill at their own rates. The software function stays identical across all sizes.
salientengineering.com
Helpful?
Vendor refund policy
Refunds issued on a case-by-case basis.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Removed the built-in example forward to an external host. The appliance starts with an empty configuration until you edit /etc/multiportforward/multiportforward.config.
Additional details
Usage instructions
Ensure that the Multi-Port Forward Server appliance's Security Group permits inbound traffic to the source ports.
Ensure that source and destination checks are disabled for the Multi-Port Forward Server instance.
Edit the /etc/multiportforward/multiportforward.config file using vim, or nano.
Edit the JSON entries to reflect your desired port forwarding configuration; multiple entries can be added.
Enter a custom key name for your entry (sshbastion, rdpbastion, etc.); this is can be set to any alphanumeric value, do not use spaces.
Update the source port (SPORT), this is the port that will be receiving traffic.
Update the destination host (DHOST) IP address. Typically, this would be a private IP address within your VPC.
Update the destination port (DPORT) for the traffic to target.
Update the protocol (PROTOCOL) to either be udp or tcp.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Listens on multiple user-defined ports and forwards inbound TCP or UDP traffic to internal or external hosts with configurable destination ports
Port Address Translation
Implements port address translation (PAT) functionality to redirect incoming traffic from multiple listening ports to multiple destination hosts
Protocol Support
Supports both TCP and UDP protocol traffic forwarding with real-time routing capabilities
Dynamic Port Configuration
Allows configuration of multiple listening ports with the ability to change destination ports for each forwarding rule
Internal and External Routing
Routes traffic to both internal private IP addresses and external IP addresses with network address translation (NAT) capabilities
Static IP Proxy Service
Route inbound and outbound traffic through load-balanced pairs of static IP addresses via proxied connections, enabling integration with third-party systems requiring whitelisted IPs or secure access to protected resources.
Protocol Support
HTTP and SOCKS5 proxy protocols available with SSL support and custom domain configuration capabilities.
High Availability Infrastructure
Health monitoring, load-balancing, and automated failover mechanisms across dual static IP provisions ensure continuous service availability.
Multi-Region Deployment
Proxy infrastructure deployed across 8 AWS regions with regional selection capability for optimized latency performance.
Real-Time Monitoring and Analytics
Dashboard-based real-time tracking of requests, usage metrics, and detailed analytics for proxy traffic monitoring.
Firewall and Threat Prevention
Stateful packet inspection with GeoIP blocking, anti-spoofing, IDS/IPS, deep packet inspection, and application detection and blocking capabilities
VPN Protocols and Connectivity
Support for IPsec, OpenVPN, and WireGuard protocols with site-to-site and remote access VPN, high-availability tunnels, and authentication integration
Routing and Traffic Management
Policy-based routing with IPv4/IPv6 support, static routing, load balancing, reverse proxy, and high availability for TCP, HTTP, and HTTPS applications
Network Services
DNS, DHCP, dynamic DNS, DNS filtering, and PPPoE server capabilities for comprehensive network service delivery
Centralized Management and Visibility
Multi-instance visibility and policy control across distributed AWS environments through Netgate Nexus with unified policy management and scalable administration across multiple VPCs, regions, and hybrid deployments
I was struggling with the ability to pass UDP packets to a server inside my firewall - nothing seemed to help as UDP cannot be passed over SSH.
Cornel answered my question promptly with a solution that worked quite well - based around the little known but quite useful linux command "socat".
The help is very much appreciated!
BA
SUCCESS AT LAST!
Reviewed on Mar 25, 2021
Review from a verified AWS customer
So I had a review on here earlier so this is sort of an update.
When I first tried this it didn't seem to work at all but I may have been wrong all along. It also didn't support UDP so it wasn't what I was looking for. But after contacting the creator I got a reply a little while later and he was more than willing to help me out. Now I informed him it wasn't what I was looking for since there was no UDP support and he told me it was coming in a future update. Sure enough a couple weeks later I got an email letting me know it was available and asking me to try it out. While it took a little while to find the time, I finally did and still had issues. Again the creator reached out to help me, and after 2 different troubleshooting sessions for a total 2.5 hours we got it working.
The creator even did research on my setup and worked with me over email between sessions until we got right. The silly thing is the fix had nothing to do with my hardware but with AWS.
Anyway great product, easy to use, and great support. I highly recommend this and if you run into issues, even silly ones, contact the creator for some awesome support!