As said above the log is your friend, it's enabled by default, under diagnostics. Be mindful of floating rules and where the forwarding rule is in the firewall stack they are processed from a top to bottom, by default all ports are closed, your port forward should be above your block any to all rule.